
SecDim
@secdim
Followers
255
Following
42
Media
169
Statuses
303
🎮 Attack & Defence Wargames: https://t.co/AoBA3vjL9M 👉 The quickest and most effective way to upskill in AppSec, AISec, and more
Sydney, Australia
Joined October 2014
We will be hosting an AI Wargame at #blackhat USA 2025 🇺🇸. Join in on the experience of firsthand security weaknesses of GenAI. Prizes are sponsored by Black Hat 🎁 . Laptops are provided, only participation is required. 👉 #appsec #ctf #securecoding
0
0
0
In March 2025, Rachid & Yasser disclosed a critical vulnerability in Next.js: CVE-2025-29927. Allowing middleware auth bypass, and access to sensitive data. We made a challenge of it. Available in our Weekly game for 2 weeks. 👉 #appsec #securecoding
0
0
0
RT @sectalks: Something different this time: Shells, Scripts & Syn-Floods: An Unfiltered AMA - SecTalks SYD0x5D (93). Tue 8th July. #meetup….
meetup.com
**This is hybrid event. You must get your in-person or online admission ticket from our [Humantix](https://events.humanitix.com/shells-scripts-and-syn-floods-an-unfiltered-
0
2
0
Since day one @SecDim has been about making secure code learning accessible to all devs. Now we go one step further:.⚡ Free access for open source projects & volunteer-run meetups.We use OSS. We give back. #OpenSource #AppSec #SecureCoding
0
1
3
In June 2016, StackOverflow faced a server outage exceeding 30 minutes caused by a regex security vulnerability exploited by a malicious post. We made a challenge recreating this, think you can fix it?. 👉 #securecoding #appsec #stackoverflow #regex
0
0
0
Have you tried our new Exploitation Challenges for Solidity?. We flip the script on our Secure Coding, this time you need to write an effective exploit that can bypass the smart contract security. 👉 #securecoding #appsec #programming #crypto #solidity
0
0
1
We will be hosting a workshop at NDC Melbourne 2025 🇦🇺. Drop by to say Hello 👋. 👉 #ndc #melbourne #appsec #securecoding
0
1
1
In August 2019, @PsiDragon & @enigma0x3 reported a privilege escalation vuln in Valve's Steam client for Windows that allows arbitrary code execution with maximum system privileges. We made a challenge for this; can you fix it?. 👉 #appsec #programming
0
1
1
Thinking of Electron in your Frontend Development?. Electron Challenges are now available on SecDim Play. See how vulnerabilities in your Electron code can compromise your system and learn how to fix them. 👉 #securecoding #appsec #programming #js
0
0
0
In June 2013, Spotify encountered an unusual security vulnerability involving Unicode username normalization, which allowed attackers to hijack user accounts. We made a challenge about this; can you fix it?. 👉 #appsec #programming #securecoding #python
0
0
2
As mentioned in our Seasonal Preview, we are pleased to announce that we now have Github CI/CD Challenges on SecDim Play!. Check them out now!. 👉 #securecoding #appsec #programming
0
1
1
In May 2018, a critical vulnerability in Chromium Browser’s SwiftShader renderer exposed sensitive information due to floating-point precision errors. We made a challenge recreating this, think you can fix it?. 👉 #appsec #programming #securecoding
0
0
0
Google’s Keyczar library suffered from a timing side-channel vulnerability with its HMAC signature verification. Allowing an attacker to guess the correct HMAC signature. We made a challenge for it, can you fix it?. 👉 #appsec #programming #securecoding
1
0
1
🚨We’ve made our “Middleware.js” secure coding challenge available to the community 🎉 it is based on CVE-2025-29927: Next.js Authorization Bypass. Stay secure & test your skills: #securecoding #nextjs #cve202529927 #challenge
0
2
1
Wiz Researchers Shir Tamari, Ronen Shustin, and Andres Riancho uncovered a bypass in the NVIDIA Container Toolkit, tracked as CVE-2025-23359. It exploits a Time-of-Check Time-of-Use flaw. We made a challenge recreating this. 👉 #appsec #programming #cpp
0
1
3
🚨In light of the recent tj-action and reviewdog GitHub Actions security incidents, we’ve made our “Improper Artifact Integrity Validation” CI/CD challenge for GitHub Actions completely free to access. Try the challenge here: #github #reviewdog #security
2
1
2
Thinking of brushing up your C++ Secure Coding?.C++ Challenges are now available on SecDim Play. C / C++ is used frequently in IoT and Automobiles. See how vulnerabilities can sneak in and how to address them. 👉 #securecoding #appsec #cpp #programming
0
0
0
On 20/11/2024, Shubham Shah & Sam Curry discovered Subaru’s STARLINK service had a vulnerability that allowed attackers to query, track, and control Subaru vehicles. We recreated this as a challenge; can you fix it?. 👉 #appsec #programming #securecoding
0
0
3
Our Seasonal Preview for the next few months is here, we have some exciting things planned. Read more 👉 #appsec #securecoding #programming
0
2
2