Master Secure Coding

Master Secure Coding

Level up your security skills with hands-on code review challenges. Identify and fix vulnerabilities to become a better engineer.

Challenge of the WeekMedium
150 points

Speedrun Records

SpeedRunHub is a community-driven speedrunning platform where gamers compete for world records across thousands of games. The site recently added a quick verification feature allowing users to submit run metadata via GET requests for faster processing. Moderators have reported suspicious 'verified' runs appearing without their approval. Review the PHP codebase to identify how unauthorized records might be getting marked as legitimate.

WEBPHPINJECTION

Vulnerable Code

php

Instructions:

  1. Browse through the files to understand the application structure
  2. Find and click on the line containing the vulnerability
  3. Click "Check Line" to verify your answer
ENTERPRISE SOLUTION

Secure Your Engineering Team

Build a security-first culture with our enterprise training platform. Custom challenges, team analytics, and dedicated support for your organization.

Team Dashboard

Track progress and manage users with ease

Custom Challenges

Tailored to your tech stack and industry

SSO Integration

Seamless authentication for your team

Priority Support

Dedicated account manager and SLA

Ready to scale security training?

Join leading companies who trust us to train their engineering teams on secure coding practices.

Contact Sales

Volume-based pricing available