OWASP Top 10
The OWASP Top 10 2025 is the industry-standard reference for critical web application security risks. This course teaches each category through a real-world breach -- from the Capital One SSRF to the Uber logging failure to Heartbleed -- so you understand not just what the vulnerability is, but what it enables an attacker to do and why the fix works. Every module follows the same structure: find the vulnerability in code, trace the exploit, apply the fix. Where a full SecDim Learn course exists for a category -- authorization, supply chain, threat modelling, frontend security -- this course connects to it rather than duplicating it, giving you a complete map of the attack surface and where to go deeper.