
TCASVS
OWASP Thick Client Application Security Verification Standard

OWASP Thick Client Application Security Verification Standard

CVE-2026-36522: unauthenticated NaN injection via MAVLink PARAM_SET in ArduPilot ArduPlane (CWE-1287, DoS/integrity)


A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.

AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.

Corelight Dashboards and Parsers for Sentinel One Singularity

Parse BIOS/Intel ME/UEFI firmware related structures: Volumes, FileSystems, Files, etc

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

Technical breakdown of CVE-2026-34473, an unauthenticated denial of service affecting 17+ ZTE router models.


cve-2024-21413

Local read-only scanner for CVE-2026-42945 (NGINX Rift) that checks NGINX, OpenResty, and Tengine instances for vulnerable rewrite configurations…

Tools collection to explore CVE and theirs associated data.

Best Practice Auditd Configuration

A swiss-knife MCP server for analysing PCAP files

The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when the Membership Addon is…