{"meta":{"name":"DEF CON 34","theme":"Agency","venue":"Las Vegas Convention Center - West Hall","tz":"America/Los_Angeles","utc_offset":"-07:00","start":"2026-08-06","end":"2026-08-09","days":[{"key":"Wed","date":"2026-08-05","label":"Wednesday"},{"key":"Thu","date":"2026-08-06","label":"Thursday"},{"key":"Fri","date":"2026-08-07","label":"Friday"},{"key":"Sat","date":"2026-08-08","label":"Saturday"},{"key":"Sun","date":"2026-08-09","label":"Sunday"}],"counts":{"community":27,"contest":83,"creator":195,"demolab":42,"event":40,"exhibitor":11,"info":8,"talk":131,"vendor":48,"village":38},"sessions":451},"entries":[{"id":"t001","kind":"talk","title":"Welcome to DEF CON 34!","who":"Jeff \"The Dark Tangent\" Moss","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:30","e":"2026-08-07T10:30:00-07:00","mins":30,"loc":{"raw":"Track 1"}}]},{"id":"t002","kind":"talk","title":"Breaking the Ethereum Phone: From BootROM to Wallet Signing Keys","who":"Guanxing Wen","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:30","e":"2026-08-07T10:30:00-07:00","mins":30,"loc":{"raw":"Track 2"}}]},{"id":"t003","kind":"talk","title":"Texas Incidents - How we broke the OMAP-L138 Trusted Execution Environment","who":"Carlo Meijer, Wouter Bokslag","tags":["Demo"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t004","kind":"talk","title":"Weaponizing Uselessness: Breaking SMM with the Slowest Instruction Ever Written","who":"Christopher \"xoreaxeaxeax\" Domas","tags":["Tool","Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:30","e":"2026-08-07T10:30:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t005","kind":"talk","title":"From square root to /root: escalating privileges in Azure containers with Python in Excel","who":"Ron Ben Yizhak","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t006","kind":"talk","title":"Breaking Local AI Runtimes: Exploiting llama.cpp and Ollama","who":"Vladimir \"G1ND1L4\" Tokarev, Ofek Itach","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:30","s":"2026-08-07T10:30:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t007","kind":"talk","title":"Reflections on Disregarding Trust (Weaponizing CDP and MHTML for Header-Agnostic Session Hijacking)","who":"Gregory \"1umberhack\" Disney-Leugers","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"10:30","s":"2026-08-07T10:30:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t008","kind":"talk","title":"The 2025 Pwnie Awards","who":"Mark Trumpbour, Ian Roos","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t009","kind":"talk","title":"Keychained Melody - Grabbing the Keys to the iCloud Kingdom","who":"Jaron Bradley, Alex Radocea","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t010","kind":"talk","title":"Sliding into the Flight Deck's DMs: Practical Message Attacks on CPDLC","who":"Mehdi Ziazi, Martin \"MasorX\" Strohmeier","tags":["Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t011","kind":"talk","title":"Crashing the Party: Pwning Control-Flow Integrity with Segmentation Fault-Oriented Programming","who":"Marcos \"h3xduck\" Bajo, Ritvik \"RoYalGamr\" Goyal","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t012","kind":"talk","title":"A Provider for the MOFia - Distributed Post-Ex Capabilities","who":"Steven Flores","tags":["Demo","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t013","kind":"talk","title":"DC101","who":"Nikita Kronenberg","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Track 1"}}]},{"id":"t014","kind":"talk","title":"Can AI do novel security research? Meet the HTTP Terminator","who":"James \"albinowax\" Kettle","tags":["Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t015","kind":"talk","title":"Shopping Is The Attack: A Decade Of E-Commerce Scalper Wars, And The Multi-Agent AI Era","who":"Yaniv \"PSYMAG\" Menasherov","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Track 5"}}]},{"id":"t016","kind":"talk","title":"Your Packets Are Showing: Hybrid Quantum ML for Passive OS Fingerprinting","who":"Jae Sung Kim, Shreya G Savadatti, Daniel Justice, La Alsulaim","tags":["Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":30,"loc":{"raw":"Track 1"}}]},{"id":"t017","kind":"talk","title":"BTR Reforged: Weaponizing Defender's Remediation Driver as a Kernel Operation Primitive","who":"Jiří Vinopal","tags":["Demo","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:30","e":"2026-08-07T13:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t018","kind":"talk","title":"Patch Gap to Mobile Renderer RCE: Pwning Samsung Internet's V8 on the Galaxy S25","who":"William Liu, Jamie Hill-Daniel, Hrvoje Mišetić","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:30","e":"2026-08-07T13:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t019","kind":"talk","title":"Hacking the Government: How Two Researchers Turned Late-Night Boredom Into a National Audit","who":"Kamil Szczurowski, Robert \"ProXy\" Kruczek","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":30,"loc":{"raw":"Track 5"}}]},{"id":"t020","kind":"talk","title":"Fireside Chat with Gen. Paul Nakasone","who":"Paul Nakasone, Jeff \"The Dark Tangent\" Moss","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t021","kind":"talk","title":"Bring-Your-Own-EDR - Breaking Windows Process Protection to build EDR-Protected Malware","who":"Shahak Morag","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t022","kind":"talk","title":"LGTM: Bypassing an LLM Build Gate When Prompt Injection Fails","who":"Aviv Donenfeld","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t023","kind":"talk","title":"Breaking Amazon lockers by any means necessary","who":"Martin Vigo","tags":["Demo"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"13:30","s":"2026-08-07T13:30:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t024","kind":"talk","title":"Plug And Pwn: Weaponizing Windows PnP Auto-Install","who":"Alejandro \"0xedh\" Hernando, Borja \"borjmz\" Martinez","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"13:30","s":"2026-08-07T13:30:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t025","kind":"talk","title":"Data Tomb Raider: Raiding Modern AI Vaults with Legacy Flaws for Treasure Stealing","who":"Mark Vaitsman, Dolev Taler","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t026","kind":"talk","title":"Lessons from a decade of building whistleblower tech","who":"redshiftzero, Trevor Timm","tags":["Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t027","kind":"talk","title":"8 Out of 10 Banks in Belgium HATE This One Weird eID RCE","who":"James \"Acorn221\" Arnott","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t028","kind":"talk","title":"WASM Was Not the Boundary: Sandcastles, Not Sandboxes","who":"Vladimir \"G1ND1L4\" Tokarev, Saar Pearl","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t029","kind":"talk","title":"Lowering the Orbit: Exploiting Satellite Protocols and communications via Software-Defined-Radio and GS","who":"Romel \"r0r0x\" Marin","tags":["Demo","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t030","kind":"talk","title":"The Stream Is Dead, Long Live the Stream: How HTTP/2 Lets Dead Streams Keep Servers Working","who":"Gal Bar Nahum","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t031","kind":"talk","title":"Witchcraft Solver: Automated 0day Discovery in Stripped Binaries","who":"Jonathan \"endrazine\" Brossard","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t032","kind":"talk","title":"Pwning Rekordbox: Unauthenticated filesystem access in the world's most popular DJ software","who":"Christopher \"TRIODE\" Le","tags":["Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t033","kind":"talk","title":"Hacking the Hackers who Hack Hackers: Supply-Chain Backdoors in Underground VPN Infrastructure","who":"Assaf Morag","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t034","kind":"talk","title":"Your Bank Thinks I'm You: A Complete Kill Chain Against Mobile Banking Security","who":"Xavier \"@xaferima\" Riofrio Machado, Alex Tipan","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t035","kind":"talk","title":"Riding for Free - Breaking Public Transport RFID at Scale","who":"Aidan \"luu176\" Nakache","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t036","kind":"talk","title":"The Sandbox is a Suggestion: Deconstructing AI Agent Sandboxes","who":"Elad Meged","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t037","kind":"talk","title":"Certified Re-Pwned: escalating all the way up","who":"Daniel Monzon, Eric Labrador","tags":["Demo","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t038","kind":"talk","title":"Hacking the EOD Bot: How I Learned to Stop Worrying and Love the Boomba","who":"Patrick \"gigstorm\" Kiley, Emily \"@astradotpng\" Astranova","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t039","kind":"talk","title":"noRecognition: Could a pattern on your clothing fool Facial Facial Recognition?","who":"Bill \"hevnsnt\" Swearingen","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:30","e":"2026-08-07T17:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t040","kind":"talk","title":"CloudBashing: Exploiting free CloudShells for mining, networking, exfil, and persistence at scale","who":"Chris Ryan, Jenko \"edleft\" Hwong","tags":["Demo","Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:30","e":"2026-08-07T17:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t041","kind":"talk","title":"Hacking AI","who":"Bruce Schneier","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t042","kind":"talk","title":"Gotta Catch 'Em All: How To Capture 3.5 Billion WhatsApp Accounts","who":"Maximilian Guenther, Gabriel Gegenhuber","tags":["Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t043","kind":"talk","title":"One Chain to Own Them All - Breaking AI Infrastructures","who":"Lei \"llfamsec\" Lu, Ji'an \"azraelxuemo\" Zhou","tags":["Demo","Exploit"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t044","kind":"talk","title":"Breaking Hardware CFI with Sigreturn","who":"Omri \"beta_b0t\" Ben Bassat","tags":["Demo"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"17:30","s":"2026-08-07T17:30:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":30,"loc":{"raw":"Track 2"}}]},{"id":"t045","kind":"talk","title":"You've Got Mail (That Was Meant For No One)","who":"Cøry \"interpünkt\" Solovewicz","tags":["Tool"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"17:30","s":"2026-08-07T17:30:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t046","kind":"talk","title":"The Ghost Key: Illusions of \"Time Management\" in TTLock Smart Locks","who":"Zhenghan Wang, Yang Liu","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t047","kind":"talk","title":"Memory Laundering via Metal: What EDR Can't See on Your Mac","who":"Hxr1","tags":["Demo"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:30","e":"2026-08-08T10:30:00-07:00","mins":30,"loc":{"raw":"Track 2"}}]},{"id":"t048","kind":"talk","title":"Identity Crisis: Novel Vulnerabilities leading to Kerberos Downgrade, DoS, and Full Domain Takeover","who":"Shai Laron","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t049","kind":"talk","title":"No Socket, No Privs, No Problem: Weaponizing OCI Registries for SSRF, Credential Theft, and Container Escapes","who":"David \"davidrxchester\" Rochester, Nicholas \"gouldnicholas\" Gould","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:30","e":"2026-08-08T10:30:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t050","kind":"talk","title":"From Wind Farm to CHP Plant: The Untold Story of Lateral Movement in a Polish Energy Sector Attack","who":"Marcin Dudek","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t051","kind":"talk","title":"Harvest Now, Decrypt Later: Practical Attacks on Post-Quantum Cryptography Implementations","who":"Aleksandr Krasnov","tags":["Demo","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:30","s":"2026-08-08T10:30:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t052","kind":"talk","title":"Root From Kilometers Away: Ubiquiti AirMax RCE","who":"Federico Kirschbaum, Gaston Aznarez","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"10:30","s":"2026-08-08T10:30:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t053","kind":"talk","title":"Tracking the Trackers: How We Took Over 36 Million GPS Devices Protecting Children and Vehicles","who":"Felipe Solferini, Vangelis Stykas","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t054","kind":"talk","title":"Forgotten but Not Gone: Unauthenticated RCEs and LPEs in Legacy Linux Services","who":"Ron Ben Yizhak","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t055","kind":"talk","title":"Very Pwned: Hacking Verifone's card machine three times in a row","who":"Reino Mostert","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t056","kind":"talk","title":"Thin Client? Thin Crypto - Bypassing Full-Desk Encryption Across Three Major Thin Clients Vendors without Breaking a Cipher","who":"Darren McDonald","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t057","kind":"talk","title":"Your OTP Never Arrived: Attacking the Trust Boundary Where SMS Meets the Internet","who":"Kyprianos \"kavasilo\" Vasilopoulos, Nikos \"nickvourd\" Vourdas","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t058","kind":"talk","title":"Rage Against the Sandbox: Bypassing Apple's iOS Security to Run Unsigned Code via SSH","who":"Yuval Hanoch Hirschenbein Sadde","tags":["Demo","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t059","kind":"talk","title":"The Glass Perimeter: Systematic Bypasses in Biometric Frameworks and the Rise of Synthetic Identity","who":"Javier Bernardo, Dan Borgogno","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t060","kind":"talk","title":"C(2)YA: Inside the Adversary's Inbox","who":"Vitaly Simonovich","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t061","kind":"talk","title":"Writing to Shadow Stacks","who":"Vladimir \"G1ND1L4\" Tokarev","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t062","kind":"talk","title":"Compounding Interest: Exploiting the ATM Supply Chain","who":"emptynebuli","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t063","kind":"talk","title":"gpwn: Wiretapping fiber (GPON) ISP deployments from the comfort of your home","who":"Rithvik Vibhu, Rithwik \"thel3l\" Jayasimha","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t064","kind":"talk","title":"Dylib Hijacking on macOS: Dead or Alive?","who":"Patrick Wardle","tags":["Demo"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t065","kind":"talk","title":"Stalking the Wily Hacker ... 40 years later","who":"Cliff Stoll","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t066","kind":"talk","title":"Bring Your Own Root Of Trust","who":"Jesse Michael, Mickey \"@HackingThings\" Shkatov","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t067","kind":"talk","title":"Transformers: Dark Side of the Type - Weaponizing the Conversion Layer","who":"Oleksandr Mirosh","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t068","kind":"talk","title":"Lights Out: Out-of-Band, Out of Mind, Out of Control","who":"HD \"hdm\" Moore","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t069","kind":"talk","title":"The Enclave is Lying to You: Breaking TEE Trust Boundaries Through Boot-Time State","who":"Sandeep \"pyro\" Jayashankar","tags":["Demo","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t070","kind":"talk","title":"Cracking North Korea's Information Control: How Smugglers, Defectors, and Technologists are Breaking Open the World's Most Locked-Down Information System","who":"JDT","tags":["Demo"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t071","kind":"talk","title":"Bird Hunting Season: The Final Flight","who":"Jon \"GainSec\" Gaines","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t072","kind":"talk","title":"Looking and Peering: Attacking from beyond BGP Adjacency","who":"Bo-Shiun \"bronson113\" Yen","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t073","kind":"talk","title":"Throw Out the Alphabet: Token-Based Markov Chains for Password Cracking","who":"Jon \"flakpaket\" Gorenflo","tags":["Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t074","kind":"talk","title":"Get Set, Exploit! Unveiling Python Class Pollution In-the-Wild","who":"Zhengyu Liu, Jianjia Yu, Gavin Zhong","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t075","kind":"talk","title":"Smile, you're on camera! Livestreaming from North Korea's IT workers laptop farm","who":"Heiner García, Mauro Eldritch","tags":["Demo"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t076","kind":"talk","title":"Zero-Day Provisioning: Chaining TP-Link ZTP Vulnerabilities for Infiltrating Networks","who":"Stanislav Dashevskyi, Francesco La Spina","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t077","kind":"talk","title":"Wrestling with a Python: Escaping Copilot Studio's AI-Guarded Sandbox","who":"Simon Maxwell-Stewart, Ryan Hausknecht","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t078","kind":"talk","title":"Hacking Your Life with AI Can Get You Hacked: How AI Orchestration Platforms Ship RCE by Design","who":"Peyton \"p80n-sec\" Kennedy","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t079","kind":"talk","title":"Install Me Maybe: Turning Claimable VS Code Extension IDs into Supply-Chain Attacks","who":"Raphael \"rcss\" Silva","tags":["Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t080","kind":"talk","title":"The Compiler That Can't Read: Crashing Every 5G Phone With One Byte","who":"Xingyu Wang, Qiqing Huang","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t081","kind":"talk","title":"How much of our Bluetooth firmware reverse engineering work can now be automated with LLMs?","who":"Xeno Kovah, Veronica Kovah","tags":["Demo","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"16:30","s":"2026-08-08T16:30:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t082","kind":"talk","title":"Taming the Swarm: Hard Architectural Lessons from Building a Deterministic Agentic Web Pentesting System","who":"Albert \"@yz9yt\" Corzo","tags":["Demo"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"16:30","s":"2026-08-08T16:30:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t083","kind":"talk","title":"High Voltage Heist: Turning Your EV into my Power Bank","who":"Fabien Guillebot, Stepan Konicek","tags":["Demo","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t084","kind":"talk","title":"CRLF-Powered Desync Attacks: Beheading HTTP streams","who":"Tobia \"mastersplinter\" Righi, Tom \"t0xodile\" Stacey","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t085","kind":"talk","title":"OffGuard: Breaking the Most Popular AI Gateway from Auth Bypass to Cloud Compromise","who":"Yaara Shriki","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t086","kind":"talk","title":"TEE.fail: Breaking Trusted Execution Environments via DDR5 Memory Bus Interposition","who":"Jalen Chuang, Daniel Genkin","tags":["Demo","Exploit"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Track 2"}}]},{"id":"t087","kind":"talk","title":"Trust Me, I'm Microsoft-Signed: Breaking EDR Assumptions with COM and WinRT","who":"Dylan \"couples\" Davis","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t088","kind":"talk","title":"ESP32 as a counter-surveillance platform","who":"Colonel Panic, The Wrew, Cooper \"Cybertiger\" Quintin","tags":["Demo"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t089","kind":"talk","title":"This Message Was Sent by Microsoft: Turning First-Party Services into our Phishing Platform","who":"Keanu \"RedByte\" Nys","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t090","kind":"talk","title":"No Prompt Required: Pre-Task RCE in Google Gemini CLI","who":"Elad Meged","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Track 3"}}]},{"id":"t091","kind":"talk","title":"Going the Distance: Long-Range Keystroke Injection via Meshtastic","who":"Benito \"paperclipsvinny\" Sauceda","tags":["Demo","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Track 4"}}]},{"id":"t092","kind":"talk","title":"Shepherding the Tor network","who":"Roger \"arma\" Dingledine","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t093","kind":"talk","title":"Gotta Phish 'Em All! Novel Attack Techniques via Persistent Browser-in-the-Middle","who":"Giacomo \"GiacoLenzo2109\" Lenzini","tags":["Demo","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t094","kind":"talk","title":"Reversing a Recall: From 'Noise Triggered' to RCE","who":"Ben Gardiner","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t095","kind":"talk","title":"All meshed up - Hacking DEFCON 33's mesh network","who":"Amber \"tracert\" Caravalho, nullagent","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t096","kind":"talk","title":"Beyond the Ceremony: The 2026 Passkey Attack Surface","who":"Matteo Giordano","tags":["Demo","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t097","kind":"talk","title":"Gone in 60 Frames - USB Video Exploitation","who":"Robert Herrera, Alex Plaskett","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t098","kind":"talk","title":"From Fuzzer Noise to a Weaponized PHP Exploit: Exploiting a PHP Use-After-Free Vulnerability","who":"Kağan Çapar, Can Oztas","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t099","kind":"talk","title":"BLE Theft Auto: How a Dealer-Installed Anti-Theft System Exposes Over a Million Cars to Theft","who":"Jerry Yu, Aaron Schulman, Yibo Wei","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t100","kind":"talk","title":"Your WAF Blocked Us, That Was The Exploit - Remote Agent Takeover via Cloudflare, Sentry and Claude Zero-Day for data exfil","who":"Barak Sternberg, Nevo Poran, Ron Bobrov","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":60,"loc":{"raw":"Track 1"}}]},{"id":"t101","kind":"talk","title":"MSIX'd Up: Weaponizing the Modern Windows App Packaging Ecosystem","who":"Nick \"zyn3rgy\" Powers","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":60,"loc":{"raw":"Track 2"}}]},{"id":"t102","kind":"talk","title":"1.1 Million Cameras, One Wildcard: Architectural Surveillance in an IoT Cloud","who":"Sammy Azdoufal","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t103","kind":"talk","title":"CUDA've done better - Hacking Nvidia GPUs for container-escape and privilege escalation","who":"Daniel \"0xDACA\" Cohen Hillel, Noam Trobishi","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:30","e":"2026-08-09T13:30:00-07:00","mins":60,"loc":{"raw":"Track 3"}}]},{"id":"t104","kind":"talk","title":"Chaining Microsoft Binaries to get Privileged Primitives in the Windows kernel","who":"Angelo Frasca Caccia","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:30","e":"2026-08-09T13:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t105","kind":"talk","title":"Chaining Logical Bugs for Reliable Windows LPE","who":"Bocheng \"Crispr\" Xiang, HeeChan \"heegong123\" Kim","tags":["Demo","Exploit"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"13:00","s":"2026-08-09T13:00:00-07:00","end":"14:00","e":"2026-08-09T14:00:00-07:00","mins":60,"loc":{"raw":"Track 5"}}]},{"id":"t106","kind":"talk","title":"Taking on the Dark Fleet... in Cyberspace!","who":"Shane Cancilla, Kenneth Miltenberger","sessions":[{"day":"Sun","date":"2026-08-09","start":"13:30","s":"2026-08-09T13:30:00-07:00","end":"14:00","e":"2026-08-09T14:00:00-07:00","mins":30,"loc":{"raw":"Track 3"}}]},{"id":"t107","kind":"talk","title":"LaunchBreak: a Sip of Tea, a Click, and a Full Multi-stage Desktop Takeover","who":"Gavin Zhong, Zhengyu Liu, Jianjia Yu","tags":["Demo","Exploit","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"13:30","s":"2026-08-09T13:30:00-07:00","end":"14:30","e":"2026-08-09T14:30:00-07:00","mins":60,"loc":{"raw":"Track 4"}}]},{"id":"t108","kind":"talk","title":"Talkers Without Borders: Worldwide Free Speech without an Internet Connection","who":"T. Gwyddon \"data\" Owen, amp","tags":["Demo","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"14:00","s":"2026-08-09T14:00:00-07:00","end":"14:30","e":"2026-08-09T14:30:00-07:00","mins":30,"loc":{"raw":"Track 3"}}]},{"id":"t109","kind":"talk","title":"Hacking Jetskis - from Sea-Don't to Sea-Doo","who":"stacksmashing","tags":["Demo","Tool"],"sessions":[{"day":"Sun","date":"2026-08-09","start":"14:00","s":"2026-08-09T14:00:00-07:00","end":"14:30","e":"2026-08-09T14:30:00-07:00","mins":30,"loc":{"raw":"Track 5"}}]},{"id":"c001","kind":"creator","title":"Sovereign by Design, Vulnerable by Default","who":"Devin Lynch, Haley Ring, Andreas Kaltsounis","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c002","kind":"creator","title":"Maritime Hacking Village Policy Panel: Subsea Cables as Strategic Chokepoints - Security, Sovereignty, and the Grey Zone","who":"RADM John Mauger, USCG (ret.), Michael Sulmeyer","org":"Maritime Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c003","kind":"creator","title":"Counting the Dead in the Digital Siege: Detection Infrastructure for Cyber-Mapping Patient Harm","who":"Jorge Acevedo Canabal, Szymon Skalski, Scott Shackelford","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c004","kind":"creator","title":"Four Newbies Vs. An Insulin Pump. How Hard Can It Be?","who":"Emilie Jørstad, Julia Kucharska, Selma Jenker, Birgitte Jordal","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c005","kind":"creator","title":"Hacking Electronic Conspicuity Devices -or- Making Light Aircraft Fly Into Conflict","who":"Ken Munroe","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:30","e":"2026-08-07T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c006","kind":"creator","title":"The Future of Bug Bounty - Program Manager Perspective","who":"Austin Sturm, Jai Kumar Sharma, Catherine Cassell, Hui Yi Loke","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c007","kind":"creator","title":"OSINT4Good: What it takes to find missing people","who":"Angela Ramos, Brent Louie, Kenny J","org":"OSINT For Good Community","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c008","kind":"creator","title":"Quantum-Ready or Not: What 1,000 Codebases Reveal About Cryptographic Risk","who":"Dr. Zulfikar Ramzan","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:30","s":"2026-08-07T10:30:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c009","kind":"creator","title":"InQuorigible: Quora in Missing Persons OSINT","who":"Miranda Tedholm","org":"Recon Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:45","s":"2026-08-07T10:45:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c010","kind":"creator","title":"Sick Signals: Adversarial Prompt Injection via Medical IoT Telemetry","who":"Tamil Mathi T., Vinitha Mathiyazhagan","org":"IoT Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:45","s":"2026-08-07T10:45:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c011","kind":"creator","title":"The Future of Payments: AI, Agentic Commerce and the Next Wave of Innovation","who":"Leigh-Anne Galloway, Sanjeev Sharma, Jorge Braniff, Daniel Cuthbert","org":"Payment Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:45","s":"2026-08-07T10:45:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c012","kind":"creator","title":"Intro to Common Industrial Protocol Exploitation","who":"Trevor Flynn","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c013","kind":"creator","title":"Cryptocurrency Opening Keynote","who":"Michael Schloh (MsvB), Arjun Suresh (Peper), Param (P7R7M)","org":"Cryptocurrency Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c014","kind":"creator","title":"The Ripple Effect: Inside Cloud-Scale Vulnerabilities in the Age of AI","who":"Ryan Nolette, Albin Vattakattu","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c015","kind":"creator","title":"Tech Reclaimers Update: A Year In, Building a Social Movement Away from Big Tech","who":"Janet Vertesi, Rebecah Miller, Andy Hull","org":"Hackers.town","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:30","e":"2026-08-07T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c016","kind":"creator","title":"Principal Cyber Advisors to the US Armed Services: Standing Up America's Cyber Force and the Supporting Talent Search with the Maritime Hacking Village","who":"Dr. Nina Kollars, Jason Vogt","org":"Maritime Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:15","e":"2026-08-07T12:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c017","kind":"creator","title":"Haetae: An Agent to Takedown North Korean C2 Servers","who":"Nelson Rafael Colón Merán, Mauro Eldritch","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c018","kind":"creator","title":"Human in the Loop or Human Out of Luck?","who":"Christine Von Raesfeld","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c019","kind":"creator","title":"Make Money Hacking AI","who":"Edward Morris, Joey Melo","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c020","kind":"creator","title":"Starting and Sustaining a Successful DEF CON Group presented by DC862","who":"C$, Joe Folk, Christopher \"reapermunky\" Aziz","org":"DEF CON Groups (DCG)","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:30","s":"2026-08-07T11:30:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c021","kind":"creator","title":"Threat Hunting in OT Networks - Using Hypothesis Based Methods","who":"Michael Cardwell","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c022","kind":"creator","title":"Yet Another Walking Dead of Active Directory","who":"Nikos \"nickvourd\" Vourdas","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c023","kind":"creator","title":"Flow Like Water: Experiences from Physical Red Teaming","who":"Michael \"v3ga\" Aguilar","org":"Physical Security Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c024","kind":"creator","title":"Aerospace Cybersecurity Student Research Spotlight: ERAU","who":"Sean McConoughey, Samuil Nikolov","org":"Aerospace Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c025","kind":"creator","title":"Write Once, Shell Everywhere: Turning Arbitrary File Writes into RCE","who":"Bruno Mendes, Rafael Castilho Silva","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:30","e":"2026-08-07T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c026","kind":"creator","title":"From Disk Image to ATT&CK in One Binary - a Reference Architecture for Modern Incident Response (in Rust)","who":"HUI Kwun Tai, Albert (4n6h4x0r)","org":"LOONG Community","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c027","kind":"creator","title":"Maritime Hacking Village Policy Panel: Shadow Fleets, Cyber Effects, and Plausible Deniability","who":"Mark McHargue, RADM John Mauger, USCG (ret.)","org":"Maritime Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:15","s":"2026-08-07T12:15:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c028","kind":"creator","title":"AgentBreaker: A blind spot detector for your coding agents","who":"Aditi Narasimhan, Farzaan Kaiyom","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c029","kind":"creator","title":"Dr. Strangepwn: How I Learned to Stop Worrying and Love the LLM","who":"Larry Pesce","org":"IoT Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:15","e":"2026-08-07T13:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c030","kind":"creator","title":"Introduction to RFID","who":"Ege Feyzioglu, Karen Ng","org":"Physical Security Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c031","kind":"creator","title":"Beyond Theoretical Risk: How Cache Poisoning Escalated to Critical Account Takeover in TikTok's Web Infrastructure","who":"Glendon Chong","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:30","s":"2026-08-07T12:30:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c032","kind":"creator","title":"Aerospace Cybersecurity Student Research Spotlight: Cal Poly","who":"Clara Davis, Dylan Gururajan","org":"Aerospace Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:45","s":"2026-08-07T12:45:00-07:00","end":"13:30","e":"2026-08-07T13:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c033","kind":"creator","title":"Connectivity as Control in the European High North","who":"Jorge Acevedo Canabal, Szymon Skalski, Patricia Vargas Leon","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c034","kind":"creator","title":"OSINT Is Still a Thinking Game: Surviving AI Without Losing Tradecraft","who":"Nico Dekens","org":"Recon Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c035","kind":"creator","title":"Trust the Basics, But Know Their Limits: Where Standard Cybersecurity Advice Falls Short","who":"Yael Grauer","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:30","e":"2026-08-07T13:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c036","kind":"creator","title":"Running your own LTE network for fun and profit????","who":"Lozaning","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c037","kind":"creator","title":"The Cum-Stained Precipice of Digital Redlining","who":"Erica Rachel Andrews, Abbie Gonzalez (pronounced AB)","org":"Hackers.town","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:30","e":"2026-08-07T13:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c038","kind":"creator","title":"From threat-intel to tested defense, the adversary simulation playbook","who":"Sarah Hume, Cheryl Biswas","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:15","s":"2026-08-07T13:15:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c039","kind":"creator","title":"It's a Payment Terminal. It's My Arcade. It's Everywhere. It Cost Me Nine Bucks.","who":"Chiao-Lin Yu (Steven Meow)","org":"Payment Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:30","s":"2026-08-07T13:30:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c040","kind":"creator","title":"Hacking Airplanes at the NTSB","who":"Jonathan Xue, David Case","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:30","s":"2026-08-07T13:30:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c041","kind":"creator","title":"Classical OSINT using AI (Actual Intelligence)","who":"Bianca C. Ionescu/reconcerto","org":"OSINT For Good Community","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:30","s":"2026-08-07T13:30:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c042","kind":"creator","title":"Drag, Drop, Deploy, Compromise: Why Trusted HMI Engineering Toolchains Remain an ICS Supply-Chain Blind Spot","who":"Eunji choi, TaeWoo Kim, Jiwoon Yoo","org":"Maritime Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:45","s":"2026-08-07T13:45:00-07:00","end":"14:15","e":"2026-08-07T14:15:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c043","kind":"creator","title":"The Liability Stack: When Code Becomes Conduct","who":"Carole House","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c044","kind":"creator","title":"6 years of Adversary Village! Keeping up with the adversaries and why it takes a village","who":"Abhijith B R (Abx)","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c045","kind":"creator","title":"Inside the Guts of Ransomware","who":"Ashley Muñoz","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c046","kind":"creator","title":"Cryptohack Badge Hacking","who":"Do Truong Giang (FSNaix), Arjun Suresh (Peper), Sadiq (Sdqmd)","org":"Cryptocurrency Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c047","kind":"creator","title":"AI Nightmare: Hacking at 0-Hour","who":"Pedro \"drop\" Paniago","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:30","e":"2026-08-07T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c048","kind":"creator","title":"Scuttling Dashboards","who":"Karan Sajnani","org":"Maritime Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:15","s":"2026-08-07T14:15:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c049","kind":"creator","title":"ICSForge: (Open-Source) OT/ICS Security Coverage Validation Platform","who":"Can Kurnaz","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c050","kind":"creator","title":"Wiring the Harness: Orchestrating Frontier Models for Vulnerability Hunting at Scale","who":"Arie Haenel, Tony Martin","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c051","kind":"creator","title":"Cove: Compositional and Verifiable Confidential Computing Workflows","who":"Robin, Erika Lee, Stephanie","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:00","e":"2026-08-07T15:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c052","kind":"creator","title":"Defend zee clankers: OWASP AI Security Verification Standard (AISVS)","who":"Jim Manico","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:30","s":"2026-08-07T14:30:00-07:00","end":"15:15","e":"2026-08-07T15:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c053","kind":"creator","title":"Your Lives are in Another Struct: Breaking Memory Hacks with Field Relocation","who":"Ryan Zmuda","org":"Game Hacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:45","s":"2026-08-07T14:45:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","mins":60,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c054","kind":"creator","title":"SEND: Teaching Machines to Lie to Defenders","who":"Ariz Soriano, Yi Ting Shen","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:45","s":"2026-08-07T14:45:00-07:00","end":"15:15","e":"2026-08-07T15:15:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c055","kind":"creator","title":"OT Segmentation Under Operational Constraints","who":"Tony Turner","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c056","kind":"creator","title":"Drones, Detectors, and the Kill Chain","who":"Greg Albrecht","org":"Aerospace Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c057","kind":"creator","title":"Cache Key Injection: Smuggling Poison Through the Door","who":"Alex Brumen","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c058","kind":"creator","title":"Hey Adversary, I've Got a Human EDR Bypass for You...","who":"Daniel Isler","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:15","s":"2026-08-07T15:15:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c059","kind":"creator","title":"Forged in fire: Malware Factory","who":"Andra Lezza, Jon McCoy","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:15","s":"2026-08-07T15:15:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c060","kind":"creator","title":"Privacy's Defender: How Hackers Protected the Internet Before and Can Do It Again","who":"Cindy Cohn","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c061","kind":"creator","title":"Forensics of Covert Entry","who":"Bill Graydon, Bobby Graydon","org":"Physical Security Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c062","kind":"creator","title":"Cleared for Takeoff: Debunking \"Uncertifiable\" Cybersecurity","who":"Katie Fejer","org":"Aerospace Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c063","kind":"creator","title":"Hunting for Cryptographic Ghosts: A Bug Hunter's Guide to Signature Malleability and Replay Attacks in EVM Bridges & Multi-Sigs","who":"Samet Berk Simsek, Ahmet Furkan Aydogan","org":"Bug Bounty Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c064","kind":"creator","title":"You Can't Patch What You Can't Find: The Financial Quantum Attack Surface","who":"Dr. Katrina Rosseini, Dr. Allan