secdim Profile Banner
SecDim Profile
SecDim

@secdim

Followers
255
Following
42
Media
169
Statuses
303

🎮 Attack & Defence Wargames: https://t.co/AoBA3vjL9M 👉 The quickest and most effective way to upskill in AppSec, AISec, and more

Sydney, Australia
Joined October 2014
Don't wanna be here? Send us removal request.
@secdim
SecDim
1 day
We will be hosting an AI Wargame at #blackhat USA 2025 🇺🇸. Join in on the experience of firsthand security weaknesses of GenAI. Prizes are sponsored by Black Hat 🎁 . Laptops are provided, only participation is required. 👉 #appsec #ctf #securecoding
Tweet media one
0
0
0
@secdim
SecDim
2 days
In March 2025, Rachid & Yasser disclosed a critical vulnerability in Next.js: CVE-2025-29927. Allowing middleware auth bypass, and access to sensitive data. We made a challenge of it. Available in our Weekly game for 2 weeks. 👉 #appsec #securecoding
Tweet media one
0
0
0
@secdim
SecDim
14 days
Build Challenge. Win Prize!.
@AppSec_Village
AppSec Village
22 days
Ready to build a #CTF challenge for @defcon 33?.Use the @SecDim SDK to create your #AppSec wargame - full contribution guidelines and all details are on our website. Submit by August 3rd for prizes and a shot at being featured at #defcon33!. 👉 Learn more
0
0
1
@secdim
SecDim
22 days
RT @sectalks: Something different this time: Shells, Scripts & Syn-Floods: An Unfiltered AMA - SecTalks SYD0x5D (93). Tue 8th July. #meetup….
Tweet card summary image
meetup.com
**This is hybrid event. You must get your in-person or online admission ticket from our [Humantix](https://events.humanitix.com/shells-scripts-and-syn-floods-an-unfiltered-
0
2
0
@secdim
SecDim
1 month
Since day one @SecDim has been about making secure code learning accessible to all devs. Now we go one step further:.⚡ Free access for open source projects & volunteer-run meetups.We use OSS. We give back. #OpenSource #AppSec #SecureCoding
Tweet media one
0
1
3
@secdim
SecDim
3 months
In June 2016, StackOverflow faced a server outage exceeding 30 minutes caused by a regex security vulnerability exploited by a malicious post. We made a challenge recreating this, think you can fix it?. 👉 #securecoding #appsec #stackoverflow #regex
Tweet media one
0
0
0
@secdim
SecDim
3 months
Have you tried our new Exploitation Challenges for Solidity?. We flip the script on our Secure Coding, this time you need to write an effective exploit that can bypass the smart contract security. 👉 #securecoding #appsec #programming #crypto #solidity
Tweet media one
0
0
1
@secdim
SecDim
3 months
We will be hosting a workshop at NDC Melbourne 2025 🇦🇺. Drop by to say Hello 👋. 👉 #ndc #melbourne #appsec #securecoding
Tweet media one
0
1
1
@secdim
SecDim
3 months
In August 2019, @PsiDragon & @enigma0x3 reported a privilege escalation vuln in Valve's Steam client for Windows that allows arbitrary code execution with maximum system privileges. We made a challenge for this; can you fix it?. 👉 #appsec #programming
Tweet media one
0
1
1
@secdim
SecDim
4 months
Thinking of Electron in your Frontend Development?. Electron Challenges are now available on SecDim Play. See how vulnerabilities in your Electron code can compromise your system and learn how to fix them. 👉 #securecoding #appsec #programming #js
Tweet media one
0
0
0
@secdim
SecDim
4 months
In June 2013, Spotify encountered an unusual security vulnerability involving Unicode username normalization, which allowed attackers to hijack user accounts. We made a challenge about this; can you fix it?. 👉 #appsec #programming #securecoding #python
Tweet media one
0
0
2
@secdim
SecDim
4 months
As mentioned in our Seasonal Preview, we are pleased to announce that we now have Github CI/CD Challenges on SecDim Play!. Check them out now!. 👉 #securecoding #appsec #programming
Tweet media one
0
1
1
@secdim
SecDim
4 months
In May 2018, a critical vulnerability in Chromium Browser’s SwiftShader renderer exposed sensitive information due to floating-point precision errors. We made a challenge recreating this, think you can fix it?. 👉 #appsec #programming #securecoding
Tweet media one
0
0
0
@secdim
SecDim
4 months
Google’s Keyczar library suffered from a timing side-channel vulnerability with its HMAC signature verification. Allowing an attacker to guess the correct HMAC signature. We made a challenge for it, can you fix it?. 👉 #appsec #programming #securecoding
Tweet media one
1
0
1
@secdim
SecDim
4 months
🚨We’ve made our “Middleware.js” secure coding challenge available to the community 🎉 it is based on CVE-2025-29927: Next.js Authorization Bypass. Stay secure & test your skills: #securecoding #nextjs #cve202529927 #challenge
Tweet media one
0
2
1
@secdim
SecDim
4 months
Wiz Researchers Shir Tamari, Ronen Shustin, and Andres Riancho uncovered a bypass in the NVIDIA Container Toolkit, tracked as CVE-2025-23359. It exploits a Time-of-Check Time-of-Use flaw. We made a challenge recreating this. 👉 #appsec #programming #cpp
Tweet media one
0
1
3
@secdim
SecDim
4 months
🚨In light of the recent tj-action and reviewdog GitHub Actions security incidents, we’ve made our “Improper Artifact Integrity Validation” CI/CD challenge for GitHub Actions completely free to access. Try the challenge here: #github #reviewdog #security
Tweet media one
2
1
2
@secdim
SecDim
4 months
Thinking of brushing up your C++ Secure Coding?.C++ Challenges are now available on SecDim Play. C / C++ is used frequently in IoT and Automobiles. See how vulnerabilities can sneak in and how to address them. 👉 #securecoding #appsec #cpp #programming
Tweet media one
0
0
0
@secdim
SecDim
5 months
On 20/11/2024, Shubham Shah & Sam Curry discovered Subaru’s STARLINK service had a vulnerability that allowed attackers to query, track, and control Subaru vehicles. We recreated this as a challenge; can you fix it?. 👉 #appsec #programming #securecoding
Tweet media one
0
0
3
@secdim
SecDim
5 months
Our Seasonal Preview for the next few months is here, we have some exciting things planned. Read more 👉 #appsec #securecoding #programming
Tweet media one
0
2
2