🎄 Join our Annual Holiday wargame and win prizes!


Season Recap — 2026 (December → February)

25/02/2026

Hey everyone :waving_hand:,

This last season has been packed. Across SecDim, we shipped new challenges, published deep-dive write-ups, expanded into cloud security challenges, achieved a major compliance milestone, and showed up at security events around the world.

Here’s everything we rolled out over the past three months.


:one: Holiday 7x7 Wargame

:snowflake: Firstly, our annual Holiday 7x7 Wargame was once again in full swing.

It came down to an intense competition in the final weeks, but ultimately the crown for the 2025 edition of the Wargame was claimed by @Kabir Kabir Acharya


:two: Trending Incidents & Technical Write-ups

At SecDim, our focus remains grounded in real-world security incidents. This season we translated recent vulnerabilities into both playable challenges and in-depth technical analysis.

:fire: Trending Incidents:

:memo: Write-ups Published:

Each write-up breaks down root cause, exploitation mechanics, and defensive takeaways that bridge the gap between vulnerability disclosure and secure coding practice.


:three: New Challenges

We expanded the challenge catalogue significantly across multiple stacks and cloud providers.

:elephant: PHP Challenges

:hot_beverage: Java Challenges

:magnifying_glass_tilted_right: Incident Response Challenges

:spade_suit: C++ Challenges

:high_voltage: C# Challenges

:thought_balloon: Azure Challenges

:gear: GCP Challenges


:four: SOC2 Compliance

We’re proud to announce that SecDim is now SOC 2 compliant.

Security has always been core to how we build. This milestone formally validates what has always been true about SecDim: security is not an add-on or a marketing layer. It is foundational to how we design, build, and operate our platform.

This is not a new direction for us, it’s a formal recognition of how we’ve always operated.


:five: Events - Where We’ve Been (and Where We’re Going)

We have been over and around. If you are attending any of our upcoming events, come say Hi :waving_hand:

Upcoming:
NDC Oslo :norway::
RSA SanFran :united_states:
INCYBER Forum :france:
Black hat Asia :singapore:
NDC Sydney :australia:
DevWorld 2026 :netherlands:
GISEC 2026 :united_arab_emirates:

Past:
BSides London :united_kingdom:
NDC Manchester: Security & AI :united_kingdom:
BlackHat EU London :united_kingdom:


:telescope: Up Next? Here’s a Sneak Peak!

  • Expanded GCP challenges
  • A brand-new Firmware security scenario of challenges
  • Dedicated AWS challenges
  • More and deeper AI security challenges
  • XXE Injection scenarios

TL;DR

  • Holiday 7x7 Wargame concluded

  • New real-world incident challenges released

  • Major cloud security challenges expansion (Azure & GCP)

  • SOC 2 compliance achieved

  • Global conference presence continues

  • Firmware, AWS, and more AI challenges coming next


Thanks to everyone building, patching, competing, and contributing.

Happy Patching :rocket:

Deco line
Deco line

Play AppSec WarGames

Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.

Deco line
Deco line

Got a comment?

Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.

Read more