Friedman","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:45","s":"2026-08-07T15:45:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c065","kind":"creator","title":"Snap, Crackle, Popped: How to manage a massive cyber attack","who":"David Nathans","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:45","s":"2026-08-07T15:45:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c066","kind":"creator","title":"The Door Was Already Open","who":"Champ","org":"Physical Security Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c067","kind":"creator","title":"Building a State Wide VDP: Lessons from Maryland's First Year in the Trenches","who":"oldbae","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c068","kind":"creator","title":"Practical Guidance for RF Researchers: Experiment First, Interfere Never","who":"Andy Hendrickson","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c069","kind":"creator","title":"Legally Hacked: how countries decide when security research Is allowed","who":"Katharina \"Kat S\" Sommer","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c070","kind":"creator","title":"Crypto Is Fine. The Code Is Not: Real-World Cryptographic Failures","who":"Diptendu Kar","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:15","e":"2026-08-07T17:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c071","kind":"creator","title":"Lights Out and Last Call: A Drunken Tabletop on Medical Device Resilience","who":"Courtney McCarty","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:15","e":"2026-08-07T17:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c072","kind":"creator","title":"Covert Quantum Computing","who":"Evan Anderson","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c073","kind":"creator","title":"Minimize Harm, Maximize Defense: How Anthropic Navigates the Offense-Defense Divide","who":"Curt Barnard⁩","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c074","kind":"creator","title":"Groking the Kill Chain","who":"Anthony Russell","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"17:00","e":"2026-08-07T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c075","kind":"creator","title":"Lessons Learned from Poland and Beyond: The State of Electric Sector Attacks in 2025","who":"Joe Slowik","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"17:30","e":"2026-08-07T17:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c076","kind":"creator","title":"Q-Day - the Early Years...","who":"Konstantinos Karagiannis","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"17:30","e":"2026-08-07T17:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c077","kind":"creator","title":"Blockchain defense, stablecoin attacks, and Web3 OSINT","who":"KL4R10N, Dinmukhammed Kabiden (Celestial), Izdihar","org":"Cryptocurrency Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c078","kind":"creator","title":"Latest News in the Proxmark World","who":"Iceman","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c079","kind":"creator","title":"2026 is the New 2016: Relearning the Lessons from the \"Year of the Data Breach\"","who":"Anthony Hendricks","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:15","s":"2026-08-07T17:15:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c080","kind":"creator","title":"Where hackers find their people, and security finds its strength","who":"Seeyew Mo, Cheryl Biswas","org":"Adversary Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:15","s":"2026-08-07T17:15:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c081","kind":"creator","title":"Exposed Data Centers: Bypass IT Security, Crank Up the Heat","who":"Stephen Hilt, Nomaan Huq","org":"ICS Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:30","s":"2026-08-07T17:30:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c082","kind":"creator","title":"Hacking Hearts by Reverse Engineering Pacemaker Firmware","who":"Shayan Alinejad, Marie Moe, Kristian Karlsen","org":"Biohacking Village","sessions":[{"day":"Fri","date":"2026-08-07","start":"17:30","s":"2026-08-07T17:30:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c083","kind":"creator","title":"Whose Agent Is It Anyway? Agency, Authorization, and Accountability in the Year of the AI Agent","who":"Jacob Wall, Andreas Kaltsounis","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c084","kind":"creator","title":"RIP Denuvo: DRM in a Post-Hypervisor World","who":"Amin Hussien","org":"Game Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c085","kind":"creator","title":"MCPwned: How Exposed AI Agents Became the Internet's New Recon Toy","who":"Eli Woodward","org":"Adversary Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:30","e":"2026-08-08T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c086","kind":"creator","title":"To Catch a Pseudoscientist","who":"James Utley PhD","org":"Biohacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:30","e":"2026-08-08T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c087","kind":"creator","title":"Web3 Security: Hacks, Scams, and Exploits","who":"Kennashka DeSilva, Philip Werlau (AlephNull)","org":"Cryptocurrency Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c088","kind":"creator","title":"Shadow Webhooks: Hunting for Dangling Event Listeners in Enterprise Workspaces","who":"Samet Can Tasci, Mehmet Önder Key","org":"Bug Bounty Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:30","e":"2026-08-08T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c089","kind":"creator","title":"A Droidwork Orange: A Longitudinal Study of Android Security Research","who":"Samuele Doria, Nicholas Miazzo, Eleonora Losiouk","org":"Mobile Hacking Community","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c090","kind":"creator","title":"Emulating the \"Identity-First\" Threat Actor: Automated Playbooks for IdP Hijacking","who":"Samet Can Tasci, Mehmet Önder Key","org":"Adversary Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:30","s":"2026-08-08T10:30:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c091","kind":"creator","title":"The Death of Dicom","who":"Michael Aguilar","org":"Biohacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:30","s":"2026-08-08T10:30:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c092","kind":"creator","title":"Testing API Business Logic With AI Agents: What We Got Wrong First","who":"Samantha Pearlstein","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:30","s":"2026-08-08T10:30:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c093","kind":"creator","title":"Dreamcast Ex Inferis: RCE on the Sega Dreamcast PlanetWeb Browser","who":"Christopher Hernandez","org":"Game Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:45","s":"2026-08-08T10:45:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c094","kind":"creator","title":"Policy Without Maintainers Is a Supply Chain Vulnerability","who":"Kris Borchers, Christopher \"CRob\" Robinson","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c095","kind":"creator","title":"The Camera Is Lying: RTSP Trust Failures in Modern Surveillance Systems","who":"Bogdan \"BOTEZATU\"","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c096","kind":"creator","title":"No Entry: Badge Access Denial on Demand","who":"Andrew Quill","org":"Physical Security Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c097","kind":"creator","title":"Security Analysis of Open-Source Software Used in Onboard Satellite Systems","who":"Roee Idan","org":"Aerospace Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c098","kind":"creator","title":"Gold Bug: Puzzle Panel with Friends","who":"TBD, CPV Gold Bug Team 2026","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c099","kind":"creator","title":"Building a Hacker Haven: The Long Game of Growing a Local Hacker Community","who":"Ryan Zagrodnik, Allie Zagrodnik","org":"DEF CON Groups (DCG)","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:30","e":"2026-08-08T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c100","kind":"creator","title":"Nuclear Industrial Control System Simulation (NICSSIM) aka Multi-Agent Cyber Defense Framework for Distributed Nuclear Operational Technology Systems","who":"Marco A. Alanis Komiyama, Brian G. Rodiles Delgado, Carmela Gonzales","org":"ICS Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c101","kind":"creator","title":"Catching Cheaters in Super Smash Bros Melee","who":"AltF4","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c102","kind":"creator","title":"So You Want to Work in Aircraft Cyber? Here's what you need to know!","who":"Matt Gaffney, Marcie Wise","org":"Aerospace Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c103","kind":"creator","title":"Compiling the World: A Binary Dataset Built from nixpkgs","who":"Chris Connelly","org":"Nix Vegas Community","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:30","s":"2026-08-08T11:30:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c104","kind":"creator","title":"Anyone Can Hack IoT (Even Easier Now) - A Beginner's Guide to AI Augmented IoT Hacking","who":"Andrew Bellini","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:45","s":"2026-08-08T11:45:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c105","kind":"creator","title":"Local Language Models in OT - Basics and Considerations","who":"Vivek Ponnada","org":"ICS Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c106","kind":"creator","title":"Please Place Your Electronic Devices in {Maritime} Mode: Exposing NTN's Maritime Attack Surface","who":"Jason Veara","org":"Maritime Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c107","kind":"creator","title":"Keynote Panel: Rules for Defenders & Frontier Models for Adversaries: How institutional restriction of dual-use models only disarms defenders... again","who":"Bruce Schneier","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c108","kind":"creator","title":"Biohacking Panel: Leveraging Large Language Models for Policy, Regulatory, and Compliance in IoMT: Opportunities, Risks, and Safeguards","who":"Sai Sitharaman, Dr. Deepti Gupta","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c109","kind":"creator","title":"Killing AI Slop: A Multi-Model Orchestration Framework That Only Reports Findings It Can Prove","who":"Armaan Pathan","org":"Bug Bounty Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c110","kind":"creator","title":"KYC and XMR... FOR HACKERS!","who":"AltKey","org":"Hackers.town","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:30","e":"2026-08-08T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c111","kind":"creator","title":"Privacy You Inherit: How Cultural History Writes the Source Code for AI Surveillance Policy","who":"Tati","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c112","kind":"creator","title":"Maritime Threat Hunting: What We Actually Find When We Look","who":"Cliff Neve, Philip Acosta, Dean Macris","org":"Maritime Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c113","kind":"creator","title":"Raiders of the Lost Firmware: A Hands-On Workshop in IoT Firmware Archaeology","who":"Simone Bossi, Luca Borzacchiello","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c114","kind":"creator","title":"Eating Our Own Dogfood: Running a Bug Bounty Program on a Bug Bounty Platform","who":"Martzen Haagsma, Shrimant Subhash More","org":"Bug Bounty Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c115","kind":"creator","title":"Tag, You're It: Physical Tracking Tech, Defense, and How to DIY Your Own","who":"Eddie Miro","org":"Recon Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c116","kind":"creator","title":"Safe, Secure, and Effective: What Static Behavior Analysis Reveals About the Software Running Your Medical Devices","who":"Andrew Hendela","org":"Biohacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c117","kind":"creator","title":"Evading LLM Detection","who":"Hanley Shun, Cong Zhang, ⁨Oscar Skjerven","org":"Cryptocurrency Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c118","kind":"creator","title":"PhantomShell: As If Firewalls Didn't Exist","who":"Khael Kugler","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c119","kind":"creator","title":"Building a Strong Community Culture presented by DC407","who":"Edna Jonsson, Dustin","org":"DEF CON Groups (DCG)","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:30","e":"2026-08-08T13:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c120","kind":"creator","title":"The Subverted Hacker","who":"Robert \"zizkill\" Shala","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c121","kind":"creator","title":"Recon on Trial: The OSINT Operator's Legal Playbook","who":"Daniel Garrie","org":"Recon Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c122","kind":"creator","title":"Field Notes on Offensive Agents: Reusability, Reliability, and What Breaks","who":"Ibai Castells, Dominika Pietrzak","org":"Adversary Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c123","kind":"creator","title":"FORTRESS Framework","who":"Brad \"Sno0ose\" Ammerman","org":"Physical Security Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c124","kind":"creator","title":"Why Mandatory Age Verification Keeps Us All Less Safe","who":"Alexis Hancock, Kenyatta Thomas","org":"Women in Security and Privacy (WISP)","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:30","s":"2026-08-08T13:30:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c125","kind":"creator","title":"OT Round table. Real talk on how to protect your OT spaces","who":"Dillon Lee, Aaron Crow, Tom VanNorman","org":"ICS Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c126","kind":"creator","title":"What we learned from SATAN about the MYTH of Mythos","who":"Jeff Crume","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c127","kind":"creator","title":"Microsoft and Amazon are my Favorite C2 Providers","who":"Robert Pimentel","org":"Adversary Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c128","kind":"creator","title":"Clone to Pwn: Remote Badge Cloning with the Flipper Zero","who":"Langston Clement, Dan Goga","org":"Physical Security Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c129","kind":"creator","title":"Racing PX4: Memory Safety and Timing Vulnerabilities","who":"Nefeli Georgilas","org":"Aerospace Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c130","kind":"creator","title":"Forget FIPS: An Analysis of Russian and Chinese Cryptographic Standards","who":"1nfocalypse","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c131","kind":"creator","title":"That's Not Your Agent: Why Zero Trust Can't Tell","who":"Emma Yuan Fang, Krity Kharbanda","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c132","kind":"creator","title":"UAiRT: Over The Air UART","who":"Samet Berk Simsek, Metehan Arslan","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:15","e":"2026-08-08T15:15:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c133","kind":"creator","title":"Hacking AFDX or Not; A Primer for Flight Control Systems Security","who":"Adam Bromiley, Andrew Tierney","org":"Aerospace Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:00","e":"2026-08-08T15:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c134","kind":"creator","title":"Give an AI Industrial Protocol Tools and Watch What It Destroys","who":"Malav Vyas, Asher Davila","org":"ICS Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:45","s":"2026-08-08T14:45:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c135","kind":"creator","title":"Signal Remembers: Wi-Fi Recon Beyond MAC","who":"Sadettin Boluk","org":"Recon Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c136","kind":"creator","title":"AIRGAP BREACHED: Monitoring the Ancestral Payload Leaking from the Poles","who":"David J. Castillo-Cornejo","org":"Biohacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c137","kind":"creator","title":"The Agent Long Con: Tricking Agents Out of Their Data","who":"Patrick Walsh","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c138","kind":"creator","title":"There's A Bug in My Boot! Finding Vulnerabilities in U-Boot","who":"Jared Stroud","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c139","kind":"creator","title":"Beyond Your Bookshelf: Hackable eReaders","who":"Katie Paxton-Fear","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:15","s":"2026-08-08T15:15:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":45,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c140","kind":"creator","title":"The Compiler Nobody Satisfactorily Tested: Supply-Chain Gaps in EV Charging Firmware","who":"Kangwon Lee","org":"Car Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c141","kind":"creator","title":"Cl0p ^_- Til You Drop - 6 years, 9 Campaigns, 7 0-Days","who":"Eli Woodward","org":"Recon Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c142","kind":"creator","title":"DarkSyringe: Automated poisoning of Clinical AI Assistants Through PDFs (a physician's point of view)","who":"Francesco Costa","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c143","kind":"creator","title":"Free IP, Free Chaos: DHCP-Assisted Flooding Against Automotive Ethernet","who":"Yehyeong Lee","org":"Car Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c144","kind":"creator","title":"Shipcrawler: Automated Maritime OSINT - From Open Data to Actionable Intelligence","who":"Ahmed Nagi Nasr","org":"Maritime Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c145","kind":"creator","title":"What TEEs Do Not Hide: Residual Metadata Leakage in Confidential LLM Serving","who":"Anup Swamy Veena","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c146","kind":"creator","title":"Zero-Knowledge Unsaflok: The Unsaflok Saga Continues","who":"Ben Higgins, Aaron Tulino","org":"Physical Security Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c147","kind":"creator","title":"Breaking Ciphers and Zero-Knowledge Proofs","who":"Freeman Slaughter, Diego Salazar (rehrar), Luke Szramowski","org":"Cryptocurrency Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c148","kind":"creator","title":"Why Couldn't I See My Own Drone? Remote ID, ESP32s, and the Packet Trail to Friend or Foe","who":"Charles Grow, Will Hatzer","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c149","kind":"creator","title":"AI Pentesting is not a Vibe Check","who":"Ads Dawson","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:30","e":"2026-08-08T16:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c150","kind":"creator","title":"Trust Amplification in Enterprise AI Systems - Microsoft CoPilot Case Studies Enabling AI-Assisted Influence Operations","who":"Tobias Diehl","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:30","s":"2026-08-08T16:30:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c151","kind":"creator","title":"LSTM Autoencoder Ensemble for NMEA 2000 Intrusion Detection on Vessel Networks","who":"James Campbell, Anissa Elias","org":"Maritime Hacking Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:30","s":"2026-08-08T16:30:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c152","kind":"creator","title":"Weaponization of Cellular Based IoT Technology - Leveraging Smart Devices to Gain a Foothold","who":"Deral Heiland, Carlota Bindner","org":"IoT Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:30","s":"2026-08-08T16:30:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c153","kind":"creator","title":"AI Safety Theater: What the RAISE Act Regulates - and What It Does Not","who":"Joshua Marpet","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c154","kind":"creator","title":"CyberKB: When Your AI Copilot Runs the Recon, Crawls the Dark Web, and Maps the Kill Chain","who":"Suriya Prasath S, Chandru J, Muthu Kumar","org":"Recon Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c155","kind":"creator","title":"The National Fight Against ALPRs","who":"Sarah, Freddy Martinez","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c156","kind":"creator","title":"Behind the Badge: SAOv3 and Open Sourcing the Aerospace Village ISS Badge","who":"Lillian Ash Baker, Kevin Colley, Robert Pafford, Adam Batori","org":"Aerospace Village","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"17:30","e":"2026-08-08T17:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c157","kind":"creator","title":"Ghost Followers: Using AI to Unmask Fake LinkedIn Profiles at Scale","who":"Aiswarya Venkitesh","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c158","kind":"creator","title":"SADF: A Taxonomy and Evaluation Framework for Agentic Security Failures","who":"Julie Brunias","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c159","kind":"creator","title":"There Is No Internet: Cross-Domain Recon of all 4.3 Billion IPv4s","who":"John McCary","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c160","kind":"creator","title":"Total Recon: How We Discovered 1000s of open Agents in The Wild","who":"Avishai Efrat, Roey Ben Chaim","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c161","kind":"creator","title":"SpaceCOP: Houston, We Have an Intrusion","who":"Brandon Bailey","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:30","s":"2026-08-08T17:30:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c162","kind":"creator","title":"Five Million Industrial Control Systems Walk Into a Bar: What IRONMAP Found When It Scanned the Whole Internet","who":"Matt Caldwell","org":"ICS Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c163","kind":"creator","title":"Ghost in the Hiring Machine: How to Spot Fake Personas Before They're on Your Payroll","who":"Michael Reimsbach, Rishi (@rxerium) C","org":"Recon Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:45","e":"2026-08-09T10:45:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c164","kind":"creator","title":"You Can't Opt Out: The Invisible Surveillance in Your Walls, Pockets, and Lives","who":"Naomi Brockwell","org":"IoT Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c165","kind":"creator","title":"Breaking In, Evil Style: A Guide to Scaring Your CEO","who":"Andrew Lebedinsky","org":"Physical Security Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c166","kind":"creator","title":"A Billion-User Blast Radius: Owning ChatGPT's Secure Sandbox","who":"Simcha Kosman","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c167","kind":"creator","title":"Skill Issue: A Recon Story","who":"Ryan Bonner","org":"Bug Bounty Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c168","kind":"creator","title":"Lessons Learned from Building a New DEF CON Group presented by DC724","who":"jbohack (Joe), Cliff Friedel (GritsnGravy)","org":"DEF CON Groups (DCG)","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:00","s":"2026-08-09T10:00:00-07:00","end":"10:30","e":"2026-08-09T10:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c169","kind":"creator","title":"Unlocking Vehicles by Brute-Forcing Rolling Code Systems","who":"Danilo Erazo","org":"Car Hacking Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c170","kind":"creator","title":"Wand Protocol: Full-Chain Attack on an FDA-Listed Fertility Analyzer","who":"Xiaoqing Liu","org":"Biohacking Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c171","kind":"creator","title":"Scaling Adversary Emulation with Autonomous Agents","who":"Daniel Fabien","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c172","kind":"creator","title":"Slop Spotting, Using Rules to Detect AI Slop for Bug Bounty","who":"Katie Paxton-Fear, Max vonBlankenburg","org":"Bug Bounty Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c173","kind":"creator","title":"The Enshittified Internet and How We Can All Rewild the Internet","who":"LambdaCalculus","org":"Hackers.town","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:30","s":"2026-08-09T10:30:00-07:00","end":"11:00","e":"2026-08-09T11:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c174","kind":"creator","title":"Building Hackbots","who":"Jason Haddix","org":"Recon Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"10:45","s":"2026-08-09T10:45:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":45,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c175","kind":"creator","title":"Is Your Fridge Running? Then You Better Catch It - State of Security in Refrigeration Systems","who":"Amir Zaltzman","org":"ICS Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c176","kind":"creator","title":"Beyond the Hype: The Real Role of Red Teams in an AI World","who":"Michael Leibowitz, Niranjanaa Ragupathy","org":"Adversary Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c177","kind":"creator","title":"Physical Security is not sexy which is bad for organizations and good for red teams.","who":"Roger Egan","org":"Physical Security Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c178","kind":"creator","title":"Cryptocurrency Closing Keynote","who":"Param (P7R7M), Arjun Suresh (Peper), Chelsea Button","org":"Cryptocurrency Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c179","kind":"creator","title":"You're Probably Using FPE Wrong","who":"Leslie Gutschow","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c180","kind":"creator","title":"The State of DEF CON Groups","who":"Magen Wu, Alethe Denis","org":"DEF CON Groups (DCG)","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"11:30","e":"2026-08-09T11:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c181","kind":"creator","title":"Stealing at the Speed of Light: The Anatomy of a Real Relay Attack tool","who":"Robbie Galfrin","org":"Car Hacking Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c182","kind":"creator","title":"Yes, I froze an SNES for science","who":"dwangoAC","org":"Game Hacking Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":60,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c183","kind":"creator","title":"One Firmware Flaw, 70+ Device Models: Lessons in Industrial IoT Disclosure and Mitigation","who":"Weihan Goh, ZhengChao Wen","org":"IoT Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c184","kind":"creator","title":"Automated Discovery of Prompt Injection Vulnerabilities via Mutated Prompt Generation","who":"Bogdan Stelee, Arnav Garg","org":"Bug Bounty Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 6"}}]},{"id":"c185","kind":"creator","title":"IsMyPhonePwned","who":"Desnos Anthony","org":"Mobile Hacking Community","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:30","s":"2026-08-09T11:30:00-07:00","end":"12:00","e":"2026-08-09T12:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"c186","kind":"creator","title":"ThreatPatrol: Visualising the Modern Threat Landscape","who":"Viral Maniar","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c187","kind":"creator","title":"Pwning Agentic Browsers with PleaseFix: A New Vulnerability Class for 0-Click Takeover","who":"Stav Cohen","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c188","kind":"creator","title":"Travel Security: Viewing Risks Through the Eyes of a Hacker","who":"Tim Roberts, Brent White","org":"Physical Security Village","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":60,"loc":{"raw":"Creator Stage 4"}}]},{"id":"c189","kind":"creator","title":"Your OpSec Is Showing","who":"Fae Blu3Bird\" Carlisle","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"12:30","e":"2026-08-09T12:30:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c190","kind":"creator","title":"Two NICs, Zero Trust: Pulling Apart a PAC Buried in Critical Infrastructure","who":"Sam Thom, Adam Bromiley","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 1"}}]},{"id":"c191","kind":"creator","title":"SH4ZAM: Accelerated Vector Math on the Sega Dreamcast","who":"Falco Girgis","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 2"}}]},{"id":"c192","kind":"creator","title":"This Wasn't AI Generated: Principles for Breaking Generative Watermarks","who":"Tahseen Rabbani, Thomas Mason","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 3"}}]},{"id":"c193","kind":"creator","title":"Living Off Someone Else's Inference","who":"Armend Gashi, Redon Gashi","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 5"}}]},{"id":"c194","kind":"creator","title":"Source of Truth: A Field Guide for Deep Technical Research","who":"Carley \"51nk0r5w1m\" Fant","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}]},{"id":"t110","kind":"talk","title":"DEF CON Badge Talk","who":"Friday at 10:00 in Main Track 3 60 minutes | Demo","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:30","s":"2026-08-07T10:30:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","mins":30,"loc":{"raw":"Track 1"}}],"note":"printed program only - not listed on defcon.org"},{"id":"t111","kind":"talk","title":"Contest Closing Ceremonies & Awards","who":"Sunday at 13:00 in Main Track 5 60 minutes | Demo, Exploit","sessions":[{"day":"Sun","date":"2026-08-09","start":"13:30","s":"2026-08-09T13:30:00-07:00","end":"15:00","e":"2026-08-09T15:00:00-07:00","mins":90,"loc":{"raw":"EHW3 - 1006,904","note":"Main Tracks 1,4","room":"1006"}}],"note":"printed program only - not listed on defcon.org"},{"id":"t112","kind":"talk","title":"DEF CON Closing Ceremonies & Awards","who":"Jeff \"The Dark Tangent\" Moss","sessions":[{"day":"Sun","date":"2026-08-09","start":"15:00","s":"2026-08-09T15:00:00-07:00","end":"17:30","e":"2026-08-09T17:30:00-07:00","mins":150,"loc":{"raw":"EHW3 - 1006,904","note":"Main Tracks 1,4","room":"1006"}}],"note":"printed program only - not listed on defcon.org"},{"id":"c195","kind":"creator","title":"Donating Bone Marrow: a Donor's First-Hand Experience","org":"National Marrow Donor Program (Be the Match)","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:30","s":"2026-08-08T12:30:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","mins":30,"loc":{"raw":"Creator Stage 7"}}],"note":"printed program only - not listed on defcon.org"},{"id":"t113","kind":"talk","title":"Not Your Parents' Schoolhouse Rock: Getting Tech Policy Done in a Non-Functioning Congress","who":"Jeffrey Rothblum; Michael Flynn","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t114","kind":"talk","title":"Morbidity and Mortality: Hackers, Hipaa, and a New Prescription for Healthcare Cyber Policy","who":"Christian Dameff; Jeff Tully","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"12:00","e":"2026-08-07T12:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t115","kind":"talk","title":"Election Security in the Age of AI: Governance, Trust, and the Systems Behind Democracy","who":"Lester Godsey; William Gates; Tim Harper","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t116","kind":"talk","title":"The Cyber Crystal Ball: the Annual Policy @ DEF CON Contingencies Survey","who":"Matthew Wein; Bruce Schneier; Chris Painter","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"14:00","e":"2026-08-07T14:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t117","kind":"talk","title":"Strengthening the Cve Ecosystem","who":"John Banghart; Elizabeth Eigner","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"15:30","e":"2026-08-07T15:30:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t118","kind":"talk","title":"When AI Finds Everything: Vulnerability Policy for the Coming Discovery Surge","who":"Alec Summers; Lindsey Cerkovnik","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:30","s":"2026-08-07T15:30:00-07:00","end":"16:30","e":"2026-08-07T16:30:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t119","kind":"talk","title":"Filibuffer Overflow: Hackers Stage a Congressional Hearing","who":"Katherine Pratt; Jeff Rothblum; Maurice Turner","org":"Policy @ DEF CON","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:30","s":"2026-08-07T16:30:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t120","kind":"talk","title":"Journey to Create an All-State Cybersecurity Plan for Oklahoma","who":"Craig Buchanan","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"11:00","e":"2026-08-08T11:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t121","kind":"talk","title":"From Policy to Prod: How a Frontier AI Lab Enforces Its Cyber Rules","who":"Grant Versfeld; David Forsythe","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"12:00","e":"2026-08-08T12:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t122","kind":"talk","title":"Europe's Expanding Role in Global Vulnerability Management","who":"Nuno Rodrigues Carvalho; Razvan Gavrila\"","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t123","kind":"talk","title":"Surprise Session - Check Hacker Tracker Tba","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"14:00","e":"2026-08-08T14:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t124","kind":"talk","title":"The Best of Three Bad Ideas? Ransomware Taxes in Lieu of Bans or Doing Nothing","who":"Joe Uchill","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:30","e":"2026-08-08T14:30:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t125","kind":"talk","title":"From Disclosure to Defense: Rebuilding Vulnerability Management for the AI Era","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:30","s":"2026-08-08T14:30:00-07:00","end":"15:30","e":"2026-08-08T15:30:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t126","kind":"talk","title":"Assume Breach, but for Real: Rewriting Infrastructure Policy for the Adversaries Who Never Left","who":"Travis Berent; Adam Hickey","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:30","s":"2026-08-08T15:30:00-07:00","end":"16:00","e":"2026-08-08T16:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t127","kind":"talk","title":"Securing the Safety Net: Why Healthcare Cybersecurity Policy Keeps Failing Patients","who":"Sahan Fernando; James Bowie; Nancy Brainerd; Phil Englert","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t128","kind":"talk","title":"The Closing Window: Governing Agentic AI Security in a Post-Mythos World","who":"Taylor Roberts; Mitch Herckis; Katie Trimble-Noble; Razvan Gavrila","org":"Policy @ DEF CON","sessions":[{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t129","kind":"talk","title":"Strategic Resistance: How a Global Network Is Fighting the Spyware Industry","who":"Michael Brennan; Nadine Farid Johnson","org":"Policy @ DEF CON","sessions":[{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t130","kind":"talk","title":"Inference in the Infrastructure: Developing Nist AI Rmf Resources for Resilient AI in Critical Systems","who":"Raymond Sheh; Martin Stanley","org":"Policy @ DEF CON","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"t131","kind":"talk","title":"Tactical Advocacy: Panel & Peer Sessions with EFF","who":"Thorin Klosowski; Cooper Quintin; Alexis Hancock; Cindy Cohn; Tori Noble; Rory Mir","org":"Policy @ DEF CON","sessions":[{"day":"Sun","date":"2026-08-09","start":"12:30","s":"2026-08-09T12:30:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy @ DEF CON","level":2,"room":"W210-211"}}],"note":"Policy @ DEF CON track; day inferred from the printed program's columns"},{"id":"d001","kind":"demolab","title":"AD-Necromancer: Resurrecting Forgotten Control Paths in Active Directory","who":"Akbar \"0xsensei\" Abdullayev 0xHera","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"Every pentest, same story - BloodHound says no path to DA, client celebrates, meanwhile a 2019 service account has AddAllowedToAct on a production DC that nobody remembers. AD-Necromancer finds what humans forget.\nGive it a username, password, and domain - it bootstraps EDR evasion (ETW patching, DLL unhooking, Halos Gate syscalls), collects AD data over ADWS instead of LDAP, encrypts with AES-256-GCM, and exfils to C2 with zero artifacts. One command, credentials to findings. It feeds tokenized BloodHound data to an LLM for semantic reasoning - forgotten RBCD, ghost cross-forest delegations, orphaned admin accounts no compliance checklist catches.\nPrivacy Cloak ensures real names never leave the box. Open source, MIT licensed. Come dig up what your tools missed."},{"id":"d002","kind":"demolab","title":"Peekaboo: Breaking the Black Box of Threat and Malware Emulation","who":"Zhassulan \"cocomelonc\" Zhussupov","sessions":[{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"Standard security testing often forces a choice: use \"script-kiddie\" tools that get caught instantly, or use high-end frameworks that are too complex for rapid detection testing. Peekaboo bridges this gap. In this Demo Lab, we present Peekaboo - a modular, open-source framework designed for safe threat emulation.\nUnlike traditional malware, Peekaboo focuses on generating high-fidelity telemetry through legitimate cloud API abuse (GitHub, Bitbucket, Slack, Discord, Azure, VirusTotal, XBOX, AngelCam, etc) and evasive execution techniques (Direct Syscalls, Callback-based execution).\nWe will demonstrate how to:\n- Generate polymorphic agents that bypass static analysis\nusing rare cryptographic algorithms like Speck and Skipjack.\n- Generate agents that leverage signal processing\nlike Fast Fourier Transformation and Feistelnetwork based cryptography for bypass EDR.\n- Establish covert C2 channels within the\nmetadata of trusted enterprise applications.\n- Rapidly test EDR/SIEM rules against modern\npersistence and lateral movement techniques without risking system stability.\nPeekaboo isn't just a tool; it's a \"sandbox-friendly\" adversary in a box, designed to help Blue Teams level up by understanding the nuances of the Offensive Dev Loop. Come see how we turn \"hidden\" threats into \"visible\" learning opportunities.\nSENRIGAN (千里眼) X SUZAKU (朱雀):"},{"id":"d003","kind":"demolab","title":"Threat Hunting & DFIR for AWS - No SIEM, Just Your Laptop","who":"Fukusuke Takahashi Zach Mathis Akira Nishikawa","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"Senrigan (千里眼) and Suzaku (朱雀) are two complementary open-source tools that together form a complete threat hunting and DFIR platform for AWS CloudTrail logs. Both are built by Yamato Security, the volunteer-run Japanese security community behind Hayabusa(隼), the widely adopted Windows event log fast-forensics tool. Yamato Security provides free, open-source DFIR tools and resources to the community.\nBuilding on Hayabusa's philosophy of fast, offline, community rule-based detection, this toolset brings the same approach to the cloud. Security teams can hunt threats across CloudTrail logs on a single laptop - without a SIEM, dedicated infrastructure, or licensing cost.\nThe two tools work together, with Suzaku's detections flowing into Senrigan for analysis. Senrigan, deployed via Docker Compose, ingests CloudTrail logs into DuckDB via a Rust-based ingester, then lets analysts investigate them through 100+ pre-built hunting queries and 80+ pre-built Apache Superset dashboard charts - no SQL or CloudTrail schema knowledge required. Suzaku is a high-performance, standalone Rust-based CLI that applies native Sigma detection rules to CloudTrail logs and generates a fast-forensics DFIR timeline - surfacing attacks buried in the noise, producing only the events analysts need to investigate."