
SecDim
@secdim
Followers
256
Following
42
Media
167
Statuses
301
🎮 Attack & Defence Wargames: https://t.co/AoBA3vjL9M 👉 The quickest and most effective way to upskill in AppSec, AISec, and more
Sydney, Australia
Joined October 2014
Since day one @SecDim has been about making secure code learning accessible to all devs. Now we go one step further:.⚡ Free access for open source projects & volunteer-run meetups.We use OSS. We give back. #OpenSource #AppSec #SecureCoding
0
1
3
In June 2016, StackOverflow faced a server outage exceeding 30 minutes caused by a regex security vulnerability exploited by a malicious post. We made a challenge recreating this, think you can fix it?. 👉 #securecoding #appsec #stackoverflow #regex
0
0
0
Have you tried our new Exploitation Challenges for Solidity?. We flip the script on our Secure Coding, this time you need to write an effective exploit that can bypass the smart contract security. 👉 #securecoding #appsec #programming #crypto #solidity
0
0
1
We will be hosting a workshop at NDC Melbourne 2025 🇦🇺. Drop by to say Hello 👋. 👉 #ndc #melbourne #appsec #securecoding
0
1
1
In August 2019, @PsiDragon & @enigma0x3 reported a privilege escalation vuln in Valve's Steam client for Windows that allows arbitrary code execution with maximum system privileges. We made a challenge for this; can you fix it?. 👉 #appsec #programming
0
1
1
Thinking of Electron in your Frontend Development?. Electron Challenges are now available on SecDim Play. See how vulnerabilities in your Electron code can compromise your system and learn how to fix them. 👉 #securecoding #appsec #programming #js
0
0
0
In June 2013, Spotify encountered an unusual security vulnerability involving Unicode username normalization, which allowed attackers to hijack user accounts. We made a challenge about this; can you fix it?. 👉 #appsec #programming #securecoding #python
0
0
2
As mentioned in our Seasonal Preview, we are pleased to announce that we now have Github CI/CD Challenges on SecDim Play!. Check them out now!. 👉 #securecoding #appsec #programming
0
1
1
In May 2018, a critical vulnerability in Chromium Browser’s SwiftShader renderer exposed sensitive information due to floating-point precision errors. We made a challenge recreating this, think you can fix it?. 👉 #appsec #programming #securecoding
0
0
0
Google’s Keyczar library suffered from a timing side-channel vulnerability with its HMAC signature verification. Allowing an attacker to guess the correct HMAC signature. We made a challenge for it, can you fix it?. 👉 #appsec #programming #securecoding
1
0
1
🚨We’ve made our “Middleware.js” secure coding challenge available to the community 🎉 it is based on CVE-2025-29927: Next.js Authorization Bypass. Stay secure & test your skills: #securecoding #nextjs #cve202529927 #challenge
0
2
1
Wiz Researchers Shir Tamari, Ronen Shustin, and Andres Riancho uncovered a bypass in the NVIDIA Container Toolkit, tracked as CVE-2025-23359. It exploits a Time-of-Check Time-of-Use flaw. We made a challenge recreating this. 👉 #appsec #programming #cpp
0
1
3
🚨In light of the recent tj-action and reviewdog GitHub Actions security incidents, we’ve made our “Improper Artifact Integrity Validation” CI/CD challenge for GitHub Actions completely free to access. Try the challenge here: #github #reviewdog #security
2
1
2
Thinking of brushing up your C++ Secure Coding?.C++ Challenges are now available on SecDim Play. C / C++ is used frequently in IoT and Automobiles. See how vulnerabilities can sneak in and how to address them. 👉 #securecoding #appsec #cpp #programming
0
0
0
On 20/11/2024, Shubham Shah & Sam Curry discovered Subaru’s STARLINK service had a vulnerability that allowed attackers to query, track, and control Subaru vehicles. We recreated this as a challenge; can you fix it?. 👉 #appsec #programming #securecoding
0
0
3
Our Seasonal Preview for the next few months is here, we have some exciting things planned. Read more 👉 #appsec #securecoding #programming
0
2
2
In March 2016, a security researcher identified a RCE vulnerability on Uber's platform, The flaw stemmed from a Server-Side Template Injection. We made a challenge recreating this, could you fix the $10,000 bug?. 👉 #appsec #programming #securecoding
0
0
1
Congratulations to @M4773L for Winning the 2024 iteration of our annual Holiday 7x7 Game!. Shout out to @sunzenshen and @EverydaySparkling for clinching the 2nd & 3rd positions on their first try!. Good job, hoping to see you next time as well. #appsec #programming #securecoding
0
1
0