I'm always looking for ways to upskill my engineering teams on security practices so everyone is actively looking for vulnerabilities. It's become so critical and can't just be left to security specialists.
SecDim covers the key vulnerabilities you should be looking out for and after using it I found it great fun as well. Super simple setup, you can test everything locally and has provided a great foundation for starting discussions on vulnerabilities for me and my teams.
Git based secure code learning is a genius approach that SecDim has taken to engage developers in secure coding. SecDim has used the most popular medium that is used by almost every developer to teach security. Learning secure coding has become very implicit and aligned with developer ways of doing things. By debugging SecDim apps, I saw how our developers quickly learned, and applied their learning to find and fix security vulnerabilities in code and design of the apps. No text or video tutorial can educate secure coding this effectively to your developers.
Love the hands on learning approach. very developer friendly and provides an interface which all devs are familiar with. The training has a strong focus on culture change where it aims to shift the mindset around security to one which is an integral part of the software development process. There is also a comprehensive list of resources provided!
SecDim is a developer-first secure-code wargame that drops you into production-grade apps packed with real-world vulnerabilities. No slides, no boring tutorials—our challenges track today’s top incidents so you can cut the crap and learn secure coding for real.