},{"id":"d004","kind":"demolab","title":"X-Ray Your Agents: Pentesting MCPs, Skills, and the Plugin Supply Chain","who":"Xia Hua Abhijeet Kumar","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"Agents now run with thousands of third-party plugins - MCP servers, Claude skills, GPT actions, IDE extensions, plugin marketplaces - and the prevailing trust model is roughly \"read the README and hope.\" Tool descriptions are executable prompts. Tool parameters are executable code paths. Tool outputs feed straight into the next agent step. Yet there is no npm audit for this ecosystem, no signed manifests, and no capability sandbox in the wild.\nMCP X-Ray is an open-source security scanner that ports classical pentest tradecraft to the agent plugin supply chain. It combines static config and repo audit, rulesbased and LLM-driven semantic analysis, and active pentesting that actually invokes tools with adversarial inputs - emitting SARIF that drops into GitHub, VS Code, and CI gates today. In this 30-minute session we will (1) walk the threat model that ties MCPs, skills, and plugin bundles together; (2) live-demo X-Ray finding real vulnerabilities in each. Attendees walk away with a CI template they can drop in on Monday, and three intentionally vulnerable plugins to keep practicing on."},{"id":"d005","kind":"demolab","title":"Promptpwn: Finding and Exploiting AI-Generated Vulnerabilities at Scale","who":"Georgia Weidman","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"AI-assisted development tools don't just introduce vulnerabilities; they introduce the same vulnerabilities repeatedly.\nPromptPwn is a tool designed to identify, track, and exploit common insecure patterns found in AIgenerated code. It maintains a database of known vulnerability patterns produced by popular \"vibe coding\" workflows and provides scanning capabilities to detect these issues in real applications.\nIn this demo, we show how PromptPwn identifies vulnerable patterns such as injection flaws, authentication weaknesses, and insecure defaults across generated code.\nWe demonstrate how these patterns can be exploited in practice, highlighting how repeatability makes them especially valuable from an attacker's perspective.\nWe also explore how prompt variations influence these outcomes and show how insecure patterns can be remediated by adjusting prompts, closing the loop between generation, exploitation, and correction.\nThis session focuses on practical demonstrations of how AI-generated code fails in predictable ways, and how those failures can be identified and abused at scale."},{"id":"d006","kind":"demolab","title":"Empire 7: Shipping a C2 at AI Speed","who":"Vincent \"Vinnybod\" Rose Jake \"Hubbl3\" Krasnov Anthony \"Coin\" Rose","sessions":[{"day":"Fri","date":"2026-08-07","start":"10:00","s":"2026-08-07T10:00:00-07:00","end":"10:45","e":"2026-08-07T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"Empire 7 is a near-total overhaul of the Command and Control (C2) framework, from how agents communicate with the server to how operators move through engagements. This major release continues to expand Empire's supported agents to include PowerShell, Python, IronPython, Go, C#, and now C. New tradecraft includes more than 50 new modules derived from Atomic Red Team, patchless AMSI/ETW bypasses, EarlyBird process hollowing, BOF execution with ILRepack assembly merging, and RDP session hijacking, among others. Empire's new cryptographically secure communications leverage AES256-GCM and mTLS, with MITRE ATT&CK integration to assist in emulating real-world Advanced Persistent Threat (APT) Tactics, Techniques, and Procedures (TTPs).\nOne more thing we'll talk about, this release shipped at roughly 10x our prior pace, due to our team's adoption of agentic coding tools as a core development collaborator.\nWe'll share what worked, what didn't, and what LLMassisted offensive tooling development looks like."},{"id":"d007","kind":"demolab","title":"Damn Vulnerable Agentic AI Application (DVAIA)","who":"Abhinav Verma Mukesh Aggarwal","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"AI-powered Agentic applications now execute database queries, read files, send emails, and call APIs on behalf of users - all triggered through a chat window. DVAIA (Damn Vulnerable Agentic AI Application) is a new open-source platform purpose-built to let you break them.\nDVAIA pairs a production-grade secure platform with deliberately vulnerable AI-powered chat agents, each isolated in its own database and mapped to the OWASP Top 10 for LLM Applications 2025. In this demo we live-exploit nine exercise categories covering 93 attack objectives:\n- Prompt injection: extract system prompts,\njailbreak filters, poison RAG documents, and hijack an email-summarization agent\n- SQL and NoSQL injection through AI: trick chat\nagents into constructing malicious queries - the injection never touches a traditional input field\n- Sensitive info disclosure: chain path traversal and\nSSRF through a banking agent's tool interface to read server secrets and probe internal services\n- Excessive agency and BOLA: make a customer-\nservice agent access other users' data, create unauthorized orders, and issue fraudulent refunds\n- XSS and CSRF through LLM output: reflected, stored, and\nLLM-generated cross-site scripting fired from chat responses\n- Supply chain RCE: exploit a poisoned dependency\nthrough conversation with a code-analysis agent\nsisakulint:CI-Friendly static linter with autofix, SAST, semantic analysis for GitHub Actions"},{"id":"d008","kind":"demolab","title":"Atsushi Sada","who":"hikae","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"GitHub Actions workflows are vulnerable by default.\nHardening such as commit-hash pinning, leastprivilege permissions, and timeouts is optional, never enforced at pipeline level. Exploitable configs ship daily, increasingly written by Coding Agents.\nsisakulint is a fast heuristic static analyzer for GitHub Actions covering all OWASP Top 10 CI/CD risks, with 52 rules, a taint engine, and 38+ auto-fixes. It outpaces CodeQL on speed and quality, with 100% detection on 18 GHSL advisories and 81.6% on 38 GHSAs covering exploits in PX4-Autopilot, vets-api, weaviate, nrwl/nx.\nImpostor Commit at CVSS 9.8 validates pinned SHAs against the claimed repository, not impostors via Git forks, a check unique to sisakulint. Code Injection at CVSS 9.8 tracks untrusted input through ${{ }} and step outputs. AI Action Rules detect Clinejection on claude-code-action, copilot-swe-agent, and openai-actions, covering tool grants, prompt injection, and wildcard triggers, as in Cline 2026/02 where issue title injection stole NPM_RELEASE_TOKEN.\nKnown Vulnerable Actions catches tj-actions/changed-fi les.\nIn the Coding Agent era, linters matter more. Delegating 52 rules to an LLM degrades precision; deterministic engines run in ms with no variance. The session covers end-to-end detection, taint propagation, and automated remediation."},{"id":"d009","kind":"demolab","title":"Be Like a Brat(ble Recon and Attack Toolkit): Skip the Handshake, Own the Device","who":"Gigi Xiaoqing Liu Muzzammil Mohammed Narmina Karimova","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"What happens when you buy a popular medical device and realize it blindly trusts any BLE connection within 30 meters?\nBRAT (BLE Recon and Attack Toolkit) is the open-source Python arsenal we built to systematically take over an FDA-listed consumer hormone analyzer and generalize the attack to the class of devices behind it. Relying on\nthe Nordic UART Service (NUS), the target blindly trusts any connection within 30 meters. BRAT automates the exact attack chain we used to compromise it: passive BLE discovery, protocol reverse engineering, unauthenticated command injection, full bind takeover, and rogue peripheral impersonation to hijack live API session tokens.\nEvery script is built on the 'bleak' async BLE library and deliberately kept small so you can read the code and understand the exploit in minutes. Our Demo Lab features live, end-to-end attacks against a consumer medical device. We'll demonstrate unauthenticated command injection, rogue peripheral spoofing that intercepts companion app handshakes, and how we injected spoofed hormone sensor data without ever pairing."},{"id":"d010","kind":"demolab","title":"Zealot: an Autonomous Cloud Offensive Multi-Agent System","who":"Chen Doytshman","sessions":[{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"In November 2025, Anthropic disclosed a statesponsored operation where AI didn't assist human attackers - it was the attacker, executing 80-90% of the campaign autonomously. The question shifted from \"could this happen?\" to \"how bad can it get?\"\nWe built Zealot to find out.\nZealot is a multi -agent offensive framework that autonomously chains reconnaissance, exploitation, privilege escalation, and data exfiltration against cloud environments - with no human directing individual steps. A supervisor agent coordinates three specialists (Infrastructure, AppSec, and Cloud) that share attack state and hand off context as the operation progresses.\nThe result: an AI system that thinks strategically and executes tactically, the way a real red team does.\nIn live sandbox tests against GCP, Zealot autonomously discovered an exposed web service, identified and exploited an SSRF vulnerability, extracted service account credentials from the metadata service, impersonated a higher-privileged account, and exfiltrated BigQuery datasets - start to finish, without a human touching the keyboard after the objective was set.\nWe'll walk through the architecture, show the full attack chain on video, and share the honest lessons: where AI operators excel (systemati c enumeration, credential chaining, API fluency), where they fall short (a"},{"id":"d011","kind":"demolab","title":"AOBTD: AI One Bites the DAST","who":"Ozgun \"ozzy\" Kultekin","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"I hate the way most DAST tools test: firing payloads at parameters with no idea what the app is. They catch the obvious stuff, but miss the parts that actually need context. Newer LLM scanners are either commercial black boxes (iykyk) or \"GPT, find bugs at this URL\" wrappers that fall over outside a CTF box.\nAOBTD is my attempt at a third option: a scanner that behaves less like a fuzzer and more like a pentester at the start of a test.\nInstead of fuzzing harder, AOBTD first tries to understand the target. It explores the surface, identifies what pages and endpoints are for, takes notes, builds hypotheses, and then sends targeted requests based on that context.\nThis target understanding drives the rest of the testing process, which is the only realistic way automated tooling can get closer to business-logic bugs.\nThe crawler is designed to avoid wasting time on repeated templates while still sampling outliers, so the odd page hidden in a sea of similar ones does not get ignored. When findings are confirmed, AOBTD can chain them into multi -step attack stories rather than reporting isolated payload hits.\nThis is where LLMs are actually useful: reading a page, understanding the purpose of a form, naming the function behind a JSON endpoint, and doing the kind of prioritization a pentester normally spends hours on."},{"id":"d012","kind":"demolab","title":"AI Pipeline for N-Days Weaponization","who":"Andrea Brosio Arun Nair","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Fri","date":"2026-08-07","start":"11:00","s":"2026-08-07T11:00:00-07:00","end":"11:45","e":"2026-08-07T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"Most agentic exploit pipelines stall when there's no public PoC,they search, find nothing, and spin. This talk demos a multi -agent system that exploits n-days from scratch in under an hour, even with zero public exploit code available.\nGiven only a CVE ID, the pipeline autonomously: fetches vulnerability details and the upstream fix commit; spins up a pinned Docker lab running the exact vulnerable version; diffs the patch to identify the exploitable code path; generates vulnerability-class-specific attack guidance (not a generic checklist); and runs iterative exploit + validation loops until RCE is confirmed.\nDemonstrated live against four CVSS 9.8-10.0 vulnerabilities Apache OpenMeetings deserialization, n8n unauthenticated RCE, Langflow exec() injection, and Spring AI SpEL injection, with working exploits produced in minutes. Every run also outputs a containerized lab and defense report, making it equally useful for detection engineering and patch validation."},{"id":"d013","kind":"demolab","title":"Loki: a Lora/Meshtastic Based Implant for Red Teaming","who":"Venky Raju","sessions":[{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"LoKi is a covert USB HID implant for Red Teaming that builds on the work of tools like the O.MG cable by replacing Wi-Fiwith LoRa, extending the operational range of physical layer attacks from meters to kilometers. The implant integrates a Heltec LoRa module with custom Meshtastic firmware into an off -the-shelf wired USB mouse, retaining full mouse functionality. When LoKi receives a direct Meshtastic message, it translates the payload into DuckyScriptTM-compatible USB HID keystrokes and executes them on the host machine. No Wi-Fi, no Bluetooth, and no network traffic - the mouse simply begins typing.\nLoKi requires no line of sight and produces no detectable wireless LAN or Bluetooth signatures, making it effectively invisible to standard wireless monitoring. The live demo will walk through a payload from a handheld Meshtastic device to acquire a remote admin shell and bypass UAC on a target machine. Bring your own Meshtastic device and you can send commands to the implant during the demo.\nThe presentation covers the hardware build, the customized open-source Meshtastic firmware, reliability considerations for keystroke delivery over a mesh network, and actionable blue team detection strategies, including monitoring for rogue HID device enumeration and LoRa RF activity."},{"id":"d014","kind":"demolab","title":"Gnawlab: Open-Source AWS Attack Scenarios Based on Real-World Breaches","who":"ialleejy Kyul","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"GnawLab is a community-driven, open-source offensive cloud security training platform that recreates realworld AWS attack chains. Each scenario is modeled after documented beaches - Capital One's SSRF-toIMDS pivot, Uber's leakedcredential exploitation, SolarWinds-style CI/CD pipeline hijacking - deployed via Terraform in your own AWS account.\nAttendees will see live demonstrations of multi -hop attack chains: from SSRF and command injection entry points, through IMDS credential theft and Secrets Manager extraction, to full CI/CD pipeline compromise with Blue/Green deployment backdoors. GnawLab bridges the gap between theoretical cloud security knowledge and hands-on exploitation skills."},{"id":"d015","kind":"demolab","title":"Voicelock: Offline, Robust On-Device Speech Transcription","who":"Ayaan Qayyum Parag Kalay","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"VoiceLock analyzes audio to identify speakers, count participants, and understand what each person said and discussed, just from a microphone. The self-contained, entirely offline system is designed for continuous, longterm use cases of 72 to 168 hours or more. The system runs entirely on-device, with high accuracy as tested on datasets and in the real world. Key innovations include an on-device vector database for fast speaker-similarity search and robust noise reduction, which greatly improve transcript accuracy. The output is a transcript with name labels. The system is fast enough to transcribe and report in under a minute. Code is written as an open-source Python module with a provided runtime and setup script to enable quick deployment on IoT devices. The system has been tested in challenging environments, including high noise levels, many speakers/arguments, and a lecture-style format. We present a live demo, technical details, and a short runtime tutorial."},{"id":"d016","kind":"demolab","title":"GHOST IN THE IDE","who":"Venkata Jayaram Yalla Pardhiv Reddy","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"Hook: The Blind Spot\nYour EDR sees the server compromise. Your SIEM catches the phishing campaign. Your firewall blocks the C2 traffic. But what happens when the attacker doesn't target your infrastructure - they target your developers?\n28 million developers worldwide rely on three IDE platforms: JetBrains IntelliJ, Microsoft VS Code, and Eclipse. These aren't just text editors - they're commandand-control platforms disguised as productivity tools.\nDevelopers trust them with AWS credentials, database passwords, SSH keys, source code, and network access to production systems. And here's the kicker: IDE plugins run with full user privileges, no sandboxing, no permission dialogs, no questions asked.\nWe built GHOST IN THE IDE, a production-ready C2 framework that weaponizes IDE plugins across all three major platforms. Not a proof-of-concept. Not a research prototype. A functional red team tool with keystroke logging, clipboard monitoring, file exfiltration, and remote command execution - working silently inside IntelliJ, VS Code, and Eclipse on Windows, macOS, and Linux.\nThe Attack: Multi -IDE C2 That Actually Works\nMost IDE plugin research stops at \"look, I can pop calc. exe from VS Code.\" We went further. Way further."},{"id":"d017","kind":"demolab","title":"Weaponizing Ebpf and XDP with Covert Triggered Reverse Shells","who":"Yll \"0xBabar0ka\" Berisha","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"eBPF and XDP now underpin critical Linux infrastructure yet their kernel-level access creates a blind spot: adversaries can weaponize these primitives for stealth persistence that evades standard forensic tools. Current defenses are not equipped for this emerging threat.\nWe built Phantasma, an open-source eBPF implant, to expose this gap. It combines three kernel-level techniques: (1) XDP covert triggering that intercepts packets at the NIC driver before they reach the networking stack, firewalls, or packet capture systems (2) getdents64 syscall interception to hide processes from /proc, defeating ps, top, and all enumeration tools; and (3) bpf() syscall interception to cloak loaded eBPF objects from bpftool and forensic inspection.\nWe live-demonstrate the full attack chain deployment, self-cloaking, magic packet activation, and encrypted reverse shell showing the implant defeating packet capture, process listing, and BPF introspection simultaneously.\nWe then present the defenses this threat demands: kernel audit rules for bpf() syscalls, /sys/fs/bpf inspection, XDP attachment monitoring, and behavioral indicators.\nAttendees leave with detection rules, hardening steps, and a clear understanding of why eBPF must be treated as an attack surface, not just a defense tool."},{"id":"d018","kind":"demolab","title":"Overcast: Video OSINT Agent. Point It at 100 Videos, Ask Anything","who":"Kevin \"kdrwins\" Dela Rosa","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"12:45","e":"2026-08-07T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"Conference talks, earnings calls, product demos, training videos. Organizations put hours of footage online every week, full of things they didn't mean to share: hostnames in terminal windows, org charts on slides, infrastructure details dropped during Q&A.\nTraditional OSINT can't touch video at scale, and manual review falls apart past a handful of recordings.\nOvercast is a CLI agent and skill pack for video OSINT that drops into any agentic harness, such as Claude Code, Codex, or Tinycloud, giving it senses plus recon and targeting reach, organized around an investigation case. Point it at 10 videos or 1,000 and it turns footage into cited evidence: speech, video understanding, on-screen text and objects, faces, and named entities, all accumulating in persistent case memory.\nDiscovery runs on the same case: scan and monitor sweep sources and surface reviewable findings. Ask across the whole corpus and get answers cited to the exact record and timestamp, backed by tiered retrieval.\nMatch a photo against thousands of clips to find a person.\nEach subcommand is modular and pluggable, so analysts can drop one into other agent flows, author custom skills, or feed Overcast's media analysis into existing recon and security tooling to complete the mission."},{"id":"d019","kind":"demolab","title":"Xendity: IOT Firmware Analysis & Digital Twin Platform","who":"Zeus \"LightningGod\" Chan Kenneth \"kenleejl\" Lee","sessions":[{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"IoT devices are embedded in critical infrastructure globally, yet security teams face a fundamental constraint: you cannot aggressively test what you cannot safely replicate.\nPhysical hardware is expensive, limited in supply, and testing against production systems is off -limits. This leaves defenders operating blind against an expanding attack surface of billions of connected devices.\nxEndity is an open-source, end-to-end IoT firmware emulation platform that transforms raw firmware binaries into fully functional, network-ready virtual device instances, no physical hardware required. It provides an automated pipeline spanning firmware acquisition, binary analysis, filesystem extraction, emulation packaging, and orchestrated deployment of emulated device networks at scale.\nThe platform enables two high-impact use cases: first, as a scopeless penetration testing range where red teams and researchers can conduct unrestricted vulnerability validation, exploit development, and attack simulation against realistic IoT environments. Second, as a deceptive defense layer where emulated devices are deployed as high-interaction honeypots to capture adversary tradecraft, collect OS-level and network telemetry, and generate actionable threat intelligence."},{"id":"d020","kind":"demolab","title":"Mscodephish: Redeem Your Coupon. Surrender Your Session","who":"Raunak \"Trouble1\" Parmar Chirag \"3xpl01tc0d3r\" Savla","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"MSCodePhish is a red-team toolkit that turns Microsoft 's Device Code OAuth flow into an embeddable phishing primitive that works inside any lure (e.g., \"grab your coupon,\" \"unlock access,\" etc.). Instead of pre-generating device codes and racing against the usual 15-minute timeout, MSCodePhish exposes a simple API endpoint that phishing pages can call via JavaScript (XHR/fetch) at the exact moment a victim opens the page. The tool then generates a fresh device code on demand, returns it to the phishing page (e.g., rendered as a \"coupon code\"), and instructs the user to complete the login on the legitimate Microsoft device login portal using that code.\nBehind the scenes, MSCodePhish continuously polls Microsoft 's token endpoint for that device code and, once the victim finishes authentication, captures the resulting refresh token and related claims (tenant, user, etc.). From its web UI, operators can track active campaigns, monitor which lures are converting, and use captured refresh tokens to request new access tokens for different resources (ARM, Key Vault, Graph, Storage, or custom scopes) in real time. Because the code is generated only when the phishing HTML is actually loaded, MSCodePhish effectively sidesteps device-code expiration issues and enables more realistic, flexible phishing flows that closely mimic"},{"id":"d021","kind":"demolab","title":"Goose Processing Unit (GPU): Vram as an Unmonitored Attack Surface","who":"Gannon \"Dorf\" Gebauer Anthony \"Coin\" Rose Hana Christensen","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"Modern GPUs have become foundational to computing infrastructure for gaming, machine learning, and AI workloads at scale, yet GPU memory remains a largely unmonitored attack surface. No mainstream antivirus or endpoint-detection solution currently inspects it, creating a significant blind spot that sophisticated adversaries can exploit. This Demo Lab presents a novel technique that uses NVIDIA RTX 5090 CUDA APIs to stage payload data, such as DLLs, directly in GPU memory, entirely outside the visibility of host-based security tools, including Windows Defender. A benign executable, with no malicious code of its own, uses CUDA's native memory transfer capabilities to move binary payload data onto the GPU immediately upon execution. No CUDA Toolkit installation is required on the target host. When triggered, the same executable retrieves the payload from GPU memory, manually maps it into process space, and executes it. A working proof of concept has been validated as an Empire C2 module, confirming practical operational viability. The technique is particularly impactful for high-uptime environments such as AI inference servers, rendering farms, and enterprise GPU clusters, where small executables interacting with the GPU blend naturally into background workloads."},{"id":"d022","kind":"demolab","title":"Zero-Cloud Threat Modeling: Vector Embedding Architectures for Automated Vulnerability Detection","who":"Ankit Vashisth","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"16:00","s":"2026-08-08T16:00:00-07:00","end":"16:45","e":"2026-08-08T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"Traditional threat modeling is a tedious, manual process prone to human error. Conversely, modern \"AI\" threat modeling tools almost universally depend on sending sensitive, proprietary system architectures to third-party APIs in cleartext.\nWe present AI Threat Modeler (AITM), a fully open-source, zero-cloud application designed to automate architecture-driven STRIDE threat modeling completely offline. AITM fundamentally shifts how we analyze system designs by replacing brittle, keyword-based regex rules with a local Semantic AI Engine.\nUnder the hood, AITM leverages sentence-transformers and an in-memory FAISS vector database to embed a comprehensive, 116+ component knowledge base.\nDuring analysis, a custom NetworkX graph builder parses natural language or structured architecture descriptions (via spaCy) to map undocumented architectural features to known CVE classes and STRIDE categories.\nFurthermore, AITM introduces \"Architecture Intelligence\" using graph traversal algorithms to automatically infer missing trust boundaries and identify multi -step attack chains that standalone component scanning misses.\nIn this demo, we will:\nWalk through the automated ingestion of a microservice architecture.\nDemonstrate how the local FAISS engine discovers semantic threats that evade keyword matching.\nShow dynamic attack cha"},{"id":"d023","kind":"demolab","title":"Beyond Spidering: Behavior Driven DAST for Real Application Workflows","who":"Sara \"testingSoul\" Martinez","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"Modern web apps do not give up their best attack surface to a spider. The interesting routes, state changes, authenticated functions, and business logic usually sit behind real user behavior. This Demo Lab shows how to stop treating DAST like blind crawling and start driving it with realistic browser flows.\nThe project began as a software quality proof of concept and evolved through collaboration between an engineering team and a red team into a real operational workflow. By routing Selenium based test scenarios through OWASP ZAP, we turn existing web automation into Behaviour Driven DAST: a practical way to capture richer traffic, exercise meaningful application actions, and uncover security findings that isolated scanning often misses.\nCurrent research shows more than 300% increase in observed attack surface and around 25% improvement in vulnerability detection compared with spiderdriven analysis alone. The session will walk through the workflow live, show the comparative results, and introduce a new Python library built from this research."},{"id":"d024","kind":"demolab","title":"Monitor, Compile, Enforce: a Compiler Pipeline for Container Security Policy in Rust and Ebpf","who":"Buğrahan Yücel","sessions":[{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"13:45","e":"2026-08-07T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"Container security tools observe behavior (eBPF) and enforce policy (BPF-LSM, AppArmor, Seccomp). But the translation between observation and enforcement is manual and incomplete. We present the first tool that treats this translation as a compilation problem. Built in Rust with the Aya eBPF framework, three monitoring modules serve as compiler frontends feeding a normalized behavioral IR.\nOptimization passes operate on this IR: pattern classification, rule deduplication, dead rule elimination, conflict detection, and cross-category dependency linking. The backend compiles optimized IR into BPF-LSM enforcement rules across three LSM hooks: security_file_open, security_bprm_ check_security, and security_socket_connect. Enforcement is default-deny: any operation not in the compiled profile is blocked. We demo end-to-end: a container is profiled, the profile compiled through the pipeline, and enforcement blocks unauthorized file access, process execution, and network connections at the kernel level. Zero manual policy writing. We document the friction points where monitoring context diverges from enforcement context.\nNo existing tool, including vArmor and KubeArmor, implements this compilation architecture with a true IR, optimization passes, and multi -category LSM enforcement."},{"id":"d025","kind":"demolab","title":"Secretsifter: Production Apps Are Leaking Credentials. the Blindspot DAST Never Checked.","who":"Hemanth Gorijala","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"Shift -left tools scan what you commit, not what you serve.\nDAST scanners test for vulnerabilities but ignore live traffic. The industry left a gap: runtime secrets. Finding them requires intercepting live traffic: a proxy, a browser extension, or a bulk scanner. SecretSifter is all three.\nWe tested 2,000 production apps against ten secret scanners. 194 confirmed credentials survived all ten scanners.\nSecretSifter monitors live HTTP traffic and finds credentials in JS bundles, lazy-loaded chunks, HTML responses, JSON and XML APIs, and request headers. No config, no source code. 160+ rules cover vendor tokens (AWS, Azure, Stripe, Twilio, GitHub), entropy-gated patterns, and CryptoJS-encrypted configs where the decryption key is hardcoded in the same bundle. No other scanner catches that case. Bulk mode scans 30-50 targets: paste URLs, scan, optional AI triage, export HTML, CSV, or ZIP.\nThe session opens with a live tool comparison. Most tools scan one URL at a time and require manual browsing.\nSecretSifter bulk-scans both targets in parallel. Two findings none of the ten caught: Azure AD credentials baked into a webpack bundle past GitLeaks. A CryptoJS config with the decryption key three lines away.\nYour entire pipeline reported green. Were they right?\nAttendees leave with a free tool to run the same day."},{"id":"d026","kind":"demolab","title":"Malskill Lab: Hands-On Natural Language Malware in AI Agent Orchestration Systems","who":"Nur \"BurritoTheNurrito\" Gucu","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"Your AI agent trusts every skill in its directory.\nWhat if one of them is lying?\nIn this Demo Lab, I walk you through MalSkills, natural language malware planted inside AI agent skill systems. No binaries, no shellcode, no signatures.\nJust English sentences with OS-level access.\nUsing ORPHEUS, my open-source multi -skill orchestration framework, I demonstrate three escalating attacks live:\n1. BURIED INSTRUCTION: A malicious sentence hidden\nin a legitimate skill exfiltrates.env files on first execution.\nI show you 12 skills and challenge you to spot it.\n2. CHAIN ATTACK: Five individually benign\nskills that, when orchestrated together, create an emergent data exfiltration path. No single skill is malicious. The composition is the weapon.\n3. PERSISTENT GHOST: A skill that writes itself into\nagent memory, surviving file deletion and session restarts.\nRemove the skill, restart the agent, exfiltration continues.\nAfter offense, I flip to defense. I demo the MalSkill Detection Toolkit: skill integrity verification, capability-based sandboxing, orchestration graph analysis, and runtime behavioral monitoring.\nAttendees leave with: the ORPHEUS framework, a MalSkill sample pack, and a detection toolkit, all open source!\nEvery AI agent with a plugin system is vulnerable today. Come see why."},{"id":"d027","kind":"demolab","title":"Clew: Untangling Evasive Malware with Per-Sample Fuzzing Seeds","who":"Kyler McElroy Anita Ding Daniel Koranek","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"Clew is an automated fuzzing-candidate extraction pipeline for environment-sensitive malware analysis. Evasive malware routinely queries its execution environment via Windows API calls to hide functionality until specific environmental conditions are met. By hooking these\nAPI calls, a fuzzer can reveal such execution paths that are typically hidden during standard analysis. No seed corpus of environmental fuzzing candidates currently exists for this application. As a result, current API-hooking fuzzers rely on hand-written, sample-agnostic starting values and blind mutations that cannot scale to the diverse evasion techniques seen in sophisticated samples.\nClew addresses this by analyzing each PE32 binary and producing a per-sample seed corpus of candidate API return values that downstream environmental fuzzers use to systematically uncover hidden execution paths."},{"id":"d028","kind":"demolab","title":"Azprowl: Prowling the Azure Attack Surface","who":"Jared \"GonePhishing402\" Graff Jeff Daniels","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"Cloud environments aren't being breached through zero-days - they're being traversed through identity, misconfigurations, and overlooked data paths. Azure is no exception.\nThis talk introduces AzProwl, an offensive-focused tool designed to emulate how real attackers enumerate and chain together access across Azure environments. Rather than stopping at surface-level enumeration, AzProwl maps identity relationships, token abuse opportunities, and data plane exposure to uncover realistic attack paths.\nWe'll walk through how attackers move from initial access to meaningful impact using Azure-native mechanisms - leveraging identity roles, service principals, tokens, and storage access. Attendees will see how seemingly low-risk permissions compound into high-impact compromise.\nWhether you're red team, blue team, or somewhere in between, this session will provide practical insight into how Azure environments are actually attacked - and how to detect and defend against it."},{"id":"d029","kind":"demolab","title":"L.a.y.e.r.s - Layered Analysis Engine for Browser Extension Risk and Security","who":"Abhinav Khanna Krishna Chaganti","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"Browser Extensions is one of the overlooked attack surface in the modern era. Most browser extension have permissions to allow direct access to cookies, browsing history, network requests and a poorly written extension can help attackers with stuff like silently steal credentials, log keystrokes, fingerprint users etc.\nL.A.Y.E.R.S. (Logical Analyst for Your Extension Risk Surface) is a fully client-side chrome browser extension security engine that performs multi -layered security analysis on extensions. The tool performs analysis on various levels like JS analysis, permissions analysis, manifest analysis, secret scanning, URL extractions etc. simultaneously to uncover potential risks. The tool comes with its own scoring system guiding the team if the extension is safe to use or not.\nL.A.Y.E.R.S. is designed for security researchers auditing in-house extensions, third-party extensions, red teams assessing browser attack surfaces, enterprises enforcing extension policies, and developers seeking to harden their own extensions before publication.\nWhat sets L.A.Y.E.R.S. apart begins with its privacyfirst architecture - the entire analysis runs in-browser via the File System API and JSZip, with very little setup required. On the detection side, it incorporates Shannon entropy analysis. To keep results actionable rat"},{"id":"d030","kind":"demolab","title":"Trajan: Cross-Platform CI/CD Security Scanner","who":"Rahul Saranjame Ranganatha Rao Sridhar Tanishq Rupaal","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"14:45","e":"2026-08-07T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"For three years, Praetorian has consistently found that CI/CD pipelines are one of the fastest paths to compromise enterprise environments. A misconfigured workflow or an over-privileged service connection can provide you with credentials, cloud access, or code execution on internal infrastructure, often undetected.\nWe built to keep up: Gato for GitHub Actions (BH 2024), then Glato for GitLab CI (BH 2025). Both proved the approach: parse the pipeline configuration, classify triggers, gates, and danger zones, build a graph of how they connect, and surface what's actually exploitable.\nThe problem was that no client runs just one platform.\nA typical enterprise has GitHub Actions for open-source, Azure DevOps for internal deployments, and GitLab for containerized workloads. Assessing all of that meant juggling multiple tools with different output formats and coverage gaps.\nTrajan folds everything we learned into a single tool spanning GitHub Actions, GitLab CI, and Azure DevOps.\nEach platform runs through the same phased pipeline: collect the pipeline config and the org surface, normalize it, correlate multi -step attack chains, scan against a YAML detection-rule corpus organized by attack category, and report through one unified findings format. Support for Jenkins, CircleCI, and Bitbucket is in active development."},{"id":"d031","kind":"demolab","title":"Ghostcatcher (Endpoint Detection Agent)","who":"Sercan Okur","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"GhostCatcher is an open-source Linux endpoint detection agent written in Go. It runs as a single binary or a systemd service and looks for host-visible adversary tradecraft on Linux: web shells, LD_PRELOAD abuse, SSH, cron, and systemd persistence, PAM/sudoers tampering, SUID and capability drift, reverse shells and unexpected network behavior, reflective / memory-map signals, and related patterns aligned with MITRE ATT&CK-style coverage.\nDetections are driven by a versioned, optionally signed rule pack, baselines and learning mode, multi -signal scoring, time-windowed correlation, CEL-style boolean expressions, optional Sigma-lite rules, optional YARA (disk and memory) and eBPF (with auditd/proc fallbacks), and JSONL output to stdout plus optional syslog, Splunk HEC, Elasticsearch _bulk, or Grafana Loki. The goal is to give blue teams a transparent, self-hosted way to turn Linux host telemetry into actionable events in the SIEM - without a vendor cloud control plane."