Skip to content
AI capabilities

New AI Capabilities: Helping Customers to Understand Custom Code Vulnerabilities Better

760a5ca355c4ffa110e269cc4e32d5c3?s=96&d=mm&r=g
Joris van de Vis
Director security research
January 20, 2025
2 min read

Chapters

Share Article

With the release of SecurityBridge Platform V6.31, we’re introducing a set of innovative AI-powered functions for early adopters within the SecurityBridge Code Vulnerability Analyzer (CVA) app. These features aim to help customers better understand vulnerabilities in custom ABAP code and clarify the purpose of specific code snippets within their systems. 

 

Let’s take a closer look at these two new capabilities and the value they bring.

 

1. Explaining ABAP Code 

This built-in feature simplifies the understanding of ABAP code by explaining the purpose and functionality of a selected code snippet. It is particularly valuable for users unfamiliar with ABAP’s complexities but who want to comprehend the behavior of specific code. 

 

The AI engine breaks down the code into easily understandable sections, provides context, and offers additional insights. Here’s an example of how this feature works: 

ABAC code

2. Describe Vulnerabilities

This feature provides clear, detailed explanations of vulnerabilities found in custom ABAP code. Using advanced AI, the engine describes the potential risks within the selected source code and even suggests mitigation and remediation strategies. 

 

It not only covers the various vulnerability types identified by the CVA app but also highlights the use of critical ABAP programs or Function Modules. For example: 

describe vulnerabilities

The Role of AI: Balancing Value and Privacy 

We believe AI has the potential to provide significant value to our customers. Our approach to integrating AI focuses on use cases that deliver substantial improvements over traditional methods while ensuring high user adoption potential. 

 

We recognize that some customers may be cautious about exposing their SAP data to AI in the cloud. To address this concern and enhance data privacy, we offer the option to disable the AI functionality entirely. 

 

What’s Next? 

The initial deployment of these AI-powered features will be available in Version 6.31 for early adopters. These capabilities will be included in the Stable Version 6.34 for all customers. 

 

By incorporating AI into the CVA app, we aim to empower our customers with actionable insights and efficient tools to manage custom code vulnerabilities, all while prioritizing and respecting their data privacy concerns.