BSides London 2025

BSides London 2025

Jonathan Pake

Jonathan Pake is a CHECK Team Member, specialising in offensive security and attacker emulation. He currently works as a penetration testing consultant at Aristi, performing security assessments across a range of enterprise environments. Jonathan has a strong interest in researching SAP exploitation techniques and exploring how attackers target these often-overlooked systems.


Session

12-13
15:25
15min
SAPPIN’ the Enterprise: Breaking What No One Else Pentests
Jonathan Pake

SAP powers critical enterprise functions like finance, HR, and supply chain, yet it often falls outside the scope of traditional penetration testing due to its complexity and steep learning curve. This talk will demonstrate how attackers exploit overlooked SAP weaknesses to gain access, escalate privileges, and compromise sensitive enterprise data.

Rookies
Rookie Track 2