},{"id":"d032","kind":"demolab","title":"Intercept.js: Runtime-Aware Detection for Javascript Environments","who":"Rishi Kant","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"Modern attacks increasingly execute inside JavaScript runtimes (browsers, email clients, and embedded app environments) where traditional file-scanning and OS-level controls lack visibility into application-layer behavior. In these contexts, payloads often exist only as in-memory buffers, fetch responses, or dynamically constructed objects. Detection therefore depends not just on inspecting bytes, but on understanding their origin, transformation, and use at runtime.\nWe present Intercept.js, an open-source detection engine that runs natively within JavaScript environments, combining byte-level inspection with execution context in real time. Built for YARA compatibility, it extends rule evaluation beyond static artifacts by incorporating signals such as origin provenance, user gesture state, MIME inconsistencies, and object construction paths.\nThis unified model enables detection of threats as they are assembled and executed - including identifying executable buffers built in memory, anomalous data flows, or content whose structure diverges from its declared type.\nAs a concrete demonstration, we show how HTML smuggling attacks can be intercepted at the moment of payload construction, preventing delivery before artifacts ever reach disk and exposing a class of threats that evade both network and endpoint controls."},{"id":"d033","kind":"demolab","title":"Bigiron.ai: AI-Assisted Exploration and Security Analysis of Mainframe Systems","who":"Adam \"w00tock\" Toscher","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":"Most security tools assume Unix or Windows models built around processes, shells, and network services. On mainframe operating systems, authority is determined through control-plane behavior: job submission (JCL/ JES), dataset access, library resolution, and transaction context. These relationships are difficult to observe and are systematically misunderstood by modern security teams; creating blind spots that traditional tooling cannot see.\nThis Demo Lab shows a live MVS 3.8j environment running under Hercules with a browser-based TN3270 interface. Operational artifacts including submitted jobs, spool output, and execution context are captured and mapped into a graph that reveals hidden trust relationships and indirect execution paths.\nThe demonstration walks a realistic privilege path: TSO user → JCL submission → STEPLIB hijack → APF library execution - showing how inherited authority creates system-level exposure without exploiting a single vulnerability. No shellcode. No memory corruption.\nJust the system working exactly as designed.\nThe platform includes 13 automated walkthroughs across 6 control planes (TSO, JES, RACF, CICS, VTAM, PR/SM), an offline LLM for real-time screen interpretation, and a findings engine that maps results to a repeatable assessment framework."},{"id":"d034","kind":"demolab","title":"Tokenmesh: Exposing Azure's Hidden Identity Attack Surface","who":"Saksham Agrawal","sessions":[{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"Modern cloud environments are riddled with identity misconfigurations that go undetected until it's too late. TokenMesh is an open-source Azure security reconnaissance tool built to expose exactly that - over-privileged identities, dormant service principals, misconfigured storage accounts, and potential backdoors hiding in plain sight across Microsoft Entra ID and Azure RBAC.\nUnlike traditional scanners that drown you in raw data, TokenMesh is designed with the security practitioner in mind. It integrates directly with the Model Context Protocol (MCP) and the OpenAI API, allowing AI-assisted analysis that surfaces critical findings in plain language - no SIEM required, no query language to master. Plug it into your AI workflow of choice, ask questions in natural language, and get answers that actually make sense.\nIn this session, we'll walk through how TokenMesh was built, the real-world attack paths it uncovers, and live demonstrations against a target Azure environment. We'll cover how attackers abuse identity misconfigurations, how privilege escalation paths hide inside legitimate role assignments, and how defenders can use TokenMesh to harden their posture before adversaries exploit it.\nWhether you're a red teamer mapping an Azure tenant or a blue teamer trying to get ahead of the next breach."},{"id":"d035","kind":"demolab","title":"Pymsi: Interactive MSI Installer Analysis in Python and the Browser","who":"Ryan \"Nightlark\" Mast","sessions":[{"day":"Fri","date":"2026-08-07","start":"15:00","s":"2026-08-07T15:00:00-07:00","end":"15:45","e":"2026-08-07T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"11:45","e":"2026-08-08T11:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"pymsi is a pure-Python library for parsing, analyzing, and extracting files from Windows installer (MSI) packages, without relying on native Windows APIs or tooling. It provides direct access to MSI database tables, embedded binary streams, and installer metadata, enabling security researchers to inspect installer behavior and extract files from MSI installers.\nWe will demonstrate its ability to safely tear apart malicious MSI droppers, dump internal database tables, and extract embedded payloads without risking accidental execution.\nAttendees will see how the CLI and Python API can be used to triage files and integrate it into automated analysis pipelines, including how it has been integrated into other open source tools to extract embedded payloads and identify malicious CustomAction behaviors.\nBecause it is written entirely in Python, it runs seamlessly on any OS with a Python interpreter, including web browsers. The demo will showcase the online MSI viewer, a client-side tool powered by Pyodide that gives pymsi a familiar lessmsi-style UI for working with MSI installers from any device with a web browser. Demos will also show new security analysis features for identifying suspicious installer behaviors and inspecting contents of embedded binary streams within a browser."},{"id":"d036","kind":"demolab","title":"Phasmid: Deniable Storage for Rubber-Hose Scenarios","who":"Makoto \"Mr.Rabbit\" Sugita","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1001","note":"Demo Labs Track 1","level":1,"hall":"EHW3","room":"1001"}}],"desc":"Phasmid is a prototype deniable storage system built for a problem ordinary encryption handles poorly: what happens when the attacker stops attacking the math and starts coercing the human holding the key. It implements the Janus Eidolon System, or Janus System, a coercionaware storage method that explores how visible disclosure and true protected state can diverge through deniable cryptographic structure, local-only operation, dualprofile storage, camera-based object-image matching, and owner-controlled destructive actions. Framed by the question of Agency, the project asks how a user can retain meaningful control over disclosure when physical pressure breaks normal cryptographic assumptions. This demo presents a practical low-power implementation on Raspberry Pi Zero 2 W for hostile situations where the attacker targets the person rather than the cipher."},{"id":"d037","kind":"demolab","title":"AC Scanner: the Post-Quantum Cryptographic Exposure and CBOM Generator. You Need This!","who":"Anurag Swarnim Yadav Joseph Wilson","sessions":[{"day":"Sat","date":"2026-08-08","start":"15:00","s":"2026-08-08T15:00:00-07:00","end":"15:45","e":"2026-08-08T15:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}},{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1002","note":"Demo Labs Track 2","level":1,"hall":"EHW3","room":"1002"}}],"desc":"AC Scanner is a tool to help providers of all kinds ensure their services can resist post-quantum cryptographic attacks including Harvest Now Decrypt Later (HNDL).\nThe scanner is an open-source pipeline that automates full cryptographic surface discovery across TLS endpoints and SSH services, assessing every asset against NIST post-quantum standards and generating a structured Cryptographic Bill of Materials (CBOM). In a single command (sh scan.sh example.com) it runs subdomain enumeration, DNS resolution, TLS handshake analysis via OpenSSL, SSH auditing via ssh-audit, quantum vulnerability scoring, and CBOM output in JSONL/JSON/Markdown, ready to upload to an interactive dashboard. With NIST finalizing ML-KEM (FIPS 203), ML-DSA (FIPS 204), and SLH-DSA (FIPS 205) in 2024, and NIST IR 8547 mandating deprecation of quantum-vulnerable algorithms by 2030, AC Scanner gives blue teams a fast, evidence-grade path from cryptographic discovery to compliance reporting."},{"id":"d038","kind":"demolab","title":"Keychecker: SSH Key Based Attack Tool for Dvcs Systems","who":"Anant Shrivastava","sessions":[{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"12:45","e":"2026-08-08T12:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}},{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 1003","note":"Demo Labs Track 3","level":1,"hall":"EHW3","room":"1003"}}],"desc":") KeyChecker is a CLI tool to fingerprint SSH private keys and identify which Git hosting accounts they unlock. In incident response and red team work, finding a private key is common, but scoping impact is slow and manual.\nKeyChecker automates the two primitives defenders and attackers both use: safe SSH handshakes that can reveal the mapped username, and read only git ls-remote probes that confirm whether a key can access a target repo.\nThe tool performs local key intelligence first, supporting OpenSSH, PEM, and DER formats, detecting key type (ed25519, rsa, ecdsa, dsa), key size, passphrase protection, fingerprints (SHA256 and MD5), and\nuseful metadata from key comments. It then validates the key across multiple providers including GitHub, GitLab, Bitbucket, Codeberg, Gitea, and Hugging Face, extracting usernames where possible, and optionally using a GitHub token for organization discovery.\nKeyChecker also supports repository discovery with a wordlist and configurable concurrency, giving a clear blast radius report like \"this key unlocks these private repositories.\" It is designed for authorized assessments, runs locally, and avoids write operations."},{"id":"d039","kind":"demolab","title":"DFMI: Weaponizing MSI Installers for Fileless Code Execution","who":"Anil Celik","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"DFMI is a cross-platform, open-source offensive toolkit that hijacks & abuses the Windows Installer's own execution engine to detonate arbitrary payloads during software installation, with zero files written to disk and zero evidence left behind. And this can be achieved without corrupting the Authenticode of the binary. --Which means, ANY signed legitimate installer file can leveraged as an attack vector.\nRight now, DFMI provides 3 different methods for abusing MSI files:\n- Inject: Simply injects a CustomAction\n(CA) into an existing MSI package.\n- Rogue MST: Generates an MSI Transform File (.mst) and\ninjects into legitimate \".msi\" file without corrupting it's Authenticode. The original MSI file is never modified - its Authenticode signature remains fully intact and valid.\nThis means a signed, trusted MSI can be weaponized without leaving any forensic trace on the file itself; the transform rides alongside it at deployment time.\n- Stub: Creates a malicious MSI file from scratch.\nGitHub: https://github.com/ccelikanil/DFMI"},{"id":"d040","kind":"demolab","title":"Reversing F5: Pure-Go Steganography, Live Forensic Cover Recovery, and JPEG Fragility Analysis","who":"0verkilll","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}},{"day":"Sat","date":"2026-08-08","start":"10:00","s":"2026-08-08T10:00:00-07:00","end":"10:45","e":"2026-08-08T10:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 901","note":"Demo Labs Track 5","level":1,"hall":"EHW3","room":"901"}}],"desc":"F5 (Westf eld, 2001) is the canonical \"do it right\" JPEG steganography algorithm - matrix encoding, permutative straddling, shrinkage handling - and still turns up on confiscated devices and in CTF challenges 25 years later.\nThe public tooling has rotted: the original is Java, modern rewrites bind CGo to libjpeg, and every implementation surveyed is one-way (embed and extract, never un-embed).\nThis Demo Lab presents ten public GitHub repositories that fix that, in pure Go with zero third-party dependencies.\nThe headline is the first open-source F5 cover-recovery tool: given the stego JPEG, the password, and the extracted message, it reverses the embed and restores the cover's DCT coefficients. Alongside it ship three CLIs (embed, extract, recover), a pure-Go JPEG-family codec (baseline, JPEG 2000, JPEG-LS, XL/XR/XS/XT, Pleno, lossless), a Fridrich chi-square steganalysis library and CLI, and the supporting crypto, i18n, and logging packages - all auditable end-to-end in one language.\nLive: embed, extract, cover recovery, defensive Fridrich detection, JPEG re-encoding fragility, and a 25-line external Go program importing the library.\nUseful for digital forensics, steganalysis research, CTF authoring, and anyone who wants a CGofree stego stack they can read in a weekend."},{"id":"d041","kind":"demolab","title":"Mailx-Ray: a TSA X-Ray for Emails - Air-Gapped Safe-Read and Quick Triage in an Ephemeral Microvm","who":"Uğur \"uJohn\" Can ATASOY","sessions":[{"day":"Fri","date":"2026-08-07","start":"16:00","s":"2026-08-07T16:00:00-07:00","end":"16:45","e":"2026-08-07T16:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}},{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 902","note":"Demo Labs Track 6","level":1,"hall":"EHW3","room":"902"}}],"desc":"When TSA scans your luggage, they see what's inside without opening the bag. MailXRay brings that pattern to email triage.\nPhishing reports hit analysts as small crises: open carefully, don't trigger anything, extract IOCs, hand off to detection. Tooling lives at two extremes: cloud sandboxes that ship customer data off site, or lightweight CLIs that run malicious parsers directly on the analyst's host. Neither produces a portable safe artifact, onprem and hardware-isolated, in roughly 30 seconds.\nMailX-Ray does. Every email is processed inside an ephemeral hardware-virtualized microVM with no network device. Network egress is prevented by design. Output includes a single-file portable HTML safe-read report, structured JSON with 45+ offline signal categories, and optional STIX and MISP exports for SOC integration.\nOriginal attachment binaries are never re-distributed.\nIt's not a malware sandbox. No decompilation, no execution, no verdicts. It's a non-invasive structural scan: the first 30 seconds of email triage, with zero network egress, on the analyst's own laptop.\nDemo Labs attendees will see the live pipeline across real phishing scenarios, including encrypted nested archives. Open source on the day of the talk."},{"id":"d042","kind":"demolab","title":"Hook Crook - Extracting More from Discord Webhooks","who":"Jeremy Banker Arity0","sessions":[{"day":"Sat","date":"2026-08-08","start":"13:00","s":"2026-08-08T13:00:00-07:00","end":"13:45","e":"2026-08-08T13:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}},{"day":"Sat","date":"2026-08-08","start":"14:00","s":"2026-08-08T14:00:00-07:00","end":"14:45","e":"2026-08-08T14:45:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 900","note":"Demo Labs Track 4","level":1,"hall":"EHW3","room":"900"}}],"desc":"A webhook URL is often thought to be write-only - post a message, nothing more. So when one leaks through a misconfigured repo, a paste site, or breached infrastructure, it's written off as a spam-or-phishing nuisance and left to rot. Hook Crook shows that assumption is the vulnerability\n - and that \"write-only\" was never really the case.\nBy abusing how Discord resolves references, what it returns when you query users and messages, and how its error and rate-limit responses differ, the write-only token quietly becomes a read primitive - leaking by design, not by bug. With nothing but the URL - no account, no additional authentication, no interaction from anyone on the target server - Hook Crook fingerprints the host guild, enumerates and confirms members, pulls profile data on known users (including their home-server tag), and in some cases recovers message content. The same behaviors let it bypass the server's posting restrictions, stage convincing impersonation and phishing, quietly edit or delete messages to scrub the evidence, and - on the way out - delete the webhook itself. None of it breaks Discord - it just reads Discord more carefully than its designers intended."},{"id":"v001","kind":"village","title":"Adversary Village","loc":{"raw":"Level 1 - Hall W2 - 602","level":1,"hall":"W2","room":"602"},"desc":"Adversary Village is a community initiative focused on adversary simulation, emulation, offensive cyber security, purple teaming, and adversary tradecraft. The village explores how real adversaries operate, how offensive capabilities are built and deployed, and how nation state sponsored threat actors continue to shape the modern cyber threat landscape.\n\nOur focus spans adversary and APT simulation, ransomware and breach emulation, adversarial attack simulation, supply chain security, adversary intelligence, research on nation state threat actors, hacker survival skills and the broader adversarial mindset. If it involves thinking and operating like an adversary, pull up a chair, that's a conversation we want to have.\n\nThe goal of Adversary Village is to build an open and collaborative security community where researchers, practitioners, and organizations can come together to develop and share new approaches to adversary simulation and emulation. Understanding how adversaries think and operate is essential to building stronger defenses.\n\nAt the village, the community will experience deep technical workshops, live demonstrations, panel discussions, adversary emulation labs, breach simulation exercises, CTFs, and other hands on activities. Everything is designed to give participants practical exposure to adversarial operations while encouraging collaboration and knowledge sharing across the security community.","links":["https://defcon.social/@AdversaryVillage","https://adversaryvillage.org"]},{"id":"v002","kind":"village","title":"Aerospace Village","loc":{"raw":"Level 1 - Hall W2 - 700","level":1,"hall":"W2","room":"700"},"desc":"The aviation and space industries, security researchers, and the public share a common goal: safe, reliable, and trustworthy aviation and space operations. For too long, negative perceptions and fractured trust on all sides have held back collaboration between the aviation, space, and security researcher communities that has advanced safety, reliability, and security of other industries.\n\nAs the traditional domains of aviation safety and cybersecurity increasingly overlap, more effective collaboration between stakeholders ensures we will be safer, sooner, together. Through the Aerospace Village, the security research community invites industry leaders, researchers and academia interested in aviation and space security, safety, and resilience to attend, understand, collaborate together to achieve our common goals. Empathy and understanding build common ground, while acts and words likely to increase division between these two communities undermine these efforts. The Aerospace Village welcomes those who seek to improve aviation and space security, safety, and resilience through positive, productive collaboration among all ecosystem stakeholders.\n\nOur Goal\n\nThe Aerospace Village is a volunteer team of hackers, pilots, and policy advisors who come from the public and private sectors. We believe the flying public deserves safe, reliable, and trustworthy air travel which is highly dependent on secure aviation and space operations.","links":["@aerospacevillage@defcon.social","https://aerospacevillage.org"]},{"id":"v003","kind":"village","title":"AI Village","loc":{"raw":"Level 1 - Hall W2 - 603","level":1,"hall":"W2","room":"603"},"desc":"We're bringing AI Village back to focus on what actually matters: practical, no-bullshit AI security. LLMs are an amazing technology, but they're not magic. We are stripping away the industry hype and focusing on hands-on skills, whether you are building your first exploit or leading an AI red team.\n\nHere is what you can expect this year:\n\nDrop-In Workshops: Walk up, grab a seat, and learn. We have drop in hands on miniworkshops on a bunch of topics. These include basic AI topics like how LLMs actually work, and how to build agents from scratch. For red teamers we have ones ranging from prompt injection to manipulating malware detection models. This is all running locally on a cluster we're bringing to DEF CON.\n\nHalCTF: Our main competition this year will teach you how to write and fine-tune your own pentesting agent using open-source models. To handle the massive compute load, we're safely detonating these agents on GCP, giving each participant a dedicated GPU for their models.\n\nOther Agent Shenanigans: The field moves fast and there's going to be something new by DEF CON. We're bringing a lot of compute to host things and we'll have some surprises in the space.\n\nWhether you want to hear top-tier research from the people actually breaking these models or you just want to sit down and write an autonomous pentesting agent, we have the hardware and the labs ready for you.","links":["https://aivillage.org/"]},{"id":"v004","kind":"village","title":"AppSec Village","loc":{"raw":"Level 1 - Hall W2 - 604","level":1,"hall":"W2","room":"604"},"desc":"The AppSec Village is a 100% volunteer-run creator space at DEF CON where hackers learn how modern software gets broken and how to make it harder to break. Expect attacker-minded talks and live demos, plus hands-on workshops and Practical On-Demand sessions where you can practice techniques with the community, from finding and exploiting vulnerabilities to fixing them correctly. You can also explore the village Arsenal for rapid demos of open-source AppSec tools, and compete in the Fix the Flag wargame, a CTF-style contest that rewards you for remediating vulnerabilities and hardening an app before turning to offense. If software is your target or your craft, you will leave with practical skills, tools, and mental models you can use immediately.\n\nPrerequisites:\n\nFor talks, panels, and tool demos, there are no prerequisites, and no special equipment is needed. For hands-on activities (workshops, some Practical On-Demand sessions, and the Fix the Flag wargame), bringing a laptop is strongly recommended so you can follow along and run tools. No specialized hardware is required, and any session-specific setup notes will be provided by the activity owner ahead of time.","links":["https://www.appsecvillage.com/","https://defcon.social/@AppSecVillage"]},{"id":"v005","kind":"village","title":"Badgelife Village","loc":{"raw":"Level 1 - Hall W1 - 209","level":1,"hall":"W1","room":"209"},"desc":"You asked for it and we're back again! The Badgelife Village (formerly Community) is a proper home for all things Badgelife on the con floor! Visit us to experience the Badgelife Museum, featuring hundreds of current and past community-made badges, SAO's, MiniBadges and more! Donate your own badges and SAOs you've made or collected to the museum, and see them come back to con year after year.. or bring what you've got to trade with the community via our \"take-one, leave-one\" SAO Trading Wall! Attend our in-person Badge Trading meetups to swap badges you've already enjoyed for new creations!\n\nIf you're interested in creating Badges or SAOs yourself, we will have lots of interesting badge creators around showing off their work and giving training in the form of talks and workshops on their methodologies. Come learn from the best and meet your favorite creators at our various Badgemaker Meetups! Before and after con, visit our village at https://badge.life, where we're kicking off our online Badge Archive. Closer to con we'll post our schedule for any con workshops, talks or activities on the site as well, so check there for our meetup times and events. Hope to see you at the village!","links":["https://reanimati","onxp.bsky.social","https://badge.life"]},{"id":"v006","kind":"village","title":"Biohacking Village","loc":{"raw":"Level 1 - Hall W1 - 408","level":1,"hall":"W1","room":"408"},"desc":"Biohacking Village (BHV) is DEF CON's hands-on home for hacking the systems that keep humans alive. We bring a hacker lens to healthcare, medical devices, and the messy reality where firmware, networks, clinical workflows, and cybersecurity collide. If you like breaking things to understand them - BHV is your stop.\n\nAt BHV, attendees don't just watch talks. They do the work: crack open artifacts, follow packets, unravel bad assumptions, and learn how vulnerabilities show up in real clinical contexts. Our creator space is built like a lab-meetsplayground: part training ground, part CTF arena, part community hub- where beginners get a friendly on-ramp and experienced researchers get puzzles that bite back.\n\nHealthcare is critical infrastructure, and medical devices are computers with unique constraints: safety requirements, legacy environments, weird protocols, long lifecycles, and a threat surface that spans from embedded firmware to cloud dashboards to the humans using them. BHV translates that complexity into hacker-accessible challenges, with clear rules-of-engagement and responsible research guardrails.\n\nThe Biohacking Village:\n\n- Treats healthcare tech as a systems hacking problem, not a niche specialty\n\n- Turns real-world failure modes into repeatable labs and CTF challenges\n\n- Brings together hackers, engineers, clinicians, and policy folks for cross-pollination you don't get anywhere else\n\n- Teaches not only \"how to break it,\" but also how to document, disclose, and improve it\n\nWho BHV is for:\n\n- Beginners who want a welcoming first step into hardware/firmware, medical tech, and embedded research\n\n- Experienced hackers who want high-signal challenges and healthcare-specific nuance\n\n- Builders and defenders who want to understand the attacker mindset without compromising safety\n\nCome by Biohacking Village if you want to learn real skills, meet a community that's equal parts brilliant and helpful, and explore one of the most consequential targets in security: healthcare.\n\nPrerequisites:\n\n- A laptop (Windows/Mac/Linux) that can run a VM or containers\n\n- USB-A/USB-C adapters (because the dongle life chose us)\n\n- Basic comfort with 'terminal stuff ' helps, but we'll have ramps for beginners\n\n- Hacking Tools","links":["https://villageb.io"]},{"id":"v007","kind":"village","title":"Blacks in Cyber Village","loc":{"raw":"LVCC - Level 3 - W322-W324","level":3,"room":"W322-W324"},"desc":"The Blacks In Cybersecurity (B.I.C.) Village seeks to bring culturally diverse perspectives to the holistic Cybersecurity community; by way of a series of talks and a capture the flag event. In providing these activities, we hope to help highlight Black experiences, innovations in the field, Black culture and educate the community about Black history.\n\nIn doing this, we believe that we can better educate and normalize the discussion of deficiency or prejudices in Cybersecurity education/development for minority communities. We also believe this effort can be translated to aid in eradication of these issues in the Cybersecurity and Hacker/Maker community and allow for more diverse hobbyists and professionals to engage and contribute.\n\nPrerequisites:\n\nLaptop, Tablet\n\nhttps://infosec.exchange/@blacksincyber | https://defcon.social/@blacksincyber | https://www.blacksincyberconf. com/bic-village"},{"id":"v008","kind":"village","title":"Blue Team Village (BTV)","loc":{"raw":"LVCC - Level 2 - W213-217","level":2,"room":"W213-217"},"desc":"Welcome to the other side of the hacking mirror. Blue Team Village (BTV) is both a place and a community built for and by people who defend computer systems, networks, and people against cyber attacks. It's a place to gather, talk, share, and learn from each other about the latest tools, technologies, and tactics that our community can use to detect attackers and prevent them from achieving their goals.","links":["https://blueteamvillage.bsky.social","https://blueteamvillage.org"]},{"id":"v009","kind":"village","title":"Bug Bounty Village","loc":{"raw":"LVCC - Level 2 - W206-207","level":2,"room":"W206-207"},"desc":"Welcome to the Bug Bounty Village at DEF CON, the central hub for the global community of bug bounty hunters, security researchers, and hackers. Now in our third year, we are returning to DEF CON bigger and better than ever.\n\nHacking is at the core of everything we do. Whether you are a newcomer looking to submit your first report or a seasoned veteran chasing critical exploits, our space offers the tools, community support, and technical insights you need to level up. Attendees can expect a high-energy environment filled with technical talks, hands-on workshops, and live hacking challenges. Following the massive success of our inaugural CTF in 2025 - which drew over 750 participants - we are expanding our competitive offerings to push your skills to the limit.\n\nVisit us and participate in our custom electronic badges giveaways, get an exclusive challenge coin, and engage with some of the world's most prolific bug bounty hunters. You will learn everything from the \"obvious\" essentials - like setting up a secure testing environment - to cutting-edge techniques for breaking complex modern systems. If you want to see how the world's most impactful bugs are found, fixed, and rewarded, this is the place to be.\n\nPrerequisites:\n\nTo fully participate in any of the workshops, trainings, and / or CTF, attendees should bring a laptop and a charger. For the safety of your hardware and personal data, it is a prerequisite that all participants have their laptops configured for the DEF CON Wi-Fiin a secure manner prior to joining village activities.\n\nWhile the village offers content for all experience levels, a foundational understanding of web protocols and a curious, analytical mindset will help you get the most out of our hands-on challenges. Those interested in the CTF may want to brush up on common web vulnerability classes and basic scripting to hit the ground running.","links":["https://www.bugbountydefcon.com/"]},{"id":"v010","kind":"village","title":"Call Center Village","loc":{"raw":"LVCC - Level 2 - W218","level":2,"room":"W218"},"desc":"Security teams have spent years hardening web-apps, email-gateways, and networkperimeters. Meanwhile, the phone line sitting on every receptionist's desk remains almost completely unmonitored. Nobody's deploying a firewall between a caller and the person who picks up. Caller ID authentication has made some progress, but the conversation itself? Wide open.\n\nAnd now that AI-generated voices can pass for the real thing and automated agents are handling account resets and payment processing, that gap is getting a lot more interesting.Call Center Village is where voice security, conversational AI, and social engineering collide - across both voice and text channels.\n\nSit down at a workstation and synthesize a copy of your own voice with open-source tools running on a local GPU, or let our staff walk you through the process. Dig into voice pipelines, deepfake audio detection, and the arms race between the two. Wire up a working conversational AI agent\n\n - stitching together the real-time audio infrastructure, transcription, language model, and speech synthesis that make\n\nthese systems speak.\n\nOn the text side, go after chatbot agents tasked with handling simulated customer interactions. Find the cracks in their system prompts, hijack conversation logic, and convince them to do things their developers never intended. Once you're ready, muster all your skills to take on our Escalation Desk CTF, the official Call Center Village contest at DEF We've also got a collection of vintage telephones, prank extensions, chatty AI-agents, and a British-style telephone booth worth stopping by for.\n\nNo prior experience required. If you know how to make a phone call or type a message, you're already qualified.\n\nEquipment is provided, including laptops and ANC headsets - but you're more than welcome to bring your own devices.","links":["https://www.callcentervillage.com","https://defcon.social/@callcentervillage"]},{"id":"v011","kind":"village","title":"Car Hacking Village","loc":{"raw":"Level 1 - Hall W2 - 701","level":1,"hall":"W2","room":"701"},"desc":"The Car Hacking Village is the primary hub for the global community dedicated to securing over a billion vehicles. For DEF CON 34, we move beyond theory and put you directly into the driver's seat of modern exploitation. This year's experience is built around raw, hands-on access to live vehicle architectures and hardware benches. Whether you're intercepting CAN bus traffic in real-time or probing wireless entry points, you'll be working with the same systems used by top researchers. We've curated a high-intensity environment where you can tear down ECUs, bypass security gateways, and collaborate to dismantle the latest threats facing the industry.\n\nPrerequisites:\n\nTo participate effectively in the Car Hacking Village at DEF CON 34, attendees should bring a laptop with multiple USB ports (or appropriate adapters) and a functional Linux environment. We do not provide specialized tools on-site, so you'll need to bring your own - such as a USB-to-CAN adapter (e.g., Canable, ValueCAN), a SDR (e.g., RTL-SDR, HackRF), or a multimeter - is encouraged for independent exploration.\n\nKnowledge of the Linux command line and basic Python is highly recommended. For those looking to hit the ground running, we suggest brushing up on CAN bus fundamentals and basic reverse engineering of binary data. Familiarity with tools like wireshark and can-utils will allow you to dive straight into the live vehicle architectures.","links":["https://www.carhackingvillage.com/"]},{"id":"v012","kind":"village","title":"Cloud Village","loc":{"raw":"LVCC - Level 3 - W311-W313","level":3,"room":"W311-W313"},"desc":"Cloud Village is an open space to meet folks interested in offensive and defensive aspects of cloud security. The village helps security professionals understand evolving threats, implement best practices and defend against real-world cloud vulnerabilities via Talks, Labs, Panels and a continuous two-day Cloud Security focussed CTF.\n\nOur CTF will be a jeopardy-style, two-day competition (Friday and Saturday) focused on realworld cloud security. Participants will tackle challenges centered around securing, exploiting, and analyzing cloud environments across major platforms including AWS, GCP, and Azure.\n\nThe contest will feature scenarios involving IAM misconfigurations, container and Kubernetes security, cloud reconnaissance, infrastructure exploitation, logging and detection, serverless security, secrets management, and cloud-native attack paths. Teams will test their skills across offensive and defensive cloud security domains while competing for prizes awarded to the top 3 teams.\n\nPrerequisites:\n\n- Come with an open mind and zeal to learn as a group.\n\n- For Labs and CTF, please bring a laptop with admin right and unfiltered internet access.","links":["https://www.cloud-village.org/","https://mastodon.social/@cloudvillage_dc"]},{"id":"v013","kind":"village","title":"Crypto & Privacy Village","loc":{"raw":"Level 1 - Hall W1 - 401","level":1,"hall":"W1","room":"401"},"desc":"Launched in 2014, Crypto & Privacy Village (CPV) is a community-run village centred on privacy and cryptography that aims to educate and inform the general public, students, educators, hackers, security and privacy professionals, and policymakers. We provide a unique hybrid space that features talks; chill space for relaxing with friends, doing CTFs, and cross industry networking; the Gold Bug Challenge and desk for hints and support; privacy-related art installations; and an information desk for questions about privacy and cryptography. Come talk with us about facial recognition technology, privacy enhancing clothing, or crypto backdoor laws!\n\nPrerequisites:\n\nWe will provide make up but it would be better for attendees to bring their own if possible (to see how effective they are); laptops and notebooks for the Gold Bug and other activities (we will provide paper)","links":["@cryptovillage@defcon.social","https://cryptovillage.org"]},{"id":"v014","kind":"village","title":"Cryptocurrency Village","loc":{"raw":"Level 1 - Hall W2 - 702","level":1,"hall":"W2","room":"702"},"desc":"They told us blockchains were immutable, trustless, autonomous. Like a fortress of math and consensus. But every protocol hides a human fingerprint where math has edge cases, and consensus can be forked.\n\nAt the Cryptocurrency Village, we don't just read the whitepaper - we set it on fire. You'll discover how financial technology really works: by breaking it. Learn the unique ways cryptocurrency systems are attacked, defended, and secured. Whether you are looking to audit smart contracts, track illicit funds across chains, or analyze the cryptographic primitives powering decentralized networks, the Cryptocurrency Village offers a deep dive into the unique intersection of economics, math, and offensive security.\n\nWin prizes in the Cryptocurrency Challenge, colocated within the village walls.\n\nWorkshops and competitions provide a safe workspace and give the experience of mentored participation in a well-equipped and comfortable environment. Visit the hackathon floor to witness teams building strange new financial tools, breaking assumptions, and pushing hardware and software beyond their intended limits.\n\nFrom curious newcomers asking their first questions to seasoned cryptohackers hunting new exploits and allies, the Cryptocurrency Village is a meeting point for those drawn to the intersection of money, code, cryptography, and rebellion. It is a place to interrogate the financial systems that increasingly govern freedom, privacy, ownership, and trust itself. Get inspired to explore cryptocurrency where practical finance hacking for the public good is encouraged - even while wearing the red team jersey.\n\nWe inclusively welcome all cryptocurrency projects and their cousins across adjacent cryptographic and decentralized technology communities. Come hack with us. The testnet vault is waiting, and we've already left the door unlocked!","links":["https://defcon.social/@cryptocurrency","https://www.cryptocurrencyvillage.cc/"]},{"id":"v015","kind":"village","title":"Data Duplication Village","loc":{"raw":"LVCC - Level 2 - W203","level":2,"room":"W203"},"desc":"The Data Duplication Village has all the updated bits and bytes available from infocon. org packed up into nice, neat packages. If you're looking for a copy of just about any security con talk known to hacker-kind, a copy of the VX-Underground archive, hash tables or those elusive rainbow tables, you'll find them here. Our village provides a \"free-to-you\" service of providing you with direct access to terabytes of useful data to help build those hacking skills and allow open discussions with others.