PWN2OWN Berlin 2026: ESXi VM Escape

When the patch doesn’t exist yet, the control still does. ZeroLock provides mitigating controls for VMware ESXi VM escape exploits like those demonstrated by STARLabs SG at Pwn2Own Berlin 2026.   What Happened at Pwn2Own Berlin 2026 Researcher Thach Nguyen...

The Gentlemen: A Threat Profile

Aliases  No confirmed aliases at this time. The group operates exclusively under “The Gentlemen” branding across underground forums, its dark web leak site, and a public X/Twitter account.  Get Threat Intel and Security Updates Delivered to Your Inbox.  ...

Qilin: A Threat Profile

Aliases  Agenda (original name, 2022)  Gold Feather (Secureworks)  Water Galura (Trend Micro)  Get Threat Intel and Security Updates Delivered to Your Inbox.   Profiling  Threat Actor Type: Ransomware-as-a-Service (RaaS) with global affiliate network. ...

DORA Article 9 and the Hypervisor MFA Gap: Are You Fully Compliant?

Most financial institutions have deployed multifactor authentication (MFA) where auditors have traditionally looked for it: VPNs, email, cloud applications. That coverage checks the expected boxes—and for years, it was enough.  But one critical layer is still...