For urgent cybersecurity incidents affecting critical infrastructure or active data exfiltration, please contact our 24/7 Security Operations Center immediately via the secure hotline below.

Secure Communication Channels

All sensitive security reports should be encrypted using our PGP public key. Unencrypted submissions will be acknowledged but may experience processing delays.

Incident Hotline (24/7)
+41 22 ZENTH-SEC
Physical Security
physical.security@aevumzenth.global

PGP Encryption & Verification

Encrypt all reports containing sensitive data, proof-of-concept code, or internal identifiers before transmission. Our key fingerprint is verified across major key servers.

-----BEGIN PGP PUBLIC KEY BLOCK----- mQINBF2Zq54BEADLxM5cN4jF1vG8qM3Zk9Xx7P1yT8cR5dN2mK3sL9pQ0wYxZ4vB6 cR5dN2mK3sL9pQ0wYxZ4vB6cR5dN2mK3sL9pQ0wYxZ4vB6cR5dN2mK3sL9pQ0wYxZ4vB cR5dN2mK3sL9pQ0wYxZ4vB6cR5dN2mK3sL9pQ0wYxZ4vB6cR5dN2mK3sL9pQ0wYxZ4vB [TRUNCATED FOR UI DISPLAY - FULL KEY AVAILABLE VIA API]-----END PGP PUBLIC KEY BLOCK-----
FINGERPRINT: A1B2 C3D4 E5F6 7890 1234 5678 90AB CDEF 1234 5678

Verify via: keys.openpgp.org | keyserver.ubuntu.com | aevumzenth.com/pgp

Secure Report Submission

Fields marked with * are required. All submissions are routed through our encrypted ticketing pipeline and accessible only to authorized SOC personnel.

By submitting, you acknowledge that you will not exploit the vulnerability, disclose it publicly, or retain access beyond demonstration purposes.

Out of Scope: Automated scanning of public assets, Denial-of-Service attacks, physical tailgating tests, social engineering of employees, and attacks on third-party domains not explicitly owned by Aevum Zenth.

Response SLA & Safe Harbor

We commit to transparent, timely communication throughout the vulnerability lifecycle. All reports are triaged by our dedicated Vulnerability Management Team.

24h
Initial Acknowledgment
72h
Technical Assessment & Triage
30d
Resolution & Public Disclosure

Aevum Zenth provides a Safe Harbor policy for researchers who comply with our disclosure guidelines. We will not pursue legal action against good-faith reporters and encourage collaborative remediation. Recognized contributions may be eligible for our private bug bounty program.

}