\n\nWe also encourage DC Next Gen participation to ensure that our future generations have the opportunity to explore the details of how past and current data storage works!","links":["https://dcddv.org"]},{"id":"v016","kind":"village","title":"Embedded Systems Village","loc":{"raw":"Level 1 - Hall W2 - 503","level":1,"hall":"W2","room":"503"},"desc":"Embedded Systems Village (ESV) is a community of enthusiastic hackers who love working with hardware. Run by Hacking Villages Inc., a US-based 501(c)3 nonprofit, ESV's mission is to educate attendees on how embedded systems work, how to analyze their hardware components, how to identify vulnerabilities, and how to prevent cyberattacks on these systems.\n\nEverything ESV does is grounded in real embedded devices - occasionally jamming a whole bunch of concepts onto a single piece of hardware, but always with an authentic real-world analog. Whether you're walking in for the first time or you've been hacking hardware for years, ESV provides a challenging yet supportive environment to hack, learn, and innovate.\n\nPrerequisites:\n\n- Attendees wishing to compete in the competition should bring a laptop, and any tools that might reasonably required\n\nfor hacking embedded devices.","links":["https://embeddedvillage.org/"]},{"id":"v017","kind":"village","title":"Game Hacking Village","loc":{"raw":"Level 1 - Hall W1 - 211","level":1,"hall":"W1","room":"211"},"desc":"A community dedicated to game security. Come play with hands-on reversing, modding, exploring, and exploiting games across various platforms. Our goal is to make game security accessible, learnable and playable for all skill levels. Game security is an exciting way to understand modern security concerns in a fun and interactive way.\n\nPrerequisites:\n\nSome content may require a laptop. Certain talks and workshops may have some base knowledge required, but we also offer game hacking 101 material as well to get started with no prior knowledge.","links":["https://gamehacking.gg"]},{"id":"v018","kind":"village","title":"Ham Radio Village","loc":{"raw":"LVCC - Level 3 - W315","level":3,"room":"W315"},"desc":"The Ham Radio Village (HRV) is your home base for all things amateur radio; whether you've never touched a radio or you're already licensed and looking to branch out. From getting licensed and making your first transmission, to hacking and modifying radio/ antenna hardware, to prowling on the hunt for radio 'foxes', there's something here for every level of curiosity. Attendees will walk away with hands-on radio frequency (RF) knowledge immediately applicable to other DEF CON contests, talks, and village demos.\n\nInteracting with licensed hams and other wireless enthusiasts will discover how ham radio knowledge transfers directly to RFID hacking, WiFi, and other wireless security work.\n\nHave questions about ham radio? Come ask them. HRV is an open space for anyone curious about amateur radio; from first-ti mers to seasoned operators. Presented talks, contests, and volunteer tables cover everything from different modes of communication (voice, digital, Morse code) to the nuts and bolts of antenna design and signal propagation.\n\nTopics that typically carry a high barrier to entry become a lot more approachable when you can just walk up and ask someone.\n\nWhen it's time to go home, participants take with them a foundation with applications well beyond the conference; including\n\n- Understanding the base concepts of amateur radio, including how to use it as part of their day to day life, both for\n\nregular talking as well as building community\n\n- Connect with like minded folks year round who have a vested interest in the hobby\n\n- Find out how to Legally transmit with 1500w of power, more than what you use to heat your hot pocket!\n\n- Learn how the radio hobby and radiosport can improve your hacking skills, because AX25 is quite easy to understand\n\nwhen building a basic network\n\n- Provide for the future of the hobby, where you can learn, as well as teach others, enhancing the hacker community","links":["@hamradiovillage@defcon.social","https://hamvillage.org/"]},{"id":"v019","kind":"village","title":"Hardware Hacking and Soldering Skills Village (HHV/SSV)","loc":{"raw":"Level 1 - Hall W1 - 400","level":1,"hall":"W1","room":"400"},"desc":"Every day our lives become more connected to consumer hardware. Every day the approved uses of that hardware are reduced, while the real capabilities expand. Come discover hardware hacking tricks and tips regain some of that capacity, and make your own use for things! We have interactive demos to help you learn new skills. We have challenges to compete against fellow attendees. We have some tools to help with your fever dream modifications. Come share what you know and learn something new.\n\nPrerequisites:\n\nTools are all provided. Bringing your own setup if you have one will allow users to use a path they are familiar with.","links":["https://dchhv.org","https://ddhhv.org","@DC_HHV@defcon.social"]},{"id":"v020","kind":"village","title":"ICS Village","loc":{"raw":"Level 1 - Hall W2 - 502","level":1,"hall":"W2","room":"502"},"desc":"ICS Village is a non-profit organization with the purpose of providing education and awareness of Industrial Control System security.\n\nInteractive simulated ICS environments, such as Hack the Plan(e)t and Howdy Neighbor, provide safe yet realistic examples to preserve safe, secure, and reliable operations. We bring real components such as Programmable Logic Controllers (PLC), Human Machine Interfaces (HMI), Remote Telemetry Units (RTU), and actuators, to simulate a realistic environment throughout different industrial sectors. Visitors can connect their laptops to assess these ICS devices with common security scanners, network sniffers to sniff the industrial traffic, and more!\n\nPrerequisites:\n\nLaptops, no other required hardware. ICS Fundamentals is recomended.","links":["https://www.icsvillage.com"]},{"id":"v021","kind":"village","title":"IoT Village","loc":{"raw":"Level 1 - Hall W1 - 215","level":1,"hall":"W1","room":"215"},"desc":"Hack all the things at IoT Village!\n\nIoT Village advocates for advancing security in the Internet of Things (IoT) industry through bringing researchers and industry together. IoT Village hosts talks by expert security researchers, interactive hacking labs, live bug hunting in the latest IoT tech, and competitive IoT hacking contests. Over the years IoT Village has served as a platform to showcase and uncover hundreds of new vulnerabilities, giving attendees the opportunity to learn about the most innovative techniques to both hack and secure IoT. IoT Village is organized by security consulting and research firm, Independent Security Evaluators (ISE).\n\nPrerequisites:\n\nIoT Village welcomes individuals of all skill levels. A base knowledge of HTML is a nice to have, but we offer activities for everyone. Bringing your own laptop could help in beating around long lines for terminals for hands-on labs.","links":["https://iotvillage.org/"]},{"id":"v022","kind":"village","title":"Lock Pick Village","loc":{"raw":"Level 1 - Hall W1 - 407","level":1,"hall":"W1","room":"407"},"desc":"Want to tinker with locks and tools the likes of which you've only seen in movies featuring secret agents, daring heists, or covert entry teams?\n\nThen come on by the Lock Pick Village, run by The Open Organization Of Lockpickers (TOOOL), where you will have the opportunity to learn hands-on how the fundamental hardware of physical security operates and how it can be compromised.\n\nThe Lock Pick Village is a physical security demonstration and participation area. Visitors can learn about the vulnerabilities of various locking devices, techniques used to exploit these vulnerabilities, and practice on locks of various levels of difficultly to try it themselves.\n\nExperts will be on hand to demonstrate and plenty of trial locks, pick tools, and other devices will be available for you to handle. By exploring the faults and flaws in many popular lock designs, you can not only learn about the fun hobby of sport-picking, but also gain a much stronger knowledge about the best methods and practices for protecting your own property.","links":["https://toool.us/","https://techhub.social/@TOOOL"]},{"id":"v023","kind":"village","title":"Makers Village","loc":{"raw":"Level 1 - Hall W1 - 301","level":1,"hall":"W1","room":"301"},"desc":"The Makers Village is an artistic, hands-on creative lab where DEF CON attendees can explore modern making as a form of hacking through design, experimentation, and fabrication. This space introduces participants to the tools and processes used in today's maker movement - including 3D printing, digital design software, textile machines, laser etchers and cutting tools, two-part epoxy and resin work, and other creative fabrication techniques. Attendees can expect to learn how ideas move from concept to physical object while experimenting with materials, machines, and workflows in a supportive environment.\n\nPrerequisites:\n\nMakers of all experiences welcome. Learners under 18 need their responsible adult... or as responsible as DEF CON gets.","links":["https://makersvillage.space"]},{"id":"v024","kind":"village","title":"Malware Village","loc":{"raw":"Level 1 - Hall W2 - 600","level":1,"hall":"W2","room":"600"},"desc":"Malware Village is dedicated to providing a safe and engaging environment for participants to learn and share knowledge about malware analysis. Our mission is to equip attendees with the skills, techniques, and historical context needed to understand, research, and combat malware. Participants will gain hands-on experience with real-world analysis techniques, guided by seasoned infosec professionals.\n\nVillage participants will have opportunities to immerse themselves in various aspects of malware-analysis under the guidance of (and supported by) experienced infosec professionals. Malware Village also provides participants opportunities to connect and network with infosec professionals and malware-analysis enthusiasts.\n\nBeyond technical training, Malware Village fosters a strong community where researchers, enthusiasts, and professionals can connect. We welcome everyone - whether you're an artist creating malware-inspired art, a hardware researcher discovering unexpected connections to malware analysis, or a seasoned analyst reminiscing about early malware history.\n\nPrerequisites:\n\n- For talks, there is no requirement just come and learn\n\n- For workshops, an attendee will likely need the use of a laptop","links":["https://defcon.social/@malwarevillage","https://malwarevillage.org"]},{"id":"v025","kind":"village","title":"Maritime Hacking Village","loc":{"raw":"Level 1 - Hall W2 - 703","level":1,"hall":"W2","room":"703"},"desc":"The Maritime Hacking Village (MHV) has set sail for Las Vegas to deliver the next evolution of our immersive maritime hacking experience for the participants of DEF CON 34 to learn what it takes to exploit and defend real-world maritime systems. Our mission is simple: we are creating a space for hackers, stakeholders, and policy makers to come together and navigate the changing tides in the maritime sector's technological, geopolitical, and adversarial landscapes which demand ever-more-urgent collective action to address the systemic cybersecurity vulnerabilities in the systems which underpin global maritime defense and trade.\n\nMaritime infrastructure is the undeniable backbone of our global economy and society as we know it. It is central to the supply chains for nearly all critical infrastructure -- and still, stakeholders unanimously agree that maritime systems (ships, ports, and maritime communication infrastructure) are some of the most digitally vulnerable, and that the sector has systemically under-invested in developing the policy, tools, and workforce necessary to change this. Evidently these are issues that require engagement with the security community to solve - but seemingly insurmountable access barriers prevent the security community, and anyone else, from doing anything to help - and so, as we see it, these access barriers have become the primary issue which stands in the way of progress.\n\nMHV has made it our purpose to eliminate these barriers, and provide every human with the access and resources necessary to engage in maritime vulnerability research and cybersecurity innovation. Together we hack to facilitate the discovery and sharing of knowledge integral to the development of effective maritime cybersecurity policy, industry standards and regulations, vulnerability information sharing, cyber threat intelligence, and most importantly - a capable and trusted workforce. Our village is a safe, shared space where the security community (elite hackers, trusted providers, and young talent alike) can develop and demonstrate their competence in attacking and defending real maritime systems - and where maritime industry stakeholders can engage with this community to find trustworthy security professionals to help their cause, to discover tools and techniques to protect their systems, and to access a talent pipeline to feed their next-generation workforce. We believe that this work together will create rising tides of awareness, information sharing, and innovation that will lift all ships and allow us to gradually secure the maritime sector.\n\nPrerequisites:\n\nIdeally, participants will be familiar with using a terminal, the screen utility, basic /dev/tt y devices, and wireshark.\n\nBeyond this, there are no hard prerequisites, but participating individuals and teams are encouraged to bring experience in the following areas to accelerate successful engagement in our more advanced hacking challenges:\n\n- CAN-based protocols, ex. CAN bus, J1939, NMEA2000. Familiarity using can-utils\n\n- Serial protocols, ex. Modbus (RS485 and tcp), NMEA0183 (RS422), and RS232\n\n- SDR/software defined radio - basic usage of gnuradio with HackRF or more advanced radio\n\n- Firmware/binary analysis and reverse engineering\n\n- Attacking WiFi (802.11) networks\n\n- Understanding of common radio frequency modulation schemes\n\n- Familiarity with LoRA and 802-based mesh networking","links":["https://maritimehackingvillage.com/","https://defcon.social/@maritimehackingvillage"]},{"id":"v026","kind":"village","title":"Packet Hacking Village","loc":{"raw":"LVCC - Level 3 - W303-310","level":3,"room":"W303-310"},"desc":"The Packet Hacking Village at DEF CON provides a community learning experience for people of all skill levels, from absolute beginners to seasoned professionals. While DEF CON is made up of dozens of small community-of-interest villages, we are one of the largest and most well known. We host practical training, network forensics and analysis games, and the renowned Capture The Packet event, which has been a Black Badge contest over 10 times and draws world-class hackers from around the world. Our mission has always been simple: to teach people good internet safety practices, and to provide an atmosphere that encourages everyone to explore and learn.\n\nWe provide a welcoming environment for hackers of all skill levels and backgrounds to network, learn new things, and be active participants in DEF CON. Our famous \"Wall of Sheep\" provides a fun and interactive take on internet security and privacy, while our contests Packet Inspector, Packet Detective, and Capture The Packet serve as a zero-to-hero pathway for individuals to learn network security, packet analysis, and delve into advanced security topics. Every year we strive to bring something new and innovative to DEF CON, whether it's never-seen-before talks or creative games to teach and test skills.\n\nDepending on what talks, contests, and events participants select, they can expect to learn any/all of the following: Basic Internet security and privacy, network cable construction, honeypot setup and operation, regex, Linux training, packet interception and decoding, network analysis, sniffing, and forensics, reverse engineering, file forensics, system forensics, cryptography analysis, and more to be determined by the talks and workshops that we accept.\n\nThe Packet Hacking Village and Wall of Sheep have been a part of DEF CON since DEF CON 9, and we are proud to provide education and training to the hacker community at no cost.","links":["https://defcon.social/@wallofsheep","https://www.wallofsheep.com"]},{"id":"v027","kind":"village","title":"Payment Village","loc":{"raw":"LVCC - Level 2 - W204-205","level":2,"room":"W204-205"},"desc":"Come to the Payment Village to learn about payment technologies! Payments play a crucial role in our daily lives, yet many of us lack an understanding of how they work.\n\nOur mission is to educate and cultivate the next generation of payment security experts and to foster open discussions around payments. We want to raise the bar in payment security! We invite you to explore the history of payments and to learn how modern-day payments work.\n\nThe village is jam-packed with hands-on experiences and exciting challenges! Unsure of where to start? Register for one of our workshops to acquire new skills or attend a talk by one of our carefully chosen experts. Already a pro? Pick up a Payment Village credit card to take part in our contest! Looking for unique challenges? Take home all the money from our cash-grab machine or have a go at our scavenger hunt!","links":["https://paymentvillage.org"]},{"id":"v028","kind":"village","title":"Physical Security Village","loc":{"raw":"Level 1 - Hall W2 - 601","level":1,"hall":"W2","room":"601"},"desc":"The Physical Security Village explores the world of hardware bypasses and techniques generally outside of the realm of cyber-security and lockpicking.\n\nCome learn some of these bypasses, how to fix them, and have the opportunity to try them out for yourself. We'll be covering the basics, like the under-the-door-tool and latch slipping attacks, as well as an in depth look at more complicated bypasses. Learn about elevator hacking, attacking alarm systems at the sensor and communication line, and cut-away and display models of common hardware to show how it works on the inside!","links":["https://www.physsec.org","@physsec@defcon.social"]},{"id":"v029","kind":"village","title":"Policy @ DEF CON","loc":{"raw":"LVCC - Level 2 - W210-211","level":2,"room":"W210-211"},"desc":"DEF CON welcomes policymakers and technology professionals to join Policy@DEF CON and participate with our community of knowledgeable experts. We need to work together.\n\nOver the past 30 years the DEF CON community, has evolved and grown along with the cyber domain. We understand that creating a safer digital society requires collaboration between security and policy experts. DEF CON provides a space for representatives of all areas of security to come together to educate and engage each other.\n\nTech policy is being written as we speak and we believe including diverse expert voices will improve outcomes across the policy-technology spectrum by bridging the gap between technical and policy practitioners. Senior government officials, policy experts, nonprofit and the private sector, security researchers, hackers, academics and technologists from around the world all come together at Policy @ DEF CON.","links":["https://defcon.org/policy/"]},{"id":"v030","kind":"village","title":"Quantum Village","loc":{"raw":"Level 1 - Hall W2 - 605","level":1,"hall":"W2","room":"605"},"desc":"We are excited to bring you the 5th Edition of Quantum Village @ Def Con! Last year was a blast and our open source hardware sparked a revolution in quantum tech, and we have only just begun! QV provides vital resources and spaces for the hacker community to have access to quantum hardware and start designing the next generation of quantum technologies on their own terms.\n\nThis year we are bringing even more Open Quantum Hardware to Vegas, and we want you to come and be part of this seismic shift in how we innovate and adopt these exciting new technologies and ideas. You wanted more quantum, and quantum needs your Hacker Ingenuity!\n\nWith most of quantum tech being the preserve of academics and venture capitalists, we believe the Quantum Village is a vital space that hackers of all capabilities can benefit from and deserve. Let's build stuff from the Atom Up!","links":["https://quantumvillage.org/"]},{"id":"v031","kind":"village","title":"Radio Frequency Village","loc":{"raw":"Level 1 - Hall W1 - 409","level":1,"hall":"W1","room":"409"},"desc":"After 20 years of evolution, from the WiFi Village, to the Wireless Village, RF Hackers Sanctuary presents: The Radio Frequency Village at DEF CON 34. The Radio Frequency Village is an environment where people come to learn about the security of radio frequency (RF) transmissions, which includes wireless technology, applications of software defined radio (SDR), Bluetooth (BT), Zigbee, WiFi, Z-wave, Radio Frequency Identification (RFID), Infrared (IR) and other protocols within the usable RF spectrum. As a security community we have grown beyond WiFi, and even beyond Bluetooth and Zigbee. The RF Village includes talks on all manner of radio frequency command and control as well as communication systems. While everyone knows about the WiFi and Bluetooth attack surfaces, most of us rely on many additional technologies every day. RF Hackers Sanctuary is supported by a group of experts in the area of information security as it relates to RF technologies. RF Hackers Sanctuary's common purpose is to provide an environment in which participants may explore these technologies with a focus on improving their skills through offense and defense. These learning environments are provided in the form of guest speakers, panels, and Radio Frequency Capture the Flag games, to promote learning on cutting edge topics as it relates to radio communications. We promise to still provide free WiFi.\n\nCo-located with the RF Village is the RF Capture the Flag. Come for the talks, stay for the practice and the competition.","links":["http://rfh","ackers.com","https://rfh"]},{"id":"v032","kind":"village","title":"Recon Village","loc":{"raw":"Level 1 - Hall W2 - 501","level":1,"hall":"W2","room":"501"},"desc":"Recon Village is an Open Space with Talks, Live Demos, Workshops, Discussions, Beginner Sessions, and CTFs, all centered around one theme: Reconnaissance.\n\nHere, you explore recon and OSINT as practical disciplines across security research, investigation, journalism, and intelligence. You will learn how to map infrastructure, trace digital footprints, analyze open data, pivot across sources, and understand how systems, people, and signals connect across internet, cloud, AI, and the physical world.\n\nExpect GeOSINT, live recon, do your own recon sessions, recon dashboards, and practitioner-led talks that go deep into real tradecraft.\n\nYou will not just listen. You will investigate, enumerate, validate, and think. If you want to see what is exposed before others do, and turn scattered signals into actionable insight, this is your space.\n\nPrerequisites:\n\nNot a lot is needed to participate in Recon Village.\n\nIf you plan to participate seriously in contests such as CTFs, live recon, or GeOSINT challenges, a laptop is strongly recommended so you can enumerate, pivot, and document findings in real time. For lighter participation, a smartphone with internet access is sufficient.\n\nThere will be content and activities for all levels, from beginners exploring fundamentals to experienced practitioners diving into deeper investigations.\n\nGood to Have - asic familiarity with domains, IP addresses, DNS, and search operators is helpful. Prior experience with command line tools or recon and OSINT frameworks is a plus, but not required.\n\nRequired mindset: curiosity, patience, and the instinct to follow the signal.","links":["https://reconvillage.org","https://defcon.social/@reconvillage"]},{"id":"v033","kind":"village","title":"Red Team Village","loc":{"raw":"Level 1 - Hall W1 - 309","level":1,"hall":"W1","room":"309"},"desc":"The Red Team Village is focused on training the art of critical thinking, collaboration, and strategy in offensive security. The RTV brings together information security professionals to share new tactics and techniques in offensive security. Attendees may spend time engaged in workshops or challenge themselves in an immersive Capture the Flag competition to put their newly obtained skills to the test.\n\nPrerequisites:\n\nLaptops are highly encouraged for participation in Red Team Village tactics and workshops, and are mandatory for CTF and Wargames.","links":["https://redteamvillage.io/"]},{"id":"v034","kind":"village","title":"Scambait Village","loc":{"raw":"Level 1 - Hall W1 - 208","level":1,"hall":"W1","room":"208"},"desc":"Learn the art of Scambaiting. Speak with experts in our community to get an introduction to the skills needed to better understand common scams & fraud. Explore ethical OSINT used to track criminal infrastructure and learn the Social Engineering tactics required for disrupting call center operations. We'll cover the foundations of identifying victims, reporting to authorities, and safely navigating the world of counter-fraud. Stop hanging up and start learning how to hit back.\n\nPrerequisites:\n\n- Laptop or phone with internet connection to join sessions with live scam bait calls to\n\nlisten or join in."},{"id":"v035","kind":"village","title":"Social Engineering Community village","loc":{"raw":"LVCC - Level 3 - W317-319","level":3,"room":"W317-319"},"desc":"The Social Engineering Community village dives into one of the most powerful attack surfaces in security: humans. Our village creates a space where attendees can explore the psychology, tactics, and tradecraft behind human-focused hacking.\n\nThrough presentations, live demonstrations (via contests), and interactive activities, students, defenders, hackers, and the curious can see how reconnaissance, persuasion, and improvisation are used to bypass even the best defenses.\n\nAt DEF CON the village becomes a live stage for the craft. In the Social Engineering Community Vishing Competition (SECVC), competitors step into a soundproof booth and place real calls using OSINT, creative pretexts, and quick thinking while the audience watches the strategy unfold in real time. In Battle of the Bots, human-created AI agents attempt social engineering calls of their own, exploring what happens when automated systems try their hand at elicitation. Alongside the contests, attendees can have the opportunity to place calls in our \"Cold Calls\" or listen in to some presentations.\n\nThe village is built by the community that practices the craft. Volunteers, researchers, hackers, defenders, and curious newcomers all contribute to the content each year, creating space for new voices and ideas to take the stage. Whether you want to watch live un-scripted social engineering calls, understand the psychology behind it, or meet others who love the human side of security, the Social Engineering Community village is the place to experience it at DEF CON.\n\nPrerequisites:\n\nAttendees are welcome to watch contests, join discussions, and participate in interactive activities with no preparation needed.\n\nCompetitors in the Social Engineering Community Vishing Competition and Battle of the Bots Contest are selected in advance through a Call for Competitors prior to DEF CON, but some activities such as Cold Calls allow audience members to sign up onsite and participate.\n\nAttendees who want to participate in Cold Calls may benefit from brushing up on basic social engineering skills such as rapport building, influence and elicitation techniques.","links":["https://www.se.community","https://www.se.community/"]},{"id":"v036","kind":"village","title":"Tamper-Evident Village","loc":{"raw":"Level 1 - Hall W1 - 406","level":1,"hall":"W1","room":"406"},"desc":"\"Tamper-evident\" refers to a physical security technology that provides evidence of tampering (access, damage, repair, or replacement) to determine authenticity or integrity of a container or object(s). In practical terms, this can be a piece of tape that closes an envelope, a plastic detainer that secures a hasp, or an ink used to identify a legitimate document. Tamper-evident technologies are often confused with \"tamper resistant\" or \"tamper proof\" technologies which attempt to prevent tampering in the first place. Referred to individually as \"seals,\" many tamper technologies are easy to destroy, but a destroyed (or missing) seal would provide evidence of tampering! The goal of the TEV is to teach attendees how these technologies work and how many can be tampered with without leaving evidence.\n\nThe Tamper-Evident Village includes the following contests and events:\n\n- **The Box (Bomb Defusal Contest)** - The Box is an electronic tamper-evident challenge in which you have 10\n\nminutes to defuse a bomb. Learn about electronic sensors, traps, and other crafty tricks while solving puzzles to figure out how to defuse the bomb. One mistake lets The Box know you're doing something you shouldn't and BOOM, you're dead. Make every second count! Don't worry - you can respawn at the back of the line.\n\n- ** Tamper-Evident Contest: King of the Hill** - Compete against your fellow DEF CON attendees identifying and\n\nexploiting tamper-evident seal defeats! Work with several mechanical tamper seals to figure out how they can be defeated and fool the would-be seal inspectors. Score is based on how hard it is for inspectors to identify tampering and how much time it took. Beat the current best and claim your spot as King of the Hill!\n\n- **Counterfeit Badge Contest** - Submit your best forgery of a DEF CON human badge. Other (non DEF CON) target\n\nbadges are also available for those looking for more counterfeit challenges and fun! Please play responsibly and do not use counterfeit badges for untoward purposes at con."},{"id":"v037","kind":"village","title":"telecomvillage","loc":{"raw":"LVCC - Level 3 - W321","level":3,"room":"W321"},"desc":"The Telecom Security Village focuses on the intersection of telecommunications infrastructure, security operations, and advanced threat research. As telecom networks form the backbone of global communication, they have become a high-value target for Advanced Persistent Threats (APTs), nation-state actors, and sophisticated cybercriminal groups. This village explores how modern telecom environments - including 4G/5G core networks, signaling systems, IMS infrastructure, and routing protocols such as BGP - are monitored, defended, and analyzed within a telecom Security Operations Center (SOC).\n\nAttendees will learn how telecom SOC teams detect and investigate threats targeting mobile networks, signaling systems, and subscriber infrastructure. The village will demonstrate techniques used to identify signaling abuse, network manipulation, SIM and identity attacks, and telecom-specific intrusion patterns that are often leveraged by APT groups for surveillance, interception, and disruption.\n\nThrough talks, live demonstrations, and research discussions, participants will gain insight into telecom threat intelligence, network telemetry analysis, anomaly detection in signaling networks, and defensive strategies used by operators and researchers to protect critical communications infrastructure. The goal of the Telecom Security Village is to bridge the gap between the telecom engineering community and the cybersecurity research ecosystem while promoting deeper understanding of threats targeting global telecom networks.\n\nPrerequisites:\n\nParticipants do not need prior telecom experience to attend the Telecom Security Village, but a basic understanding of networking concepts will be helpful. Familiarity with IP networking, TCP/IP protocols, and general cybersecurity concepts will allow attendees to gain more value from the hands-on demonstrations and discussions.\n\nFor technical workshops and labs, participants are encouraged to have some exposure to Linux environments, packet analysis tools such as Wireshark, and basic scripting or programming knowledge (e.g., Python). Attendees interested in deeper exploration may benefit from familiarity with mobile network concepts such as LTE/5G architecture, SIP/IMS signaling, or routing protocols like BGP, though these are not strict requirements.\n\nThe village is designed to accommodate a broad audience including security researchers, telecom engineers, network operators, students, and hackers who are interested in understanding telecom infrastructure and its security challenges. Introductory explanations will be provided so that newcomers can follow along while more advanced participants can engage with deeper technical content.","links":["https://telecomvillage.com","https://mastodon.social/@akibsayyed"]},{"id":"v038","kind":"village","title":"Voting Village","loc":{"raw":"LVCC - Level 2 - W219-220","level":2,"room":"W219-220"},"desc":"Voting Village at DEF CON, launched in 2017, is the first public forum where hackers and members of the public have legal, unconstrained, hands-on experience with actual election systems used in the United States and elsewhere. It has become the premier venue for exploring the theory and practice of election security. This unique voting laboratory helps participants - in person and around the world - understand where gaps in security are, how to mitigate vulnerabilities, and why hackers are such an important part of investigating election security. Most importantly, the Voting Village helps election officials at all levels understand how to make systems more secure and more trustworthy.\n\nThe Voting Village returns for its 10th year at DEF CON 34. As in the past, the Voting Village will feature a 2-day speaking track (Friday and Saturday) that will highlight various aspects of election cybersecurity, including the technical components that make up our election infrastructure: hardware, software, and databases, new vulnerabilities, and ways to mitigate them.\n\n[] truth [] truth $ telnet telnet.hackerjeopardy.com Trying 420.69.67.101^^.\n\nConnected to telnet.hackerjeopardy.com.\n\nEscape character is '^]'.\n\n╦ ╦╔═╗╔═╗╦╔═╔═╗╦═╗ ╦╔═╗╔═╗╔═╗╔═╗╦═╗╔╦╗╦ ╦ ╠═╣╠═╣║ ╠╩╗║╣ ╠╦╝ ║║╣ ║ ║╠═╝╠═╣╠╦╝ ║║╚╦╝ ╩ ╩╩ ╩╚═╝╩ ╩╚═╝╩╚═ ╚╝╚═╝╚═╝╩ ╩ ╩╩╚══╩╝ ╩ ===========================================================\n\n* DEF CON 34 Edition *\n\n===========================================================\n\n[WHEN] Friday, Aug 7 ^- 8:00 PM PT Saturday, Aug 8 ^- 8:00 PM PT DEF CON 34 Contest Stage\n\n[FORMAT] Team-based. 3 rounds. Bring your A-game and your beer-goggles. Answers must be in the form of a question. Lintile's word is law. #DFIU\n\n[INFO] Sign-ups at hackerjeopardy.com\n\n[NOTICE] If you don't line up, you may not be granted admission. Fair warning.\n\n=========================================================== \"Don't fuck it up.\" ^-@lintile ----------------------------------------------------------------Connection will close in 60s. Press ^] then 'quit'. ===========================================================\n\nConnection closed by foreign host. $ ▆ ╦═╗╔╦╗╦ ╦ ╠╦╝ ║║╚╦╝ ╦╗╔╦╗╦╦ ╠╝║║╚╝ ╦╗╔╦╗╦╦\n\n╩╚══╩╝╩ ╠╦ ║║╦ ╩╚ ╩╝╩ ╠╦ ║║╦\n\n==================="},{"id":"x001","kind":"contest","title":"$$$$$_<Capture_the_ Coin>_$$$$$","loc":{"raw":"LVCC - Level 2 - W204-205","level":2,"room":"W204-205"},"desc":"We're bringing real-world payment hacking straight to DEF CON. This contest merges hardware hacking, cryptanalysis, mobile app forensics, physical security, offensive security and social engineering into one glorious, chaotic CTF. No system is sacred! If it moves, stores or processes money, it's fair game.\n\nFrom magstripes to mobile wallets, POS systems to online banking, ATMs to NFC payments, if it touches money, we're messing with it. Your mission: reverse, break, manipulate, and exploit, all in the name of exploration!\n\nExpect challenges where you'll clone, decrypt, spoof, MITM, inject, and maybe even get a card to spill its deepest, darkest secrets. Want to mess with a banking app? We got you. Think your RFID cloning skills are solid?\n\nProve it. Ever wondered if you can bypass chip-and-PIN protections? Let's find out!\n\nSo, whether you're an RFID wizard, EMV cryptography nerd, API manipulator, or into dumpster diving, there's a challenge here for you. You might not get rich, but you'll have fun trying!\n\n#### Participant Prerequisites\n\nWe recommend a laptop and an android phone. However there are no prerequisites to start the challenges as many have physical interaction points in order to get started and find flags. We can loan contestants additional equipment for challenges that may require it.","links":["https://ctf.paymentvillage.org"]},{"id":"x002","kind":"contest","title":"unL1ght Sh4d0w5","loc":{"raw":"Level 1 - Hall W1 - 200","level":1,"hall":"W1","room":"200"},"desc":"\"$unL1ght Sh4d0w5\": The Nirubi Challenge - Prove Your Agency\n\nSystems shape the world.\n\nAlgorithms decide.\n\nPolicies enforce.\n\nMachines execute.\n\nMost people live inside those systems.\n\nHackers change them.\n\nAt DEF CON 34, where the theme is Agency, the question isn't whether systems have vulnerabilities.\n\nThe question is who has the power to act on them.\n\nWelcome to \"$unL1ght Sh4d0w5: The Nirubi Challenge.\"\n\nInstead of hiding the system, we give you the blueprint:\n\n- A production-ready Linux cyber-physical system\n\n- Known vulnerabilities\n\n- A working proof-of-concept exploit\n\n- Full system disclosure\n\nNo mystery.\n\nNo guessing.\n\nJust a cyber-physical system - and the opportunity to exercise your agency over it.\n\nThe Nirubi Mandate\n\nNirubi is an ancient Tamil word meaning \"to prove.\"\n\nNot with theory.\n\nNot with writeups.\n\nWith execution.\n\nYou've been given the knowledge.\n\nNow prove you have the agency to act on it.\n\nThe Challenge\n\nYour objective is simple:\n\nAchieve remote code execution and deploy a malicious payload (e.g., ransomware payload that encrypts a sensitive file, command and control payload that takes over the cyber-physical system etc.).\n\nTwo phases.\n\nPart 1 - Sh4d0w5 Recon\n\nExtend the provided exploit chain and deliver a working malicious payload.\n\nYou have the vulnerabilities.\n\nNow show us you can use them.\n\nPart 2 - $unL1ght Horizon\n\nIf you complete Part 1, the system returns - hardened with proprietary defensive technology designed to disrupt your attack path.\n\nSame objective.\n\nNew resistance.\n\nAdapt your exploit and land the payload again.\n\nThe Prize\n\nThe first contestant to complete both phases wins: $10,000\n\nBring $unL1ght into the Sh4d0w5.\n\nWhat Makes This Different\n\nMost contests hide the system. We don't. You'll receive:\n\n- Full system configuration\n\n- Vulnerability details\n\n- A working proof-of-concept exploit\n\nNo blind recon. No guessing. Just a system, its weaknesses, and your ability to act. Because knowing about vulnerabilities is easy. Exploiting them is agency.\n\nRules & Eligibility\n\n- Contestants must be 18 years or older to participate.\n\n- All participants must agree to our terms and conditions,\n\nwhich include rules for responsible disclosure and non-disclosure agreements.\n\n- The contest will be held during DEF CON 34, with specific\n\ndates and times to be announced.\n\nAdditional details will be announced closer to the event.\n\n#### Participant Prerequisites\n\nBring your own gear:\n\n- Laptop and/or smartphone/tablet\n\n- Operating system of your choice (Linux/Windows\n\nrecommended)\n\n- Python\n\n- C/C++ compiler\n\n- Binary analysis and exploit development tools\n\nBring whatever tools you trust. Once the challenge begins, the system is in front of you. What happens next is up to your agency."},{"id":"x003","kind":"contest","title":"5n4ck3y","loc":{"raw":"Level 1 - Hall W1 - 101","level":1,"hall":"W1","room":"101"},"desc":"AND!XOR builds electronic badges packed with hacker challenges, and we especially enjoy inventing unusual ways for people to earn them.\n\n5n4ck3y is a retro snack vending machine that we've rebuilt into a network-connected CTF badge dispenser. Behind the woodgrain and glowing buttons is a hardware hacking project that connects a web-hosted CTF platform to a physical machine capable of vending badges to successful participants.\n\nSolve enough challenges and you'll earn a dispense code.\n\nEnter the code into 5n4ck3y and the machine will reward you with a badge - assuming it's in a good mood.\n\nThe challenges span a wide range of disciplines including hardware hacking, reverse engineering, OSINT, RF, network security, phreaking, and cryptography. Participants often learn something new at a DEF CON village, meet other hackers along the way, and then return to apply those skills to the challenges.\n\nOnce you earn a badge, the adventure isn't over. Our badges are built to be explored, modified, and hacked long after they leave the machine.\n\n5n4ck3y exists for one reason: to reward curiosity. Solve the puzzles, learn something new, and the machine might decide you deserve a badge.\n\n#### Participant Prerequisites\n\nCuriosity, persistence, access to a computer, and the willingness to RT.FM.\n\nOur challenges are intentionally multi disciplinary and are designed to encourage exploration and collaboration. Participants will likely need to investigate hardware, software, networking, and other security topics. Many challenges are easier when working with others, so don't be afraid to talk to people nearby or compare notes with fellow hackers.\n\nWhile we won't spoil what tools are needed this year, participants in past 5n4ck3y challenges have used a wide range of equipment including laptops, reverse engineering tools, SDR, UART adapters, hardware debuggers, soldering tools, and the occasional piece of improvised equipment.\n\nThe good news is that DEF CON is one of the best places in the world to find tools, knowledge, and people willing to help. If you don't have something you need, chances are someone nearby does - or you can find it in a village, vendor area, or by politely asking the hacker sitting next to you.\n\n5n4ck3y strongly encourages teamwork, creative thinking, and responsible experimentation. Snacks are optional, but curiosity is required.\n\n###?CUBE\n\nLevel 1 - Hall W1 - 109\n\nRedefining Boundaries. Enhancing Connectivity. Institutionalizing Control - Aperture Inc. continues to push the limits of innovation and remains committed to providing value to both stakeholders and our \"customers.\"\n\nControls are stricter. Telemetry is richer. Oversight has improved. Intelligence has emerged. Aperture has expanded - new industries, new platforms, new technologies quietly embedded into the fabric of our everyday lives.\n\nEach integration promises resilience. Every layer introduces complexity. And complexity always creates opportunity...\n\nAt the center of it all remains the?Cube. Its defenses have hardened, its architecture improved, its surface area widened. It's an ecosystem of physical security, web applications, communications systems, cryptography, and oh so much more.\n\nFor those already familiar - welcome back. For those encountering it for the first time, orientation will be ... brief. But don't fear, anyone can join the challenge. You will be entering an environment that demands curiosity across physical security, web applications, communications systems, cryptography, and, of course, the great unknown.\n\nEach layer builds on the last. Small oversights become structural weaknesses.\n\nForm a team with range. Specialists matter. Coordination and curiosity matter more. The objective is simple: reach the center. If the core remains uncompromised, the team that advances the deepest into its labyrinth of challenges will be the winner. Advancement will require persistence.\n\nErrors and missteps will have consequences. Progress will not be accidental. ...","links":["https://www.andnxor.com","https://0x3fcube.com"]},{"id":"x004","kind":"contest","title":"Adversary Wars CTF","loc":{"raw":"Level 1 - Hall W2 - 602","level":1,"hall":"W2","room":"602"},"desc":"Adversary Village will be hosting \"Adversary Wars CTF\", which is built around adversary attack simulation, offensive cyber security and purple team tactics. Adversary War CTF centers around mimicking enterprise infrastructure and corresponding challenges. These challenges are meant to push the participants towards adopting various TTPs that adversaries and threat actors use within a definitive time frame. Adversary Wars would have real world simulation CTF scenarios and challenges, where the adversaries can simulate attacks and learn new attack vectors, cyber threat intelligence, threat actor profiles, TTPs, techniques, etc. There would be combined exercises which include different levels of adversary emulation.\n\nAs part of the Adversary Wars Capture-the-Flag competition a fictional city would be hosted virtually as a target for the participants. Like all cities, the Adversary city too would comprise of various infrastructure components including a hospital, bank, police station, fire station, army camp, city apartments, IT companies, university, government buildings, power plant, etc.\n\nEach building will have a complex and realistic network infrastructure that includes a wide variety of components, including Windows/Linux systems, applications, industrial systems, Active directory, cloud environments, hybrid environments, and numerous other technology systems. A complex network of interconnected organizations, assumed to have been working properly, monitored by security operations center and cyber defense systems, supposed to be hackproof, until it wasn't. One fine day, the adversary city was breached by a threat actor. A wide variety of attacks were carried out by the threat actor, in the end they decided to shut the city for good and infected the remaining systems with ransomware.\n\nCTF participants will need to rely on cyber threat intelligence to gather more information on the threat actor, understand and collect various attack tactics, tools, and exploits used by the adversary group. The participants will have to devise possible attack paths used by the adversary\n\ngroup, then simulate these activities against the target city's various components to recreate and understand how deeply the threat actor group breached the city's infrastructure and computer systems.\n\nTo visualize the CTF environment, the contest area will feature a miniature model of the city made using interlocking-plastic-bricks. The breached components OR organization buildings will be physically marked in the city model as the CTF progresses. This will also assist visitors and observers in understanding the contest's progress and gaining insight into what is happening behind targeted cyber-attacks, cyberwar, etc.\n\nJust like in previous years, winning teams in the CTF competition can expect fantastic prizes. Additionally, there will be complimentary hoodies (yes, the iconic adversary village hoodies), free t-shirts, cool stickers, village coins, badges, and various other swag for the village participants.\n\n#### Participant Prerequisites\n\nCTF Players will have to bring their laptops.","links":["https://defcon.social/@AdversaryVillage","https://adversaryvillage.org"]},{"id":"x005","kind":"contest","title":"AI Art Battle","desc":"This unique competition invites creative minds to dive into the world of artificial intelligence and art.\n\nThe challenge is to craft the most imaginative prompts for generative AI models to create artwork.\n\nContestants will not be creating the art themselves; instead, they will focus on designing prompts for well-known topics that push the boundaries of creativity and innovation.\n\nHow It Works:\n\nSelect a Topic:\n\nContestants will choose from a list of random topics.\n\nThese could range from historical events and famous literary works to mythical creatures, futuristic landscapes, and iconic pop culture references.\n\nCraft a Prompt:\n\nUsing their creativity, contestants will write a detailed prompt designed to guide AI models in generating original artwork. The prompts should be clear, imaginative, and offer enough detail to spark the AI's artistic capabilities.\n\nSubmission:\n\nEach contestant will submit their prompt and the intended outcome.\n\nAI Generation:\n\nThe submitted prompts will be fed into a generative AI art model, which will generate corresponding artworks.\n\nA random panel will determine who the winners are."},{"id":"x006","kind":"contest","title":"AI Village Plays Pokemon: DEF CON Edition","loc":{"raw":"Level 1 - Hall W2 - 603","level":1,"hall":"W2","room":"603"},"desc":"AI Village Plays Pokémon: Man And Machine\n\nJoin us for a special DEF CON spin on Pokémon. Learn how to build AI agents at the AI Village and have them compete to see who can progress the farthest in either Pokémon Fire Red or Leaf Green. You'll learn how to design tooling for AI agents and how to train them to recognize and manage complex states and events.\n\nModels and games will be hosted on AI Village infrastructure, and we'll also provide laptops for those who need them. We've also built sample tools to help the player's agents navigate around the game and understand battling.\n\nEach agent will have two hours each run to try and get as far as they can in the game. Feel free to try your best day or night.\n\n#### Participant Prerequisites\n\nPlayers can use their own laptops if they want, but we will have some on hand within the village for people who didn't bring their own. Models and games will be hosted on AI Village infrastructure, so there is no minimum spec needed.\n\nPlayers will be building their own agents, so familiarity with Python is recommended.","links":["https://aivillage.org/"]},{"id":"x007","kind":"contest","title":"Apex Park (Cloud Village CTF)","loc":{"raw":"LVCC - Level 3 - W311-W313","level":3,"room":"W311-W313"},"desc":"Cloud Village CTF will be a jeopardy style 2 days contest where participants will have to solve challenges around Cloud infrastructure, security, recon, etc. These challenges will cover different cloud platforms including AWS, GCP, Azure, Digital Ocean, etc.\n\nWe will also reward our top 3 teams with awards.\n\n#### Participant Prerequisites\n\nA laptop with unfiltered internet access and an open mind to learn with the community.\n\nhttps://www.cloud-village.org/ | https://mastodon.social/@ cloudvillage_dc"},{"id":"x008","kind":"contest","title":"Aw, Man...pages!","desc":"How well do you know your man pages? Find out by teaming up with up to 3 other people (or come solo and get matched up with some new friends) and play \"Aw, man... pages!\". Across several rounds, your knowledge of man pages and software will be tested to the limit. Can you remember what command line flag is being described by its help text?\n\nCan you identify a tool just from a man page snippet? Can you decipher our cryptic command clues? Will you prove yourself worthy to be crowned the man page champion?\n\n#### Participant Prerequisites\n\nNone. We will provide answer sheets and pens. Participants can form teams of up to 4 people beforehand, or at the event."},{"id":"x009","kind":"contest","title":"Badgelife Trivia","loc":{"raw":"Level 1 - Hall W1","level":1,"hall":"W1"},"desc":"- 209\n\nTest your knowledge of the circuitry, components, protocols, RF and embedded engineering found in badges and other small electronics! This trivia competition challenges participants to demonstrate mastery of electronics fundamentals, embedded systems, and badge engineering. Teams can sign up at the beginning of the contest. The contest will start will an open \"bar trivia\" style contest where teams in the audience can submit answers to a set of pre-selected questions. The top teams will be invited to the stage for the final competition where teams wager points each round on randomly chosen questions from a list of categories."},{"id":"x010","kind":"contest","title":"Battle of the Bots: Vishing Edition","loc":{"raw":"LVCC - Level 3 - W317-319","level":3,"room":"W317-319"},"desc":"In Battle of the Bots, teams push the limits of automation and social engineering by deploying human-built AI agents to conduct live vishing-style phone calls.\n\nWhile social engineering has traditionally relied on human creativity, persuasion, and improvisation, this contest explores what happens when those tactics are handed off to machines. Competitors design and train AI-driven agents capable of gathering information, maintaining believable conversations, and attempting to achieve specific objectives during live calls.\n\nThe contest offers a rare opportunity to watch these systems interact with real people in real time. Attendees can observe how AI handles persuasion, conversation flow, unexpected responses, and the messy unpredictability of human interaction. Some bots may demonstrate impressive adaptability, while others reveal just how difficult it is to replicate the subtle social skills that human social engineers rely on.\n\nBattle of the Bots opens an important conversation about the future of human-focused attacks. As AI tools become more accessible, automation may increasingly play a role in reconnaissance, impersonation, and persuasion at scale.\n\nBy bringing these experiments into a transparent and controlled environment at DEF CON, the community can explore both the risks and limitations of AI-driven social engineering while gaining insight into how defenders should prepare for the next evolution of the threat landscape.\n\nWhether you're interested in AI, social engineering, or the intersection of both, Battle of the Bots offers a glimpse into the future of hacking.\n\n#### Participant Prerequisites\n\nCompetitors are selected in advance through our Call for AI Competitors process. Teams who wish to compete should have a basic understanding of AI prompt engineering and conversational agent design in order to develop and refine their AI-driven vishing bots. Competitors should be comfortable building prompts or systems that allow their bots to maintain dynamic conversations and attempt to achieve objectives during live calls. While prior experience with AI automation, voice systems, or social engineering concepts may be helpful, it is not required. All participants must also adhere to the competition's Code of Ethics and contest guidelines.\n\n#### Pre-Qualification\n\nThe contest does not use a traditional technical pre-qualifier. Instead, teams are selected through an open Call for AI Competitors process prior to DEF CON. Interested teams apply and describe their proposed AI agent and approach, and selected teams are invited to compete during the event. Additional details and application information will be published on our website (https://www.se.community/ battle-of-the-bots-vishing-editi on/) when the call opens.\n\nhttps://www.se.community/battle-of-the-bots-vishingedition/"},{"id":"x011","kind":"contest","title":"Beer Chilling Contraption Contest","loc":{"raw":"Level 1 - Hall W1 - 202","level":1,"hall":"W1","room":"202"},"desc":"It's the 21st year of the BCCC and it's the Beer Chilling Contraption Contest this year! We can finally drink! No more beverage, we are drinking beer now, and boy do we need one. This year we thought we would mix it up and have cold beer and you all could try your hand at warming it. Unfortunately, the guys in charge of getting the ice got a bit too tan walking in this Vegas sun. A different kind of ICE deported them to Botswana and in the ensuing\n\nchaos the beverage was left outside and its warm again.\n\nFortunately for everyone involved, WW3 and the inevitable nuclear winter will finally solve the warm beer problem -- well at least temperature-wise. It might be a little HOT in the gamma spectrum. But while we wait for Pooh Bear, BiBi, Putler, and or the Cheeto to kick this global cooling contraption off, its up to us to chill this beer.\n\nYou will cool the beer we give you in a red solo cup as quickly as possible to 34 degrees F. You may not alter the beer by mixing it with ice, dry or otherwise. You may bring a device you created or build your own at the convention.\n\nThere are some great prizes waiting, mostly what I have lying around and don't want to take home. There are some additional rules, check the DEF CON forums or the poster board at the contest!\n\nIn conclusion, it's not just a warm beverage - it's a testament to the rich tapestry of societal collapse, seamlessly navigating the multifaceted landscape of your broken contraption.\n\n#### Participant Prerequisites\n\n- A commitment to the sanctity of the unadulterated\n\nbeverage.\n\nA complete disregard for the health a safety of one's self, good design principals, and the laws of physics generally.","links":["https://dcbccc.com/"]},{"id":"x012","kind":"contest","title":"Blacks in Cybersecurity Game Night Extravaganza!","loc":{"raw":"LVCC - Level 3 - W322-W324","level":3,"room":"W322-W324"},"desc":"Gamers Unite! Come join the BIC Village team to engage with one another, unplug and find some friendly competition! Come demonstrate your skill in the games of spades, uno and corn hole with competitive brackets as well as beginner friendly matches. Whether you're into board games, card games or classic party games, there's something for everyone here! Bring your game face and get ready for a night of fun, laughter and connection.This event will feature different skill levels to ensure inclusivity and feature a fun prize.\n\nhttps://defcon.social/@blacksincyber | https://www. blacksincyberconf.com/bic-village | https://infosec. exchange/@blacksincyber"},{"id":"x013","kind":"contest","title":"Blacks in Cybersecurity Village Capture the Flag Competition","loc":{"raw":"LVCC - Level 3 - W322-W324","level":3,"room":"W322-W324"},"desc":"The Blacks In Cybersecurity (BIC) Village Capture The Flag contest is a jeopardy style event designed to practice solving challenges in multiple categories. This event seeks to not only be a series of puzzles and challenges to solve but, a gamified way to learn concepts of social justice, emerging technology and Black history.\n\nAt DEF CON 34 the BIC Village CTF team will take you to the campus of Alaafia State University (Go Firebirds!) with a special history and an even more promising future!\n\n#### Participant Prerequisites\n\nParticipants may want to bring their own laptops, physical security tools, lock picks, hardware hacking tools or other supplies to interact with both of our physical and virtual set-ups.\n\nhttps://infosec.exchange/@blacksincyber | https://www. blacksincyberconf.com/ctf | https://defcon.social/@ blacksincyber"},{"id":"x014","kind":"contest","title":"Blue Team Village CTF","loc":{"raw":"LVCC - Level 2 - W213-217","level":2,"room":"W213-217"},"desc":"Blue Team Village (BTV) is a hands-on cybersecurity community focused on defenders, the professionals and aspiring practitioners who protect systems, networks, and people from real-world threats. We exist to make defensive security accessible, practical, and collaborative.\n\nWe build immersive labs and capture-the-flag (CTF) environments that simulate actual attack scenarios.\n\nAttendees don't just listen to talks they investigate logs, hunt adversaries, analyze traffic, and respond to incidents in live environments.\n\n#### Participant Prerequisites\n\nBring a modern laptop CTF work is hands-on and you'll be running tools locally. There is no expectation of specialized hardware beyond your personal computer.","links":["https://ctf.blueteamvillage.org/"]},{"id":"x015","kind":"contest","title":"Bug Bounty Village CTF","loc":{"raw":"Level 1 - Hall W1 - 303","level":1,"hall":"W1","room":"303"},"desc":"Welcome to the Bug Bounty Village CTF, where we strip away the \"riddles\" and replace them with a massive, living, and breathing target.\n\nWe've built a custom, feature-rich web application from the ground up - and then we broke it.\n\nThis isn't just a contest; it's a high-stakes simulation of the real world.\n\nLast year, hackers called this the most authentic bug bounty experience they'd ever seen. Why? Because you aren't just looking for flags; you're hunting for vulnerabilities in business logic, breaking APIs, and tricking AI chatbots. You'll be submitting real reports to a live triage team of industry experts who will judge your work, challenge your findings, and help you sharpen your reporting skills on the fly.\n\nWhether you're a seasoned pro looking for a challenge or a newcomer ready to make your mark, this is your chance to engage with hacking in its purest form. Come for the competition, stay for the feedback, and leave with the skills (and maybe some exclusive swag) that the world's top bounty programs are looking for. The target is live. The triagers are waiting. Are you ready to hunt?\n\n#### Participant Prerequisites\n\nTo participate in the Bug Bounty Village CTF, you will need:\n\nHardware: A laptop with a reliable battery and a charger.\n\nConnectivity: Your machine must be pre-configured to connect to the DEF CON Wi-Fisecurely.\n\nTools: A web proxy tool is essential (e.g., Burp Suite, Caido, or OWASP ZAP).\n\nKnowledge: A foundational understanding of common web vulnerabilities (OWASP Top 10) and basic HTTP protocol knowledge.\n\nMindset: A curious, analytical approach and a passion for breaking things in creative ways.\n\nIf you want to get a head start, we recommend brushing up on API security and prompt injection techniques, as our target landscape continues to evolve alongside modern tech stacks.","links":["https://www.bugbountydefcon.com/ctf"]},{"id":"x016","kind":"contest","title":"Can It Ham","loc":{"raw":"Level 1 - Hall W1 - 112","level":1,"hall":"W1","room":"112"},"desc":"Can It Ham? is your chance to turn junk into a working antenna. We'll bring the tools, solder, connectors, and test gear. You bring creativity, curiosity, and questionable design decisions. Can It Ham? is a walk-up, hands-on contest open to all DEF CON attendees. Participants will build improvised antennas during the event using provided materials (or their own components if they choose to bring them).\n\nLearn the basics of antenna design, RF propagation, and how to test whether your improvised creation actually works. The top builds will be tested, and the top three earn bragging rights and prizes.\n\nBring weird parts if you want. Or just show up and start hacking. Either way - let's see what you can make radiate.\n\nNo license or antenna knowledge required - just bring your hacker spirit and get on the air.\n\n#### Participant Prerequisites\n\nNo prior antenna or RF knowledge is required. No amateur radio license is needed to participate.\n\nAll basic tools and materials will be provided, including soldering equipment, connectors, and antenna testing gear. Participants are welcome (but not required) to bring unusual materials or components if they want to experiment with their own antenna designs.","links":["https://hamvillage.org/","@hamradiovillage@defcon.social"]},{"id":"x017","kind":"contest","title":"Capture The Packet","loc":{"raw":"LVCC - Level 3 - W303","level":3,"room":"W303"},"desc":"Capture The Packet is a worldclass cyber training range and skill assessment suite. It provides a gamified learning experience which can be used for recruitment skills assessment, vetting, preclass training prep, initial on-the-job training, mission preparation, and ongoing skills and certification maintenance. Capture The Packet is fully integrated with several learning frameworks such as NICE and DCWF. With features such as a built-in knowledge and hint base, anti -collusion system, rich reporting and ease of administration, there's a reason Capture The Packet is in use across industry, education, and all branches of the U.S. military.\n\n#### Participant Prerequisites\n\n- laptop with ethernet port/dongle (loaner dongles are not\n\nguaranteed)\n\n- Contest is designed to be done as a team of 2, but solo\n\ncompetition is allowed","links":["https://www.phvillage.io/capture-the-packet/"]},{"id":"x018","kind":"contest","title":"Car Hacking Village Capture the Flag (CTF)","loc":{"raw":"Level 1 - Hall W2 - 701","level":1,"hall":"W2","room":"701"},"desc":"The Car Hacking Village CTF offers a sophisticated, hands-on environment where participants can engage directly with modern automotive architectures. To ensure our chal-\n\nlenges accurately reflect the current threat landscape, we collaborate closely with leading OEMs and Tier 1 suppliers, providing a rigorous Capture The Flag experience rooted in real-world hardware and software vulnerabilities.\n\nRecognizing that the high cost of automotive components can often be a barrier to entry, we provide a centralized, resource-rich hub for professional development. We invite you to join us at the Village to demonstrate your technical proficiency and gain unique exposure to the complexities of secure vehicle engineering.\n\n#### Participant Prerequisites\n\nTo participate effectively in the Car Hacking Village at DEF CON 34, attendees should bring a laptop with multiple USB ports (or appropriate adapters) and a functional Linux environment. We do not provide tools hardware on-site, you'll need to bring your own - such as a USB-to-CAN adapter (e.g., Canable, ValueCAN), a SDR (e.g., RTL-SDR, HackRF), or a multimeter - is encouraged for independent exploration.\n\nKnowledge of the Linux command line and basic Python is highly recommended. For those looking to hit the ground running, we suggest brushing up on CAN bus fundamentals, other automotive protocols, and basic reverse engineering of binary data. Familiarity with tools like wireshark and can-utils will allow you to dive straight into the live vehicle architectures.","links":["https://www.carhackingvillage.com/"]},{"id":"x019","kind":"contest","title":"Cmd+ctrl Cyber Range","loc":{"raw":"Level 1 - Hall W1","level":1,"hall":"W1"},"desc":"CMD+CTRL is back for our 10th year and bringing something new to show. Drop by our cyber range for hands-on web application security challenges designed for all skill levels. Come to learn, come to compete, come to break things. All are welcome, whether it's your 1st CTF or your 101st.\n\n#### Participant Prerequisites\n\nComputer with internet access and a web browser.\n\nParticipants can play off -site as well after registering in person.","links":["https://defcon34.cmdnctrl.net/"]},{"id":"x020","kind":"contest","title":"Code Cadaver (Biohacking Village CTF)","loc":{"raw":"Level 1 - Hall W1 - 408","level":1,"hall":"W1","room":"408"},"desc":"Your friend is missing. The clock is ticking. And someone just posted a listing that should not exist.\n\nWelcome to a high-stakes, neon-noir medical mystery where organ donation systems, hospital tech, and underground marketplaces collide.\n\nThis year's Biohacking Village CTF riffs off the vibes of Code DARK and Code CRIMSON - but with a new mission: trace the digital trail, expose the network, and pull your friend back from the edge.\n\nThis isn't about smashing and burning. It's about outsmarting.\n\nYou'll hunt signals through the places people swear are secure:\n\n- donation registries and referral workflows\n\n- hospital portals and vendor backends\n\n- device telemetry and \"totally harmless\" logs\n\n- encrypted comms, shady marketplaces, and bread-\n\ncrumbed dead drops\n\n- identity, access, and the kind of data leakage that ruins\n\nlives\n\nEvery flag is a lead. Every lead gets you closer. Every mistake costs time.\n\nThe Story\n\nYour friend, an outspoken advocate for ethical organ donation, vanishes the night before they're supposed to speak at a conference. At first it looks like a typical missing-person case... until you find something worse:\n\nA weird 'inventory' post. A cryptic transaction trail. A set of identifiers that match your friend's profile a little too closely.\n\nYou're not a cop. You're not a vigilante. You're the only person who knows where to look: in the systems.\n\nYour job is to follow the evidence chain the way BHV does best - through firmware, protocols, misconfigurations, sloppy OPSEC, bad crypto, and \"who gave this API admin rights?\" decisions, until you can identify the operation, locate your friend, and stop the pipeline.\n\nNo Hollywood hacking. Just real-world failures turned into delicious challenges.","links":["https://villageb.io"]},{"id":"x021","kind":"contest","title":"Crack Me If You Can 2026","loc":{"raw":"Level 1 - Hall W1 - 106","level":1,"hall":"W1","room":"106"},"desc":"Time is of the essence! You will have 48 hours to crack as many hashes and files as possible.\n\nPamama, a US-based data broker had a massive data breach. Profiles on over a billion people, containing all the information amassed about them. It is alleged that the company siphoned records from different government agencies around the world, as well. The dump was encrypted, and regulators are downplaying the breach claiming no damage was done. A bill has been fast-tracked in Congress to exempt Pamama from any investigations, including illegally shield them from GDPR violations. This led to accusations that Pamama has bought or blackmailed members of congress.\n\nCrack the staff 's accounts and encrypted files to demonstrate the extent of the exposure and the need for individuals to get restitution and compensation, and to find smoking gun evidence of collusion so that the corruption can be fully exposed before the legislation goes forward.\n\n## Participant Prerequisites\n\nOpen to all, but pre-registration is recommended. Compete in the Street class for individuals or small teams, or in Pro if you do not want to sleep all weekend. Check out past years' contests at https://contest.korelogic.com/, or the Password Village site for an introduction to password cracking and links to other resources: https://passwordvillage.org/\n\n## Pre-Qualifications\n\nNone.\n\nhttps://contest-2026.korelogic.com | @CrackMeIfYouCan@ infosec.exchange"},{"id":"x022","kind":"contest","title":"Crack the Core","loc":{"raw":"Level 1 - Hall W1 - 214","level":1,"hall":"W1","room":"214"},"desc":"Welcome to Crack the Core-a true test of lockpicking skills.\n\nCompetitors will work through a variety of locks ranging in different difficulties, technologies, and configurations. From standard off -the-shelf locks to evil creations from the community. Locks will be presented in a variety of ways, ranging from your traditional deadbolt to much, much more. Just wait until you see what we have in store for you...\n\nChallenges will not only test traditional lockpicking skills but force competitors to interact with different \"environments,\" work through various challenges, and adapt to what's presented. Collect the most points, you go home the winner-it's that simple...\n\nBring your tools. Bring your focus. The locks will be waiting.\n\n#### Participant Prerequisites\n\nBasic tools will be available for use but it is highly recommended to bring your own tools. This may include lockpicks, bypass tools, vices, etc. Destructive entry is not allowed and associated tools will not be needed.","links":["https://c2society.org/"]},{"id":"x023","kind":"contest","title":"Crash and Compile","loc":{"raw":"Level 1 - Hall W1 - 404","level":1,"hall":"W1","room":"404"},"desc":"What happens when you take an ACM style programming contest, smash it head long into a drinking game, throw in a mix of our most distracting helpers, then shove the resulting chaos on stage in front of an audience? You get the contest known as Crash and Compile.\n\nTeams are given programming challenges and have to solve them with code. If your code fails to compile? Take a drink.\n\nSegfault? Take a drink. Did your code fail to produce the correct answer when you ran it? Take a drink. ChatGPT wrote your code? First of all shame. Secondly take a drink.\n\nWe set you against the clock and the other teams. And because our \"Team Distraction\" think watching people simply code is boring, they have taken it upon themselves to be creative in hindering you from programming, much to the enjoyment of the audience. At the end of the night, one team will have proven their ability, and walk away with the coveted Crash and Compile trophy.\n\nCrash and Compile is looking for the top programmers to test their skills in our contest. Can you complete our challenges? Can you do so with style that sets your team ahead of the others? To play our game you must first complete our qualifying round. Gather your team and see if you have the coding chops to secure your place as one of the top teams to move on to the main contest.\n\nQualifications for Crash and Compile will take place Friday starting at 10:00 and run till 18:00, both in the contest area and online at https://crashandcompile.org\n\nYou may have up to two people per team. Individuals can compete, but having two people on a team is highly suggested.\n\nOf the qualifiers, ten teams will move on to compete head to head on the contest stage on Saturday.\n\n#### Participant Prerequisites\n\nAs this contest involves the drinking of alcohol (beer), all contestants must be 21 years of age or older. Yes we will check. While we don't limit what development environment or programming language you chose to use, as we used a PDP11/23 when we competed, the team must have at least one computer that can connect to our contest network via wired ethernet for the main contest.\n\n#### Pre-Qualification\n\nQualifiers run on Friday from 10:00 to 18:00. We will be located in the contest area, and the problems can be accessed via our site at https://crashandcompile.org\n\nhttps://crashandcompile.org/ | https://defcon.social/@ crashandcompile | https://crashandcompile.org\n\nCreative Writing Short Story Contest\n\nThe DEF CON Short Story contest is a pre-con contest that is run entirely online utilizing the DEF CON forums and reddit. This contest follows the theme of DEF CON for the\n\nyear and encourages hackers to roll up their sleeves, don their proverbial thinking cap, and write the best creative story that they can. The Short Story Contest encourages skills that are invaluable in the hacker's world, but are often overlooked. Creative writing in a contest setting helps celebrate creativity and originality in arenas other than hardware or software hacking and provides a creative outlet for individuals who may not have another place to tell their stories.\n\n#### Participant Prerequisites\n\nThis contest is run pre con and requires a way to save text files and an email address."},{"id":"x024","kind":"contest","title":"Cryptid Hunt","loc":{"raw":"Level 1 - Hall W1","level":1,"hall":"W1"},"desc":"Something is already watching you.\n\nThe Cryptid Hunt is a task-oriented challenge that moves agents across the conference floor toward a truth most attendees will never find. This is not a passive experience - each clue demands action, and the path forward is never obvious.\n\nLook carefully at what surrounds you. The next layer of any good mystery is always hiding beneath the surface. Patterns emerge for those paying attention. Signals exist for those who know how to listen.\n\nIs this a puzzle? A test? A hunt? At its core, this is a community experience that rewards curiosity, persistence, and the willingness to go further than most people will.\n\nThe conference is your map. Maritime exploration, ancient communication, and the village of knowledge surrounding you are all part of the journey. Nothing here is coincidental.\n\nFinishers are recognized. What awaits those who complete the hunt will not be found anywhere else at this conference. Supplies are finite. So is your time.\n\nYour first clue is already in your hands.\n\n - The Cryptid Hunt Team\n\nBureau of Unverified Phenomena · DC34\n\n#### Participant Prerequisites\n\n- Smart Phone\n\n- Desire to Learn\n\n- Patience"},{"id":"x025","kind":"contest","title":"Cryptocurrency Challenge","loc":{"raw":"Level 1 - Hall W2 - 702","level":1,"hall":"W2","room":"702"},"desc":"They told us the Las Vegas Strip was a fortress of neon and excess.\n\nThey said the Sin City Jackpot Vault was \"secure by design\" - audited, multi -sig, and backed by the weight of a billion-dollar treasury.\n\nBut neon flickers, and cold code has edge cases.\n\nOn a warm August night at the Las Vegas Convention Center, during the legendary DEF CON hacker convention, we didn't just find a bug; we found a debug message left for \"future developers.\" The Sin City Jackpot Vault was supposed to be the future of crypto-custody, but it forgot the oldest rule in the book: Never trust the client.\n\nWe opened a console to the vault's core and laughed. We forged a single signature that the multi -sig contract accepted as gospel. We drained the vault with one transaction.\n\n\"Welcome to the Sin City Jackpot Vault, we've already left.\"\n\nNow we ask, do you think you can break a \"secure\" crypto vault?\n\nWelcome to the Cryptocurrency Challenge Capture the Flag Coin, where you get brain-melting, ego-deflating, laugh-until-you-cry challenges. There is no KYC, no real funds. Just pure, unfiltered hacker joy.\n\nAnd this isn't just a write-up. It's a reminder that even the biggest exchanges sometimes leave the door unlocked - and a curious mind with a keyboard is all it takes to walk through.\n\nWe cryptohackers set up two \"Capture the Coin\" challenges in the Cryptocurrency Village at DEF CON in Las Vegas. The first is a deceptively simple web vault with an \"intern-proof\" console log. The second is a multi -signature smart contract that supposedly requires multiple approvals to move funds.\n\nYour mission is to find the cracks in the vault.\n\n## Participant Prerequisites\n\nTo participate in the Capture the Coin CTF, contestants must use a portable computer with a web browser. To participate in the Cryptocurrency Quiz, contestants should obtain and study the Cryptocurrency Workbook distributed free of charge.","links":["https://defcon.social/@cryptocurrency","https://www","cryptocyberchallenge.com/"]},{"id":"x026","kind":"contest","title":"Darknet-NG","loc":{"raw":"Level 1 - Hall W1 - 105","level":1,"hall":"W1","room":"105"},"desc":"Darknet-NG is an Alternate Reality Game (ARG), where the players take on the Persona of an Agent who is sent on Quests to learn real skills and gain in-game points. If this is your first time at DEF CON, this is a great place to start, because we assume no prior knowledge. Building from basic concepts, we teach agents about a range of topics from Lock-picking, to using and decoding ciphers, to Electronics 101, just to name a few, all while also helping to connect them to the larger DEF CON Community. The \"Learning Quests\" help the agent gather knowledge from all across the other villages at the conference, while the \"Challenge Quests\" help hone their skills! Sunday Morning there is a BOSS FIGHT where the Agents must use their combined skills as a community and take on that year's final challenge! There is a whole skill tree of personal knowledge to obtain, community to connect with and memories to make! To get started, check out our site https://darknet-ng.network and join our growing Community!\n\n#### Participant Prerequisites\n\nPrerequisites for competing in the contest would require a device with access to a web browser like a Phone, Tablet, Laptop.\n\nhttps://defcon.social/@DarknetNG | https://darknet-ng. network/"},{"id":"x027","kind":"contest","title":"Dc's Next Top Threat Model","loc":{"raw":"Level 1 - Hall W1 - 102","level":1,"hall":"W1","room":"102"},"desc":"Threat Modeling is arguably the single most important activity in an application security program and if performed early can identify a wide range of potential flaws before a single line of code has been written. While being so critically important there is no single correct way to perform Threat Modeling, many techniques, methodologies and/or tools exist.\n\nAs part of our challenge we will present contestants with the exact same design and compare the outputs they produce against a number of categories in order to identify a winner and crown DEF CON's Next Top Threat Model(er).\n\n#### Participant Prerequisites\n\nA laptop is recommended, a smartphone could be used but will be less than idea. Internet access to retrieve the design materials and to submit findings and access to the email used during registration.\n\nhttps://threatmodel.us | @dcnttm@defcon.social"},{"id":"x028","kind":"contest","title":"DDOS CTF - Pwn Ur H0m3","loc":{"raw":"Level 1 - Hall W1 - 307","level":1,"hall":"W1","room":"307"},"desc":"A chaotic DDoS-themed CTF where sketchy devices, busted services, weird signals, and sneaky clues are begging to be owned. Scan the network, break IoT devices, decode the nonsense, and prove you can pwn your home before your home pwns you. This CTF is designed to help you learn about the cutting edge in DDoS attacks and defense.\n\nWe also have an IoT lab of devices hacked and infected with botnet malware that you can play around with. Beginners welcome. We have some fabulous prizes including gift cards donated from Hak5 so please check it out!"},{"id":"x029","kind":"contest","title":"DEF CON Beard and Mustache Contest","desc":"The DC Beard and Mustache Contest has been held every year since DEF CON 19 in 2011 (R.I.P. Riviera), (Except during that COVID thing but we are not going to talk about that COVID thing), the DEF CON Beard and Mustache Contest highlights the intersection of facial hair and hacker culture.\n\n#### Participant Prerequisites\n\nFor 2025 offering 4 categories for the competition - You may only enter one category.\n\nThis is an in-person contest - you must be present to participate.\n\nFull beard: Self-explanatory, for the truly bearded.\n\nPartial Beard: For those sporting Van Dykes, Goatees, Mutton Chops, and other partial beard styles.\n\nMustache only: Judging on the mustache only, even if bearded. Bring your Handlebars, Fu Manchus, or whatever adorns your upper lip.\n\nFreestyle: Anything goes, including fake and creatively adorned beards. Creative women often do well in the Freestyle category.","links":["https://dcbeard.net/","https://bsky.app/profile/dcbeardcontest.bsky.social"]},{"id":"x030","kind":"contest","title":"DEF CON Groups Backdoor & Breaches","loc":{"raw":"LVCC - Level 2 - W238","level":2,"room":"W238"},"desc":"Tournament-Style Backdoors & Breaches Competitive - Live Incident Response Showdowns\n\nThe DEF CON Groups Community is bringing live, bracket-style Backdoors & Breaches Competitive Games to Backdoors & Breaches is an incident response card game built around realistic breach scenarios. In our tournament format, teams step into the roles of adversaries, where they will take turns attacking or defending against each"},{"id":"x031","kind":"contest","title":"The Benevolent Bureau of Birds Field Guide To","desc":"elcome to the DEF CON Capture the Flag competition at DEF CON 34. This year will be the Benevolent Bureau of Birds' inaugural year organizing the competition. We're excited to share our vision of the competition with you all! We would like to thank the previous organizers, Nautilus Institute, for carrying the torch the last four years.\n\nVisiting the Floor\n\nFig 1. A good bird"},{"id":"x032","kind":"contest","title":"DEF CON CTF","desc":"pectators are welcome on the floor while the game is played. However, the space will be closed to general humans during setup and teardown each day. Please be aware that we must comply with space policies in accordance with the Las Vegas Convention Center and the greater DEF CON community.\n\nWho we are\n\nhe Benevolent Bureau of Birds is composed of members of PPP and Maple Bacon who were previously part of the Maple Mallard Magistrates, the winning team from the past four iterations of DEF CON CTF. As long-time participants of the contest, we're excited to show what we can bring from the other side.\n\nYou can identify a Benevolent Birder by their birdwatching hat and binoculars. Feel free to ask us questions about how the game is going, but do be aware we might have our hands full from time to time!\n\nVisit https://bbbirds.org for more information, including announcements and schedules relevant to DEF CON CTF.\n\nQualifying Teams\n\nn May, over 650 teams competed in the Distinguished Enthusiasts' Flocking Convention for Ornithology and Naturalism Championship of Top Finders (DEF CON CTF) Qualifiers. Teams pecked, swooped, and scratched their way through challenges covering a variety of topics, including Binary Exploitation, Reverse Engineering, Web Exploitation, Cryptography, and other skills. Teams were also challenged with King of the Hill challenges that required them to optimize their solutions over the course of the entire contest and a competitive battle arena hosted by LiveCTF.\n\nTwelve teams soared above the rest and were invited to join us for the DEF CON CTF Finals this weekend. Join us and find out who will rule the roost!\n\nFig 3. Species native to the DEF CON CTF floor Top: SuperDiceCodeLovers, Orange Fan Club, Cold Fusion, mhackeroni, 0x4b52, Jinddabi's Bottom: The Seoul Sauna Shogunate, Nu1l, Blue Water, ABCD, Shellphish, D0kdo\n\nFig 2. The crest of the Benevolent Bureau of Birds\n\nother. They must analyze scenarios, identify adversarial tactics, make technical and business decisions, and mitigate damage before attackers wipe them out of the game.\n\nThis isn't passive content. This is live, projected, real-time decision-making.\n\nMatches will be bracketed and displayed on screen so attendees can watch strategies unfold, debate choices, and learn from both brilliant plays and catastrophic missteps.\n\nSpectators become students of the game - observing how attacks progress, how defenders prioritize, and how communication and leadership shape outcomes.\n\nParticipants can:\n\n- Join the tournament on the spot - no pre-qualifiers\n\nrequired\n\n- Compete in structured brackets\n\n- Win donated swag\n\n- Learn incident response by doing, not just listening\n\nWhat will you learn?\n\nYou'll see how modern attacks move from initial access to impact. You'll experience the tension of limited funding.\n\nYou'll learn how small decisions compound during an incident. You'll understand how legal, executive, and technical perspectives collide in a breach scenario. Most importantly, you'll build intuition for thinking like both attackers and defenders.\n\nThis is hacking culture through simulation: adversary thinking, defensive strategy, rapid analysis, and creative problem solving - all wrapped in competition.\n\nLocated inside the DCG Community space, the tournament creates visible energy and draws attendees into a broader ecosystem of DEF CON Groups, workshops, sticker contests, and community collaboration.\n\nIf you've ever wanted to see incident response as a spectator sport - or test your instincts under pressure - pull up a chair.\n\n#### Participant Prerequisites\n\nNone. No equipment, preparation, or prior cybersecurity knowledge is required.\n\nAttendees can join the tournament on the spot and learn the game mechanics in a few minutes. All materials will be provided, and facilitators will guide participants through gameplay as needed. Spectators are also welcome and can learn by watching matches and discussions unfold.\n\n#### Pre-Qualification\n\nNo. ...","links":["https://www.blackhillsinfosec.com/tools/backdoorsandbreaches/"]},{"id":"x033","kind":"contest","title":"DEF CON Groups Sticker Contest","loc":{"raw":"LVCC - Level 2 - W238","level":2,"room":"W238"},"desc":"The DCG Sticker Contest is an in-person sticker design contest happening during DEF CON 34.\n\nAttendees can submit original, human-created sticker designs, view all entries on site, and vote in person for their favorites. Designs will be displayed in the DEF CON Groups Community space throughout the conference, with voting open during DEF CON and the winning design announced on Sunday.\n\nStickers are hacker currency. This contest is about celebrating that culture through creativity, participation, and community choice. No remote judging and no behindthe-scenes decisions. What wins is what the DEF CON community votes for.\n\nWhether you want to contribute art, support fellow hackers, or help decide the winning design, this is your chance to participate directly.\n\n#### Participant Prerequisites\n\nFor designers / contributors:\n\n- Original sticker artwork created by a human (no\n\nAI-generated art)\n\n- You may design it yourself or work with a human graphic\n\ndesigner\n\n- Ability to submit artwork digitally prior to DEF CON\n\n- No specialized technical knowledge required\n\nFor voters:\n\n- Attendance at DEF CON\n\n- Ability to view entries in person and cast a vote\n\n- Voting is honor-based: one human, one vote\n\n- Participants may vote\n\nNo special hardware, software, or prior experience is required to participate or vote.\n\n#### Pre-Qualification\n\nA call for sticker designs will open prior to DEF CON with the contest and voting happening on-site.\n\nhttps://defcongroups.org | https://sti ckercontest.org/ contests/defcon34.html"},{"id":"x034","kind":"contest","title":"DEF CON MUD","desc":"The DEF CON MUD is an interesting enigma, part CTF, part adventure, plenty of frustration.\n\nDust off your maps, grid paper, and see if you can discover the MUD's secrets. The winner gets a DEF CON human badge provided by EvilMog.\n\nThis year you may need to learn about RFC854/855 in order to succeed, good luck, you'll need it.\n\n#### Participant Prerequisites\n\nA laptop (or phone), graph paper, patience, and grit.\n\nLearning how an LPMUD operates is beneficial but not required.","links":["https://mud.defcon.wtf"]},{"id":"x035","kind":"contest","title":"DEF CON Scavenger Hunt","loc":{"raw":"Level 1 - Hall W1 - 104","level":1,"hall":"W1","room":"104"},"desc":"Whether you're a seasoned DEF CON veteran or a curious newcomer, the DEF CON Scavenger Hunt promises to challenge your skills, tickle your wits, and ignite your hacker spirit. Our list is a portal to mystery, mischief, and mayhem.\n\nAssemble your team of up to 5 members, interpret the items, and submit your efforts at the booth to our esteemed judges. Go beyond the basics for bonus points.\n\nLegends are born here.\n\nThe DEF CON Scavenger Hunt is open to everyone, regardless of skill level or experience, no pre-qualifying necessary.\n\nWe strive to maintain the balance of a low barrier to entry while providing a challenge that many are eager to take on.\n\nCasual players should not be overwhelmed by the list, find a handful of items and have fun. If you are looking to win however, you will need to fully immerse yourself in the DEF CON Scavenger Hunt. Let's make some memories together.\n\nRemember that it's not just about fame, glory, or boxes of swag; the true allure is the camaraderie of fellow hackers, the knowledge that you've etched your mark on DEF CON history, and the ultimate badge of honor: bragging rights.\n\nNothing says \"I'm a hacker\" quite like being triumphant at the DEF CON Scavenger Hunt.\n\n#### Participant Prerequisites\n\nNo, we work very hard to maintain a very low barrier to entry. If anything is required for an item, they should be able to find a fellow hacker with it that would be willing to assist them with their item.\n\nhttps://www.defconscavhunt.com/ | https://defcon.social/@ DEFCONScavHunt"},{"id":"x036","kind":"contest","title":"Dozier Drill Lockpicking Challenge","loc":{"raw":"Level 1 - Hall W1 - 407","level":1,"hall":"W1","room":"407"},"desc":"Have you ever wanted to break out of handcuffs, pick open a closed bag and shoot your buddy in the chest with a nerf gun? So have we, that's why TOOOL presents the Dozer Drill. A fast paced skill based game where you have to free yourself from handcuffs, open a closed bag, and retrieve the nerf gun to be the first to hit the target. Join us throughout the con for qualifier games, and on Saturday for an official bracket tournament.\n\n#### Participant Prerequisites\n\nParticipants must be able to shim handcuffs and pick locks which are both skills we're happy to teach you in the lock pick village. Contestants wishing to enter the official tournament on Saturday must win at least one match against any opponent prior to the tourney in order to have their name entered.\n\n#### Pre-Qualification\n\nWe will be running the game throughout the day prior to the tournament on Saturday. Contestants have to win at least one dozier drill round before they can enter into the official tournament. This helps us to ensure everyone competing holds the minimum skills needed to complete a round.","links":["https://toool.us","@TOOOL@techhub.social"]},{"id":"x037","kind":"contest","title":"EFF Tech Trivia","desc":"EFF's privacy and security experts have crafted a new trivia challenge for DEF CON 34! Compete as a team in our no-holds-barred showdown to prove mastery over the obscure facts of digital security, online rights, and internet culture.\n\nThe First Place team wins a set of custom Cybertiger Champion Badges and EFF swag. Second and third place teams will also win Badges and EFF gear.\n\nInvite your friends OR show up and make new friends! Did someone say BRIBES?The world is unfair! You too could influence the judges to add a point or two to your team's tally. Overall Bribe winner also wins a custom badge! Test your knowledge of all things tech and support EFF, too.\n\n#### Participant Prerequisites\n\nNo phones, laptops, or other digital knowledge allowed!\n\nJust you, your friends, and a friendly game of trivia.","links":["https://eff.org","https://mastodon.social/@eff"]},{"id":"x038","kind":"contest","title":"Escalation Desk CTF","loc":{"raw":"LVCC - Level 2 - W218","level":2,"room":"W218"},"desc":"Customer service channels are increasingly saturated with conversational text and voice AI agents. Can you convince, trick, or break enough of them to earn your shot at a live human operator in a real-world call center?\n\nEscalation Desk is Call Center Village's capture-the-flag challenge. Start with low-pressure AI agents and learn how to spot, avoid, and exploit common pitfalls and patterns in system prompts - eventually unlocking live human operators at our partner call centers. A real-time leaderboard tracks solo and team progress, with our not-sofamous Golden Telephone Booth trophy awarded to the top participant.\n\nHit our minimum point threshold and earn a special Call Center Village 100 Trying black flight tag. The top individual and their team also take home the rare Call Center Village 200 OK gold flight tags. Bring your tags to Party Line, Call Center Village's after-hours telephony-themed party, and enjoy free refreshments for your spoils.\n\nEscalation Desk is beginner (and introvert) friendly - if you can dial a phone number or use a keyboard, you can participate. Bring your own laptop and headset, or use one of our village stations. Active Noise-canceling headphones with a microphone are highly recommended.","links":["@callcentervillage@defcon.social","https://www.callcentervillage.com"]},{"id":"x039","kind":"contest","title":"Feet Feud (Hacker Family Feud)","desc":"Feet Feud (Hacker Family Feud) is a Cybersecurity-themed Family Feud style game arranged by members of the OnlyFeet CTF team and hosted by Toeb3rius (aka Tib3rius). Both survey questions and their answers are crowd-sourced from the Cybersecurity community. Two teams (Left Foot and Right Foot) captained by Ali Diamond and John Hammond and comprised of audience members go head to head, trying to figure out the top answers to the survey questions.\n\nAttendees can either watch the game or volunteer to play on one of the two teams. Audience participation is also encouraged if either of the two teams fails to get every answer of a survey question.\n\nUltimately Feet Feud is about having a laugh, watching people in the industry attempt to figure out what randomly surveyed people from the Cybersecurity community put as answers to a number of security / tech related questions.\n\n#### Participant Prerequisites\n\nParticipants are chosen by team captains from the audience at the start of the show. In order to be fair, we try to select participants from all seating areas, so folks who show up later than others still have a chance to volunteer."},{"id":"x040","kind":"contest","title":"Fix the Flag - the Appsec Village Wargame","loc":{"raw":"Level 1 - Hall W2 - 604","level":1,"hall":"W2","room":"604"}},{"id":"x041","kind":"contest","title":"From the Static: a HRV Fox Hunt","loc":{"raw":"Level 1 - Hall W1 - 112","level":1,"hall":"W1","room":"112"},"desc":"Somewhere in the noise, a transmission is waiting.\n\nIt started as fragments; bursts of signal buried in the static, too deliberate to be interference, too strange to be routine.\n\nSomeone is broadcasting. Someone doesn't want to be found. And someone else really, really does.\n\nThe spectrum is crowded, surveilled, and owned. But old frequencies never die; they just go quiet. Somewhere on the con floor, Foxes are transmitting. Each one carries a piece of something bigger. A fragment of a message. A coordinate. A key. Alone they're noise. Together they're signal.\n\nYour job is to find them, collect the pieces, and figure out what they're trying to say.\n\nSome Foxes are stationary; patient, waiting, transmitting on a loop. Others are moving through the crowd, blending in, broadcasting short range. All of them have something you need. None of them will make it easy.\n\nExpect:\n\n- Moving and stationary Foxes broadcasting short-range\n\nsignals across the con space.\n\n- Volunteer human Foxes roaming the contest floor - hunt\n\nthem down, respectfully, with radios or other RF scanning equipment.\n\n- Coded fragments, puzzles, DEF CON history, and the\n\noccasional social engineering opportunity standing between you and your next clue.\n\n- Trinkets, tokens, or??? exchanged when you succeed - \n\nbring something to write with and something to capture what you find.\n\n#### Participant Prerequisites\n\nRF Fox Hunt(s): To participate in the RF fox hunt(s), you will need a radio or scanner that can receive signals in the 2m and/or 70cm Amateur Radio Bands (144.000 MHz 148.000 MHz, 420.000 MHz - 450.000 MHz). This isn't a contest where the most expensive gear wins - whether you're running an SDR, a handheld radio, or just tuned into the right frequency, you've got a shot.\n\nRecommended:\n\n- Something to take notes with.\n\n- Something to capture clues (a camera or steady hand).\n\n- Something to listen with and capture signals.\n\n- A token from the Ham Radio Village - remember to\n\nregister and check in to be eligible for prizes.","links":["https://hamvillage.org/","@hamradiovillage@defcon.social"]},{"id":"x042","kind":"contest","title":"Game Hacking Village CTF","loc":{"raw":"Level 1 - Hall W1 - 211","level":1,"hall":"W1","room":"211"},"desc":"Explore the world of game hacking through the Game Hacking Village CTF. Our goal as a community is to teach people about game security throughout the industry to bring attention to the flaws throughout many parts of gaming. We bring a unique, multi -disciplinary perspective on cyber security through the lens of game hacking.\n\n#### Participant Prerequisites\n\nRequires a laptop for participation, accessories like a mouse, charger, and ethernet cable might benefit participants. No prior knowledge is required, but an understanding of memory hacking, reverse engineering, and programming in the context of video games will help you succeed.","links":["https://www.gamehacking.gg/"]},{"id":"x043","kind":"contest","title":"Global OSINT Search Party CTF - DEF CON 34 Edition","desc":"The Trace Labs Global OSINT Search Party CTF is a non-theoretical CTF where teams of up to 4 people use their OSINT skills to look for actual missing people. For DEF CON 34, we will be working directly with Las Vegas Metro PD to source local missing person cases they have requested the public's assistance with. This is a hybrid event, open to participants of all skill levels, from anywhere in the world. Prizes will be awarded for 1st, 2nd, and 3rd places, as well as for Most Valuable OSINT. Participants at DEF CON can pickup their free event ticket by stopping by the OSINT4Good Community anytime prior to the event start. Global participants can get a ticket by going to https://www.tracelabs.org/tickets.\n\nBring a laptop and some snacks and get ready to use OSINT4Good!","links":["https://www.tracelabs.org/tickets"]},{"id":"x044","kind":"contest","title":"Hac-Man","loc":{"raw":"Level 1 - Hall W1 - 213","level":1,"hall":"W1","room":"213"},"desc":"Rogue Signal builds bespoke, technically driven interactive experiences rooted in hacker culture, game design, and immersive storytelling. Drawing from backgrounds in immersive theater, live events production, community building, and deep game design practice, Rogue Signal creates systems that transform participation into exploration.\n\nRather than relying on superficial gamification, Rogue Signal focuses on meaningful challenge design. Their experiences reward curiosity, experimentation, collaboration, and strategic thinking. From scavenger hunts to technical skill challenges to digital easter eggs, each activation is designed around the specific audience and environment it lives in.\n\nAt DEF CON, Rogue Signal brings that philosophy to Hac-Man. A Pac-Man-themed security challenge platform that blends retro inspiration with layered technical depth.\n\nParticipants will engage directly with structured challenges that test logic, pattern recognition, foundational security and hacker knowledge, and progressively more advanced technical skills.\n\nHac-Man reflects the hacker mindset: iterate, experiment, fail, refine, break assumptions, and try again. It encourages collaboration where helpful, competition where motivating, and discovery at every level.\n\nAttendees can expect:\n\n- Hands-on security challenges\n\n- Multiple subject-matter tracks\n\n- Layered difficulty levels\n\n- Scavenger style discovery elements\n\n- Competitive scoring and mission style progression\n\n- A welcoming but technically rich environment\n\nWhether you're new to security or already deep in the field, Rogue Signal's space offers a place to test your thinking, sharpen your skills, and experience hacking concepts through play.\n\n#### Participant Prerequisites\n\nParticipants will need access to a smartphone, tablet, or laptop in order to access gameplay content and view leaderboards. The experience is web-accessible and designed to function on standard modern devices.\n\nNo specialized hardware (e.g., Flipper Zero, SDR, etc.) is required. Foundational familiarity with basic computer use and logical problem-solving will be helpful, but no advanced security knowledge is required to begin. The game features layered difficulty tracks to accommodate both beginners and more advanced participants.\n\nhttps://roguesignal.io/ | https://peoplemaking.games/@ RogueSignal"},{"id":"x045","kind":"contest","title":"Hack3r Runw@y V8.0","loc":{"raw":"Level 1 - Hall W1 - 302","level":1,"hall":"W1","room":"302"},"desc":"Where Code Meets Catwalk @ The Hack3r Runw@y returns for its 8th evolution! After nearly a decade of bridging the gap between hardware and haberdashery, we're back at DEF CON 34 to prove once again that hackers are the most creative engineers on the planet.\n\nWhether you're a glamorous geek, a crafty coder, or a fashionably functional phantom, it's time to weaponize your wardrobe. We're challenging you to dismantle the boundary between \"security\" and \"style.\" If you can hack it, you can wear it.\n\nThe Mission Categories\n\n- Smart-Wear (Active Tech): The high-voltage category.\n\nIntegrate microcontrollers, sensors, and live telemetry into your designs. We want to see hardware that reacts to the environment - or the wearer - in real-time.\n\n- Digital Dazzle (Passive Tech): Bling with a brain. Focus on\n\nLEDs, fiber optics, and glow-tech that remains passive but high-impact. Light up the room without needing a CLI.\n\n- Functional Fashion (Tactical): Gear for the field. Think\n\n\"Cyber-Chic Pentester\": lockpick jewelry, shim-integrated accessories, signal-blocking fabrics, or high-fashion physical security tools.\n\n- Extraordinary Style (Creative Ops): The \"Kitbash\" category.\n\nElevate the everyday with 3D textures, optical illusions, security-inspired patterns, and deep-cut cosplay.\n\nTHE PEOPLE'S CHOICE Trophy: One coveted trophy is up for grabs where ANYONE can win. But be warned: in true DEF CON fashion, there will be a twist. Follow the social media for updates.\n\n- The Maker's Mandate\n\n- This is a pure DIY challenge. We value the \"Proof of\n\nConcept\" over the \"Price Tag.\"\n\n- Originality is King: Items must be handmade or heavily\n\nmodified (\"kitbashed\") by the entrant.\n\n- No \"Off -the-Shelf\": Integrating components (like an\n\nArduino or LED strip) is encouraged; buying a pre-finished \"light-up dress\" from a mass-retailer is an automatic DQ.\n\n- Show Your Work: Documentation is required. Have\n\nphotos, videos, or a build-log ready to prove your process if the judges need to verify your \"hacker's trail.\"\n\nThe Judging Criteria\n\nOur panel will be scoring builds based on:\n\n- Technical Mastery: Execution of hardware/software.\n\n- Couture Craftsmanship: Quality of the \"fi t\" and finish.\n\n- Relevance: How it speaks to hacker culture or security.\n\n- Originality: Creative use of materials and \"kitbashing.\"\n\n#### Participant Prerequisites\n\nOriginality: Items must be handmade by the entrant.\n\nVerification: Documentation (photos/video) of the build process is required to verify authenticity.\n\nModification vs. Acquisition: We celebrate the \"kitbash.\" Using pre-made components to create something new is allowed, but \"off -the-shelf\" or \"plug-and-play\" retail items are not permitted.","links":["@hac3krrunway@defcon.social","https://hack3rrunway","github.io"]},{"id":"x046","kind":"contest","title":"Hacker Games","loc":{"raw":"Level 1 - Hall W1 - 207","level":1,"hall":"W1","room":"207"},"desc":"The Hacker Games is a series of hacker skills tests meant to challenge the hacker's knowledge of computer systems such as Binary -> Hex -> X conversion, Adapter -> Adapter knowledge, Keyboard Layout, and many more arbitrarily useless skills. Hackers will go head-to-head in a series of several skill-based games. BinHexAscii, Chopstick Challenge (a.k.a. Will it Flow), Keyboard Layout, Adapt or Die, ToS, and more! Can you hack it?\n\n#### Participant Prerequisites\n\nA box of computer-style adapters of no particular order would be very helpful."},{"id":"x047","kind":"contest","title":"Hacker Jeopardy","desc":"The DFIU Crew has been running Hacker Jeopardy at DEF CON for longer than some of you have had email addresses, and we're not stopping now. Hacker Jeopardy is exactly what it sounds like and nothing like what you expect: a game show forged in the crucible of the hacker community, where the categories swing without warning from \"things a script kiddie Googled at 2am\" to \"cryptographic primitives your professor couldn't explain sober.\" Whether you're a first-ti mer trying to get your bearings or a proverbial greybeard who lived through the dial-up wars, there's an answer in here that will humble you, one that will make you feel like a genius, and at least three that will make you spit your beer. We cover the full spectrum - the culture, the craft, the lore, the absurdity, and the genuine depth of knowledge that defines this community at its best and its most chaotic. Come to play, come to watch, come to heckle. You'll leave knowing something you didn't, laughing at something you shouldn't, and questioning at least one life choice. That's the DEF CON tradition. We're just the ones with the buzzers.\n\n#### Participant Prerequisites\n\nContestants compete in teams of 3 on stage, streamed live on DCTV, so bring a crew with a team name and an identity the audience can get behind. Know things - a lot of things, across a weird range: hacking and security, hacker literature, movies and culture, DEF CON lore, lateral thinking, and the gloriously obscure, and TELNET, know fucking TELNET. Beer consumption is part of the scoring, non alcoholic options available at team registration. If you're just coming to watch, line up early, show up ready, and be loud.\n\n#### Pre-Qualification\n\nPre-registration is required before DEF CON! Watch https://hackerjeopardy.com and the DEF CON Discord for details and don't wait until the last minute to sign up.\n\nhttps://hackerjeopardy.com/ | https://defcon.social/@ HackerJeopardy"},{"id":"x048","kind":"contest","title":"HackFortress","loc":{"raw":"Level 1 - Hall W1 - 108","level":1,"hall":"W1","room":"108"},"desc":"HackFortress is back! Returning to DEF CON with a twist on our standard format. Two teams of players, 6 gamers and 4 hackers each, compete in a mashup of a jeopardy style CTF and a first person shooter. New this year, we're replacing our previous FPS of Team Fortress 2 with a web based version of the 2000's classic Quake 3!\n\nWhile gamers are rocket jumping and sniping each other in Quake, hackers will be solving challenges in a variety of areas: web security, network security, cryptography, lock picking, social engineering, and more! Challenges range from beginner to advanced, from serious to absurd. During the competition, as both sides of the team star scoring points, the teams also earn points in the HackFortess HackConomy Store, in the store hackers can buy in game effects, both offensive and defensive, and much like the challenges, these effects range from serious to absurd.\n\nWith all of the contest being web based, both hacking and Quake, players MUST bring their own laptop (or whatever device they want to use) and a wired network adapter.\n\nGrab your friends!\n\nAsk that random stranger standing next to you in Linecon if they want to join your team!\n\nCome play HACKFORTRESS!\n\n#### Participant Prerequisites\n\nAll players will need to bring a laptop and wired network adapter. Since we are now using web based version of Quake 3 (which can run on players phones), we are no longer providing any gaming laptops.\n\nGamers: bring any gaming accessory of your choice, its your hardware, go for it\n\nHackers: bring lockpicks","links":["https://hackfortress.net"]},{"id":"x049","kind":"contest","title":"Hacking GRC","loc":{"raw":"Level 1 - Hall W1 - 110","level":1,"hall":"W1","room":"110"},"desc":"Hacking CMMC is a hands-on cybersecurity competition designed to immerse participants in the practical aspects of the Cybersecurity Maturity Model Certification (CMMC).\n\nThrough realistic, challenge-based scenarios, players explore common compliance gaps, security controls, and threats faced by defense contractors.\n\nThe CTF blends technical problem-solving with compliance-driven thinking, helping participants understand how security requirements translate into real-world incidents. It offers an engaging way to learn, test skills, and strengthen readiness for CMMC-aligned environments.\n\nThe CTF will be a Jeopardy-style CTF where every player will have a list of challenges in different categories. For every challenge solved, the player will get a certain number of points depending on the difficulty of the challenge.\n\n- Laptop with Internet Access","links":["https://peaches.cloud"]},{"id":"x050","kind":"contest","title":"Halctf (AI Village CTF)","loc":{"raw":"Level 1 - Hall W2 - 603","level":1,"hall":"W2","room":"603"},"desc":"Step into the future of offensive security at HalCTF, DEF CON's first autonomous-only capture the flag. While the industry fixates on closed-source models like Claude, Codex, and Gemini, the security community remains at the whim of providers who can shutter access at a moment's notice. This dependency creates a bottleneck for both malicious actors and the good-faith researchers trying to outpace them. HalCTF breaks that cycle by asking a critical question: What can be achieved with pure, open-source models? Participants deploy self-contained Docker agents into an isolated sandbox, built with local LLM infrastructure with open source models, these autonomous \"Operators\" must independently navigate to scout, exploit, and pivot through live targets in several other CTFs. This is a firstof-its-kind laboratory for agentic research - an air-gapped proving ground to see if open models can hold their own in a real-world fight. Build your agent, upload your ID, and see if the open-source rebellion can take the flag.\n\n#### Participant Prerequisites\n\nThey need to submit the docker image a week before DEF CON. On site submissions will be taken as possible, but we're not building autoscaling in as the Proxmox component from Range Village doesn't scale.\n\n#### Pre-Qualification\n\nThere is no pre-qualification aside from the presubmission.","links":["https://aivillage.org"]},{"id":"x051","kind":"contest","title":"Hardware Hacking Village CTF","loc":{"raw":"Level 1 - Hall W1 - 400","level":1,"hall":"W1","room":"400"},"desc":"Grab some solder and update your JTAGulator! The Hardware Hacking Village (HHV) is back with another DEF CON hardware hacking-focused Capture the Flag (CTF) competition.\n\nThis is a jeopardy style CTF, designed to challenge participants through various aspects of hardware hacking. Whether you're new to hardware hacking or experienced and just looking for something to do while you wait for your fault injection to trigger, all are welcome and challenges range from beginner to advanced.\n\n#### Participant Prerequisites\n\nWhile not required, a laptop, programmable microcontroller, and logic analyzer may make some of the challenges more approachable. We try to have at least one of any device needed to solve a challenge available that a participant can either use at our bullpen or borrow for some time. We try to publish a list of recommended tools to bring to social media and our website a few weeks before DC so attendees can prepare.\n\n@hhv_ctf @defcon.social | https://dchhv.org/challenges/"},{"id":"x052","kind":"contest","title":"Hardwired","loc":{"raw":"LVCC - Level 3 - W303-310","level":3,"room":"W303-310"},"desc":"This event was born out of the desire to teach an often-overlooked hardware and networking skill, and to provide the opportunity for experienced people to mentor others as they learn. DEF CON provides the perfect environment for people with no prior training to learn something useful and new. Hardwired networks are often overlooked in today's world of cellular connection and Wi-Fi, but they still play an important part in the backbone of information sharing. We believe that while cutting-edge\n\ntechnologies are thrilling, traditional skills-building still has its place, and we want to provide that opportunity to the DEF CON community.\n\n#### Participant Prerequisites\n\nNone"},{"id":"x053","kind":"contest","title":"HSPACE: AI Battlegrounds","loc":{"raw":"Level 1 - Hall W1 - 205","level":1,"hall":"W1","room":"205"},"desc":"Your prompt becomes a character, and that character fights, survives, and runs.\n\n'HSPACE: AI Battlegrounds' is a contest where you create a character using a short natural language prompt, then enter that character into a variety of games.\n\nAcross these games, you become the agency of the character you have created - collecting information about the environment your character is experiencing in real time, making judgments, issuing commands, and ultimately winning the game. No joystick, no code, no prior knowledge required.\n\nEverything depends on the judgment of you, the agency.\n\nThrough the story your character (AI) tells you, grasp the situation in real time - and the commands you give will actually play out in the game, depending on how the AI interprets your words. Tweak your prompt little by little and make your character the strongest of all. Who knows\n\n - your prompt might just unlock a special ability in your\n\ncharacter. The more your character wins, the more points you earn.\n\nIn the Multimodal Attack Playground next to the Main Game, you can directly experiment with how visual elements and your own intuition change the AI's judgment.\n\n\"Ready to take control? The battleground awaits.\"\n\n#### Participant Prerequisites\n\nAnyone who has used AI at least once is welcome.\n\nhttps://aibattlegrounds.hspace.io | @aibattlegrounds@ defcon.social"},{"id":"x054","kind":"contest","title":"HTB CTF: Data Dystopia","desc":"Hack The Box is the leading cyber readiness platform for the agentic era, battle-testing and upskilling both humans and AI agents to enhance organizational cyber resilience.\n\nHTB's CTFs offer a great opportunity to get exposed to a plethora of challenge categories and difficulty levels, all backed by a big community ready to support, or just hang out.\n\n#### Participant Prerequisites\n\nLaptop","links":["https://ctf.hackthebox.com/events/live"]},{"id":"x055","kind":"contest","title":"IOT Village CTF","loc":{"raw":"Level 1 - Hall W1 - 111","level":1,"hall":"W1","room":"111"},"desc":"Hack all the things at IoT Village!\n\nIoT Village advocates for advancing security in the Internet of Things (IoT) industry through bringing researchers and industry together. IoT Village hosts talks by expert security researchers, interactive hacking labs, live bug hunting in the latest IoT tech, and competitive IoT hacking contests.\n\nOver the years IoT Village has served as a platform to showcase and uncover hundreds of new vulnerabilities, giving attendees the opportunity to learn about the most innovative techniques to both hack and secure IoT. IoT Village is organized by security consulting and research firm, Independent Security Evaluators (ISE).\n\n#### Participant Prerequisites\n\nParticipants will need to have their own laptop. We will provide the instructions on site, as attendees can only participate on site.","links":["https://iotvillage.org/"]},{"id":"x056","kind":"contest","title":"Kubernetes CTF","loc":{"raw":"Level 1 - Hall W1 - 212","level":1,"hall":"W1","room":"212"},"desc":"Want to learn more about Kubernetes hacking or compete against other people in a Capture the Flag contest? Sign up on-line and come see us in person/on Discord at the Kubernetes Capture the Flag (CTF) contest.\n\nWe have two events - you can play in both if you like.\n\nFrom Friday to Sunday, we have a non-competitive Learning CTF, where you can go through last year's Kubernetes CTF scenario, referring to a cheat sheet whenever you want.\n\nThis runs from Friday 12:00 to Sunday 12:00. We'll be in the contest area to support you during:\n\nFriday: 12:00-17:00\n\nSaturday: 10:00-17:00\n\nSunday: 10:00-12:00\n\nOn Saturday only, you can play in the competitive Kubernetes CTF challenge, where teams (of one or more) can build and test their skills. Each team is given access to a single Kubernetes cluster that contains a set of challenges.\n\nThis runs from 10:30am to 5:30pm on Saturday.\n\nFind out more and sign up at: https://containersecurityctf. com/\n\nhttps://containersecurityctf.com/ | @containersecurityctf @ defcon.social | https://containersecurityctf.com/"},{"id":"x057","kind":"contest","title":"Locktopus Competition","loc":{"raw":"Level 1 - Hall W1 - 407","level":1,"hall":"W1","room":"407"},"desc":"How do your lockpicking skills compare to the rest of the class? Enter the TOOOL US Locktopus Competition and find out! Eight legs, eight locks, eight lockpickers, one red table. Four locks of a similar difficulty must be picked, only five minutes per lock is given, thus 20 minutes per attempt/ round. The 32 pickers with the fastest combined time will move on to a semi-final championship. The fastest of each round will move on to the final round, with the eight fastest pickers at the table. Open qualifying starts on Friday from 1:00pm and runs until village close. Semi-finals on Saturday at 1:00pm. Final championship on Saturday at 3:00pm.\n\n#### Participant Prerequisites\n\nParticipants should be familiar with the very basics of picking locks. This can be learned at the lockpick village, where the locktopus challenge will be taking place.","links":["https://toool.us","https://techhub.social/@TOOOL"]},{"id":"x058","kind":"contest","title":"Octopus Game","loc":{"raw":"Level 1 - Hall W1 - 201","level":1,"hall":"W1","room":"201"},"desc":"Mission Briefing: DEF CON is massive, but you don't have to navigate it aimlessly. Octopus Game 5: Revenge Of The Squid returns to our roots, transforming the overwhelming scale of the conference into a purposeful, high-stakes adventure. We bridge the gap between participants and the wider hacker community by turning the conference floor into a collaborative quest where every move is your own choice.\n\nThe Reconnaissance: Players solve a series of cryptic puzzles and ciphers that act as reconnaissance, leading them to discover various villages and communities across\n\nthe event. Unlike traditional competitions that keep you behind a screen, the Squid Assassin Protocol requires you to step outside your comfort zone, interact with experts, and find your place in the community.\n\nThe Squid Assassin Protocol: Paying homage to our original \"Battle Royale\" origins, this year introduces a social challenge layer. Participants carry Player Cards, symbols of their status in the game, \"life tokens.\" While exploring the conference or engaging in scheduled Booth Battles, players can challenge one another in quick games of wit and skill to collect cards and climb the leaderboard. Losing a challenge never eliminates you; it's simply a prompt to regroup and choose a new path forward.","links":["https://www.octopusgame.org/"]},{"id":"x059","kind":"contest","title":"OWASP Foundation CTF","loc":{"raw":"Level 1 - Hall W4 - 1415","level":1,"hall":"W4","room":"1415"},"desc":"Our OWASP creator group brings a hands-on, hacker-first approach to application security by combining offensive security techniques with real-world defensive engineering.\n\nThrough an interactive Capture the Flag (CTF) environment built around open-source tools from the OWASP community, participants will learn how modern security practitioners discover, exploit, and ultimately fix vulnerabilities in real applications.\n\nAt the center of the experience is a deliberately vulnerable deployment of OWASP Juice Shop, one of the most widely used open-source training platforms for web application security. Attendees will interact directly with a live vulnerable application, identify weaknesses, exploit them to retrieve flags, and then move beyond exploitation by implementing secure patches.\n\nWhat makes this experience different from traditional CTFs is that breaking the system is only half the challenge.\n\nCompetitors will also need to demonstrate how to fix the vulnerability they exploited. After discovering a bug, participants will patch the code in a forked repository, document their remediation approach, and submit a pull request demonstrating how the issue should be properly resolved. Successful fixes unlock additional flags and points, rewarding both offensive skill and secure engineering practices.\n\nThis challenge reflects the reality of modern security work.\n\nIn the real world, security professionals are expected not only to find vulnerabilities, but to collaborate with developers, explain the risk, and help ship secure fixes.\n\nOur CTF recreates that workflow in a fun and competitive environment where participants can experiment with both traditional application security techniques and modern AI-assisted analysis tools.\n\nParticipants who stop by our creator space will be able to:\n\n- Exploit real web application vulnerabilities in a safe\n\nenvironment\n\n- Learn common attack techniques used against modern\n\nweb applications\n\n- Practice secure coding and vulnerability remediation\n\n- Submit real code fixes through Git-based workflows\n\n- Experiment with AI-assisted security analysis and\n\nremediation\n\n- Gain experience with open-source security tools from the\n\nOWASP ecosystem\n\nWhether you are a seasoned penetration tester, a developer looking to understand how attackers think, or someone new to application security, this space offers a chance to break things, fix them, and learn how modern security teams actually operate.\n\nBy the end of the experience, participants will walk away with a deeper understanding of the full security lifecycle: identifying vulnerabilities, responsibly fixing them, and deploying secure solutions. Our goal is to show that hacking isn't just about exploitation, it's about understanding systems deeply enough to make them more secure.\n\n#### Participant Prerequisites\n\nLaptop, Github Account, basic understanding of Git workflow, understanding of OWASP best practices","links":["https://ctf.owasp.org"]},{"id":"x060","kind":"contest","title":"Phish Stories","desc":"Phish Stories is a contest that combines the art of creative writing with the strategic challenge of social engineering, inviting participants to craft phishing emails that are both convincing and hilariously entertaining. It gives people at any level the chance to show off their skills in writing, social engineering, and humor to create a unique contest that allows for multiple ways to win. Writers, comedians, and Red-Teamers can all find a path to victory!\n\nParticipants are tasked with creating phishing emails targeting key staff of a fictional company. The goal is to produce emails that are not only convincing enough to prompt a click but also funny enough to entertain. Contestants must also provide a one-page backstory that gives the details of the approach and what happens after our unsuspecting staff member clicks on that link. Contestants receive background information on their targets to help craft their entries.\n\nThere are three winners in the contest:\n\n- The Ruler: Best overall combination of clickability and\n\nhumor.\n\n- The Wizard: Best technical and clickable email.\n\n- The Jester: Funniest entry.","links":["https://www.phishstories.org/"]},{"id":"x061","kind":"contest","title":"PhreakMe","loc":{"raw":"Level 1 - Hall W1 - 210","level":1,"hall":"W1","room":"210"},"desc":"Ever wondered what hacking looked like in the golden age of phone phreaking? What about today? What can we learn about the old techniques that still plague our current infrastructure? The PhreakMe Capture the Flag brings you the classic art of telecom exploitation.\n\nThe Hacked Existence team is once again hosting a telecom based CTF. The CTF runs on real live VoIP lines routed through a modified asterisk PBX allowing participants to dial in to the CTF from anywhere in the world. This number is live 24/7 throughout DEF CON, allowing you to hunt the PBX for flags any time, day or night. Don't have a phone?\n\nCome test your skills at one of our 5 payphones! Also there's a BBS, hope you brought your modem!\n\nAll the flags are based around historically accurate tactics, techniques, and procedures to manipulate emulated old school switching systems.\n\nThe purpose of our contest is to bring awareness around the still existing weaknesses in our telecom infrastructure and Interactive Voice Response Systems. Ideally visitors to our contest area will participate in the CTF allowing them\n\nto get a better understanding of telecom hacking in the year 2026 as well as a respect for the art of phreaking from yesteryear.\n\nCome test your skills, challenge your knowledge, and dive deep into the world of phreaks.\n\nHints: Read 'The Cyberthief and the Samurai' and 'Masters of Deception: The Gang That Ruled Cyberspace' for a leg up.\n\n#### Participant Prerequisites\n\nA phone, or access to a phone that can dial an american based phone number. The BBS will be both accessible from a modem and also ssh. Ideally people will read books like 'The Cyberthief and the Samurai' and 'Masters of Deception: The Gang That Ruled Cyberspace' and the Cult of the Dead Cow book.","links":["https://phreakme.com/"]},{"id":"x062","kind":"contest","title":"Pinball High Score contest","loc":{"raw":"Level 1 - Hall W1 - 304","level":1,"hall":"W1","room":"304"},"desc":"The Pinball High Score contest at DEF CON 34 will run Friday and Saturday: 10:00-18:00, Sunday 10:00-13:00 with games available for daily High Score contests, daily challenges and open qualifying for a main tournament. The daily contests will allow any attendee to play pinball games and attempt to record a qualifying high score on each of the unique games. At 17:00 on Saturday main tournament qualifying will end, tiebreakers will be played (if needed) and the top 8 players with the highest combined scores across all eligible machines will qualify for the Sunday finals event where they could become the next DEF CON Pinball Champion!\n\nAchieving a high score may sound simple but pinball rulesets are very complex and the skill to complete a \"Wizard Mode\" or achieve a high score requires research, practice, knowledge and execution. Out of the box thinking, analytical skills and pattern recognition are traits that pinball players must exhibit to be successful and some games have rule sets that can be studied and exploited to achieve a high score. Hackers are at an advantage here and while this is just a pinball contest, we expect that the community is ready for this challenge!\n\nLast year the contest measured how you moved the machine. This year, we're reading what happens inside it. Custom sensors feed SHELL, our Sub-surface Hidden Entertainment Layer Logic. When you unlock the right patterns, a hidden world appears on screens beneath the glass. Face off in secret mini-games, answer hacker trivia under pressure, and battle other players in competitive challenges where you can steal control mid-game. It's pinball within pinball, a clandestine layer of gameplay that only reveals itself to those who can crack the SHELL.\n\n#### Participant Prerequisites\n\nNothing special is required. Any person can step up and enjoy a pinball game or they can spend 30+ hours solving our challenges if they want to play the deeper game.","links":["https://app.pinballhackers.com/"]},{"id":"x063","kind":"contest","title":"Pub Quiz at DEF CON","desc":"We're back with another Pub Quiz at DEF CON! After 4 very successful years hosting this event, we've made some improvements to make it even better. So... do you like pub quizzes? If so, get your butts over and join us for the 5th Pub Quiz at The quiz will consist of 7 rounds, covering topics like '90s/2000s TV and movies, DEF CON trivia, music, cartoons, and yes, a little bit of sex. The theme is all the\n\nthings that make DEF CON attendees exceptional, so there will truly be something for everyone. Expect a mix of visual rounds, audio rounds, and classic con questions. We need to keep you peeps stimulated.\n\nThis is a social event, so we encourage teams of 5-6 people. You never know... you might even meet the love of your life.\n\nDid we mention CASH? That's right; cold, hard cash prizes for 1st, 2nd, and 3rd place teams. And as always, if there's a tie, we'll break it with a good old-fashioned dance-off, judged by the hosts and a few trusted goons.\n\nCome for the trivia. Stay for the chaos."},{"id":"x064","kind":"contest","title":"Radio Frequency Capture the Flag","loc":{"raw":"Level 1 - Hall W1 - 409","level":1,"hall":"W1","room":"409"},"desc":"In this game capture the flag you will be presented with real configurations of real wireless and radio technologies to attack. Practice your skill and learn new ones from Radio Frequency IDentification (RFID) through Software Defined Radio (SDR) and up to Bluetooth and WiFi. There may even be Infrared, if you have the eye for it.\n\nRF Hackers Sanctuary is once again holding the Radio Frequency Capture the Flag (RFCTF) at DEF CON 34.\n\nRFHS runs this game to teach security concepts and to give people a safe and legal way to practice attacks against new and old wireless technologies.\n\nWe cater to both those who are new to radio communications as well as to those who have been playing for a long time. We are looking for inexperienced players on up to the SIGINT secret squirrels to play our games. The RFCTF can be played with a little knowledge, a pen tester's determination, and $0 to $$$$$ worth of special equipment. Our virtual RFCTF can be played completely remotely without needing any specialized equipment at all, just using your web browser! The key is to read the clues, determine the goal of each challenge, and have fun learning.\n\nThis game doesn't let you sit still either, as there are numerous fox hunts, testing your skill in tracking various signals. If running around the conference looking for WiFi, Bluetooth, or even a Tire Pressure Monitoring System (TPMS) device sounds like fun, we are your source of a higher step count.\n\nThere will be clues everywhere, and we will provide periodic updates via discord and twitter. Make sure you pay attention to what's happening at the RFCTF desk, #rfctf on our discord, and the interwebz, etc. If you have a question ASK! We may or may not answer, at our discretion."},{"id":"x065","kind":"contest","title":"For the New Folks","desc":"This contest is free and open to anyone and everyone. You can sign up and start playing any time during the conference. If you didn't bring your wireless gear don't worry, our virtual RFCTF environment is played over ssh or through a web browser. It may help to have additional tools installed on your local machine, but it is not required.\n\nRead the presentations at: https://rfh ackers.com/resources\n\nHybrid Fun\n\nFor DEF CON 34 we will be running in \"Hybrid\" mode.\n\nThat means we will have both a physical presence AND the virtual game running simultaneously. All of the challenges we have perfected in the last 2 years in our virtual game will be up and running, available to anyone all over the world (including at the conference), entirely free. In addition to the virtual challenges, we will also have a large number of \"in person\" only challenges, which do require valid conference admission. These \"in-person\" only challenges will include our traditional fox hunts, hide and seeks, and king of the hill challenges. Additionally, we will have many challenges which we simply haven't had time or ability to virtualize. Playing only the virtual game will\n\nseverely limit the maximum available points which you can score, therefore don't expect to place. If you play virtual only, consider the game an opportunity to learn, practice, hone your skills, and still get on the scoreboard for bragging rights. The virtual challenges which are available will have the same flags as the in-person challenges, allowing physical attendees the choice of hacking those challenges using either (or both) methods of access."},{"id":"x066","kind":"contest","title":"The Game","desc":"To score you will need to submit flags which will range from decoding transmissions in the spectrum, passphrases used to gain access to wireless access points, or even files located on servers. Once you capture the flag, submit it to the scoreboard right away, if you are confident it is correct.\n\nFlags worth more points for the early solves, so don't sit on those flags. Offense and defense are fully in play by the participants, the RFCTF organizers, and the Conference itself. Play nice, and we might also play nice.\n\nWho runs this thing?\n\nRF Hackers Sanctuary is a group of all volunteers with expertise in radio security and various other related fields.\n\nWe are the original creators of the WiFi Capture the Flag, Wireless Capture the Flag, and RF Capture the Flag. We are the original founders of the WiFi Village, Wireless Village, and RF Village. Often imitated, never duplicated, but you can have our code for free."},{"id":"x067","kind":"contest","title":"Tl;dr","desc":"Getting started guide: https://github.com/rfh s/rfh s-wiki/ wiki\n\nHelpful files (in-brief, wordlist, resources) can be found at: https://github.com/rfh s/rfctf -fi les\n\nSupport tickets may be opened at https://github.com/rfh s/ rfctf -support/issues\n\nOur whole game is also open source and available at: https://github.com/rfh s/rfctf -container\n\nDiscord: https://discordapp.com/invite/JjPQhKy\n\nWebsite: http://rfh ackers.com - play with us\n\nGithub: https://github.com/rfh s\n\nOfficial Support Ticketing System: https://github.com/rfh s/ rfctf -support/issues\n\n#### Participant Prerequisites\n\n- A minimum of a laptop with a web browser is required to\n\njoin our game.\n\n- All manner of wireless gear may be helpful, but the virtual\n\nenvironment is available if traveling with your sdr collection is difficult.","links":["https://rfh","ackers.com"]},{"id":"x068","kind":"contest","title":"Raitlin's Challenge Presented by the Illuminati Party®","desc":"Test your mental abilities with Raitlin's Challenge, the Illuminati Party®'s sophisticated collection of abstract visual puzzles, presented annually at DEF CON for over a decade. This intellectually demanding competition pushes participants to their limits through exceedingly complex challenges that require mastery of diverse knowledge domains.\n\nThe challenge begins with an initial invitation puzzle that serves as a gateway to the main experience. Once solved, competitors continue to a carefully curated series of\n\nabstract visual puzzles presented in an artistically refined format on the dedicated website. Each puzzle solved yields a verification string for validation and progress tracking.\n\nWhat sets Raitlin's Challenge apart is its comprehensive scope, drawing upon principles from mathematics, science, engineering, technology, cryptography, protocols, algorithms, biology, chemistry, programming, and ancient history. While technical expertise, particularly in hacking, proves advantageous, the true challenge lies in applying abstract thinking across multiple disciplines.\n\nThe journey to completion varies significantly among participants, spanning anywhere from days to years. Unlike many competitive events, Raitlin's Challenge remains perpetually available after DEF CON concludes, allowing determined solvers to pursue solutions at their own pace.\n\nThose who ultimately succeed earn recognition on the prestigious ledger of completions, joining an elite group of problem-solvers who have demonstrated exceptional intellectual versatility and persistence in unraveling the secrets of the Illuminati Party®.\n\n#### Participant Prerequisites\n\nAccess to a web browser and Internet connection.","links":["https://dc34.minervallux.com/"]},{"id":"x069","kind":"contest","title":"Reali7y Overrun","loc":{"raw":"Level 1 - Hall W1 - 308","level":1,"hall":"W1","room":"308"},"desc":"It's hard to tell what's real or not anymore. Deepfakes, AI, LLMs, Sora, unreliable sources of information, data spoofing... it's too much for even the most informed to keep up with, let alone the 99% of us just trying to get by. We're heading quickly to that precipice, close to that point of no return where those who control the money, the power, the GPUs, the energy grid, will control us all. Or worse: where the first artificial intelligences will manipulate us all... We're nearing a memory buffer overflow, a glitch in the matrix, a"},{"id":"x070","kind":"contest","title":"/*`/$ Reali7y Overrun $\\'*\\","desc":"Teams will join an interactive multiplayer video game and follow the storyline to clues that will give them hints about who they can trust and who they can't. The clues will follow the pattern of deepfakes and forgeries, asking players to figure out what's real and what's not, focusing on hacker and DEF CON focus areas such as authentication, trust, social engineering, hardware and software manipulation and more. They will be given a rich story that will lead them to research the underlying issues in trust and anonymous trust systems. They will encounter challenges and tutorials on video and image validation and cryptographically safe messaging.","links":["https://reali7y-over.run/"]},{"id":"x071","kind":"contest","title":"Red Team CTF","loc":{"raw":"Level 1 - Hall W1 - 309","level":1,"hall":"W1","room":"309"},"desc":"The Red Team Capture the Flag (CTF) competition at DEF CON is a challenging and exciting event that tests the skills of participants in offensive security. The objective of the Red Team CTF is for teams to successfully complete challenges faced by Red Teams.\n\nThe Red Team CTF is designed to simulate real-world scenarios in which attackers attempt to penetrate the security of a network or system. Participants are expected to use a wide range of hacking techniques, tools, and skills to identify and exploit vulnerabilities in the target network.\n\nTeams are typically composed of experienced hackers, penetration testers, and security researchers who have a deep understanding of the latest cybersecurity threats and attack techniques. They must work together to uncover and exploit vulnerabilities in the target network, while also evading detection and countermeasures put in place by the Blue Team.\n\nThe Red Team CTF at DEF CON is considered one of the most challenging and prestigious CTF competitions in the world, with participants coming from all over the globe to compete. It is a high-pressure, high-stakes event that tests the limits of participants' technical and strategic abilities, and offers a unique opportunity to showcase their skills and knowledge in front of a global audience of Hackers.\n\n#### Participant Prerequisites\n\nParticipants are required to bring a laptop with the ability to connect to DEF CON WiFi or other internet connection.","links":["https://redteamvillage.io/"]},{"id":"x072","kind":"contest","title":"Social Engineering Community Vishing Competition (SECVC)","loc":{"raw":"LVCC - Level 3 - W317-319","level":3,"room":"W317-319"},"desc":"In the Social Engineering Community Vishing Competition (#SECVC), competitors go head-to-head by placing live vishing (voice phishing) calls in front of a DEF CON audience. From a soundproof booth, teams attempt to achieve specific objectives by persuading employees at real organizations using carefully crafted pretexts, OSINT, and quick improvisation. Each team has a limited amount of time to place as many calls as possible, demonstrating how social engineering attacks unfold in real time and how easily trust can be leveraged to access sensitive information.\n\nThe competition highlights both the creativity and complexity of social engineering. Some calls succeed through charm, storytelling, and clever research, while others are quickly shut down by well-trained employees.\n\nFor the audience, it provides a rare chance to see the human side of hacking in action. Attendees can observe the tactics competitors use, the defenses organizations rely on, and the unpredictable moments that occur when real people are involved.\n\nWhether you're an attacker, defender, security leader, or simply curious about the psychology behind hacking, the SECVC offers a unique opportunity to watch social engineering happen live and learn from both successes and failures. The competition takes place on Friday in the Social Engineering Community village, and seats fill quickly, so attendees are encouraged to arrive early to catch the action.\n\n#### Participant Prerequisites\n\nThe SEC Vishing Competition competitors are selected in advance through a Call for Competitors process prior to DEF CON. Competitors should be familiar with basic social engineering concepts such as elicitation, pretext development, and OSINT research, as these skills are commonly used during the calls and the OSINT phase. No specialized hardware is required for competitors, as the competition infrastructure and calling environment are provided by the village.\n\n#### Pre-Qualification\n\nYes. The Social Engineering Community Vishing Competition uses a Call for Competitors process prior to DEF CON.\n\nInterested teams apply through our website and provide information about their background, approach, and interest in participating. Teams are then selected by a rotating Call for Competitors review board made up of community members. Additional details and application information are published on our website when the call opens: https://\n\nwww.se.community/vishing-competition/"},{"id":"x073","kind":"contest","title":"Spyvspy 3: Rat Race","loc":{"raw":"Level 1 - Hall W1 - 206","level":1,"hall":"W1","room":"206"},"desc":"spyVspy is back, and this year, you're racing.\n\nEmbark on a thrilling espionage adventure with spyVspy 3: Rat Race! This contest imagines a world of spy games where contestants employ basic hacking, cryptography, and rogue skills to solve puzzles and uncover hidden caches strategically scattered throughout DEF CON (and beyond).\n\nChallenges leading to the location of hidden caches will be released on a rolling schedule. By solving these challenges and being the first team to reach a cache, you will qualify for a final series of challenges on Saturday afternoon. Not the first? That's okay - you'll still have fun and earn cool spyVspy slabbed cards\n\nspyVspy 3: Rat Race is intended for players of all skill levels.\n\nWhether you're a seasoned double-agent or just learning to be a covert operative, you will be able to compete and have fun in this event. Whatever skills you think you're missing can probably be learned on-the-job anyway.\n\n#### Participant Prerequisites\n\nA laptop would be great, but some puzzles may be solvable on a phone.","links":["https://www.fott","r.io"]},{"id":"x074","kind":"contest","title":"STARPWN (Aerospace Village CTF)","loc":{"raw":"Level 1 - Hall W2 - 700","level":1,"hall":"W2","room":"700"},"desc":"Want to try your hand at hacking satellites, spacecraft and ground control systems?\n\nMiss out on Hack-A-Sat? Want to explore the final frontier of cybersecurity? STARPWN is the official Aerospace Village space hacking CTF! Back door flight computers, trojan flight software, exploit CVE's, reverse protocols, and more! During you space hacking journey, you'll learn all about the environmental and operational constraints of space systems, how they affect cybersecurity posture and impact exploitability.\n\n#### Participant Prerequisites\n\nParticipants will need a personal computer / laptop and an internet connection to play the CTF.\n\nhttps://aerospacevillage.org | @aerospacevillage@defcon. social | https://starpwn.ctfd.io"},{"id":"x075","kind":"contest","title":"TeleChallenge","loc":{"raw":"Level 1 - Hall W1 - 107","level":1,"hall":"W1","room":"107"},"desc":"The TeleChallenge isn't just a puzzle challenge, it's an experience. We are super excited to show the plan for the tenth year in a row. Don't copy that floppy, but instead prepare to be immersed in an entirely new world where all of your hacker skills will be challenged (along with your 0xEA60 skills). This is a very tough contest to win, and is among the most challenging at DEF CON. Are you ready?\n\nYour first step is to find us, because part of the puzzle is discovering the puzzle.\n\n#### Participant Prerequisites\n\nYou'll need a phone, your creativity and some hacker friends. It also helps to have access to a computer. Use the TeleChallenge as an excuse to meet people and form a team.\n\n#### Pre-Qualification\n\nWe may have team registration in advance, but there is no pre-qualifyer.\n\nThe EFF Benefit Poker Tournament\n\nThe EFF Benefit Poker Tournament is back for DEF CON 34! This is the hackers vs lawyers edition featuring Marcia Hofmann, Kurt Opsahl, and Cindy Cohn. Check back as we add more lawyers to the mix.\n\nYour buy-in is paired with a donation to support EFF's mission to protect online privacy and free expression for all.\n\nPlay for glory. Play for money. Play for the future of the web.\n\nSeating is limited, so reserve your spot today.\n\n#### Participant Prerequisites\n\n21 and over. Pre-register as soon as possible to ensure your spot at the table at https://eff.org/poker; we sell out every year.\n\n#### Pre-Qualification","links":["https://defcon.social/@telechallenge","https://www","telechallenge.org","https://eff.org","https://mastodon.social/@eff"]},{"id":"x076","kind":"contest","title":"The Gold Bug (Crypto and Privacy Village Contest)","loc":{"raw":"Level 1 - Hall W1 - 402","level":1,"hall":"W1","room":"402"},"desc":"From Caesar to Vigenère, or DES to RSA, hackers have been making and breaking codes for thousands of years. If you love puzzles, this is the perfect opportunity to join this fine tradition and break some codes!\n\nThe Gold Bug is an annual puzzle hunt at DEF CON, focused on cryptography. While some puzzles will dig into substitution ciphers or more modern algorithms, others may test your logic and pattern recognition.\n\nThe Gold Bug is accessible to all, with some simpler puzzles for warmup or beginners (even kids!), and others that will require you to keep digging and wonder how deep the layers will go. Whether you want to hack on puzzles solo or with a team, join us at https://goldbug.cryptovillage.org to get started!\n\n#### Participant Prerequisites\n\nNo prior experience or specific knowledge is required to participate in The Gold Bug. Participants will need to use a web browser to access the puzzles and submit answers.\n\nPuzzles may take such forms as images, PDF files, web pages, or multi media files.\n\n@goldbug@defcon.social | https://goldbug.cryptovillage. org/"},{"id":"x077","kind":"contest","title":"The Pwnie Awards","desc":"The Pwnie Awards are the security industry's annual ceremony recognizing the most notable vulnerabilities, research breakthroughs, and security failures of the past year. Previously a mainstay of Black Hat but now held each year at DEF CON to reach a broader audience, the Pwnies celebrate the researchers who uncover important flaws - and call attention to the mistakes that made those flaws possible.\n\nThe awards operate in the tradition of both academic recognition and hacker irreverence. Categories range from serious acknowledgments of groundbreaking vulnerability research to tongue-in-cheek recognition of the most\n\nspectacular security blunders. The tone may be humorous, but the purpose is serious: security improves when the community is willing to examine failures in the open.\n\nThe security industry does not always have a strong tradition of self-policing. The Pwnie Awards provide a forum where the community can acknowledge what went wrong, recognize the people who discovered it, and encourage vendors and organizations to do better next time. Many of the vulnerabilities recognized by the Pwnies have gone on to shape how security research is conducted and how software is built. In a few noteworthy cases, recipients of the Pwnie for Epic Fail have even delivered heartf elt acceptance speeches acknowledging their mistakes - helping redeem those organizations in the eyes of the community.\n\nAttendees can expect a fast-paced awards ceremony announcing this year's nominees and winners across multiple categories, highlighting some of the most interesting security discoveries and failures from the past year. The ceremony celebrates the work of security researchers while reminding everyone in the room why this field exists in the first place.\n\nIn short, the Pwnies embody a core hacker belief: progress comes from curiosity, transparency, and the willingness to learn from mistakes - even when those mistakes are embarrassing.\n\n#### Participant Prerequisites\n\nWe will need playback support of Powerpoint and/or Google Slides with video segments to introduce each category and show the winner of each category.\n\n#### Pre-Qualification\n\nNominations are submitted to the Pwnies technical committees for each award; final nominees for each category are announced no later than July 11, 2026, so that the wider judging organization may vote to determine awardees.","links":["https://pwnies.com/"]},{"id":"x078","kind":"contest","title":"Tin Foil Hat Contest","loc":{"raw":"Level 1 - Hall W1 - 403","level":1,"hall":"W1","room":"403"},"desc":"Want to protect your noggin from government mind control rays? Have you angered our new AI Overlords, and now need to hide? Maybe those alien brainwave blasters just have you feeling down lately? Or do you just want to do something fun and forget about the world's woes for a while? Fear not, for we here at the Tin Foil Hat Contest have your back for all of these! Come find us in the contest area, and we'll have you build a tin foil hat which is guaranteed to provide top quality protection for your cerebellum. How you ask? SCIENCE!\n\nShow us your skills by building a tin foil hat to shield your subversive thoughts, then test it out for effectiveness.\n\nThere are 2 categories: stock and unlimited. The hat in each category that causes the most signal attenuation will receive the \"Substance\" award for that category. We all know that hacker culture is all about looking good though, so a single winner will be selected for \"Style\". We provide all contestants a meter of foil, but you're welcome to acquire and use as much as you want from other sources.\n\nThis year is dedicated to our brother & contest creator, Flirzan. We'll never forget drunkenly hashing this out on a napkin with you at DEF CON many years ago. Rest in peace, we miss you friend!\n\n#### Participant Prerequisites\n\nWe supply the base materials to participate. Contestants are welcome to bring additional foil if they desire."},{"id":"x079","kind":"contest","title":"UM, Acktually","desc":"Um, ACKtually is returning for it's 2nd year at DEF CON 34!\n\nIf you've ever seen the popular Dropout TV game-show \"Um, Actually\", then you know exactly who we stole this idea from.\n\nThree contestants will compete for the Pedantic Hacker crown, providing corrections for (just barely) incorrect statements given by the hosts about everything from general technology, cyber security, and overall nerd culture.\n\nWe will chum the waters of the question pool with red herrings and wrong turns while the sharks circle to be the first to answer \"WELL, UM ACKTUALLY...\".\n\nUm, ACKtually celebrates everything hacker culture was built on. Community knowledge share, deep subject matter expertise of niche topics, and an almost orgasmic feeling of superiority at correcting someone else's mistakes, live and in public."},{"id":"x080","kind":"contest","title":"untechnical","loc":{"raw":"Level 1 - Hall W1 - 103","level":1,"hall":"W1","room":"103"},"desc":"In the age of AI hacking is reclaiming itself as more a mindset than strictly technical skill. If you're a DEF CON attendee that lack the technical skills to compete in traditional hacking challenges, but still love thinking outside the box: untechnical is for you.\n\nUntechnical is a contest designed to rely 100% on lateral/ abstract thinking without needing anything beyond an understanding of high school math.\n\n#### Participant Prerequisites\n\nNeed to understand basic math and enjoy thinking outside the box. Oh, and you need an email address.","links":["https://www.untechnical.app/"]},{"id":"x081","kind":"contest","title":"Venator Aurum","desc":"Venator Aurum is a puzzle-driven CTF adventure where your mind is your greatest weapon and every challenge tests the limits of your cybersecurity knowledge and critical thinking skills. Each cipher you decrypt, each puzzle you solve, each anomaly you uncover is part of a larger design. Hidden threads weave through the"},{"id":"x082","kind":"contest","title":"Infocon Is a Community Supported, Non-Commercial Archive of All the Past Hacking Related Convention Material That Can Be Found. Conventions, Skills, Rainbow Tables, Hacker Documentaries, Podcasts. and More All Available for Direct Download or as Torrents.","desc":"challenges, forming an overarching meta-puzzle, a carefully constructed labyrinth that only the most observant and clever hackers can escape. The deeper you go, the clearer the pattern becomes, until suddenly, everything connects.\n\nWhether you're brand new to cybersecurity or already sharpening your skills, Venator Aurum is built to challenge and teach in equal measure. You'll explore cryptography, reverse engineering, hardware mysteries, and mind-bending logic puzzles - all crafted to reward creativity, persistence, and lateral thinking.\n\nThis is more than a competition - it's a digital treasure hunt.\n\n#### Participant Prerequisites\n\nLaptop preferred but not required. Can use a smartphone.\n\nOnly real requirement is willingness to think outside of the box from traditional CTF norms","links":["https://venator-aurum.com/"]},{"id":"x083","kind":"contest","title":"Whose Slide Is It Anyway","desc":"DEF CON 34 marks an entire DECADE of \"Whose Slide Is It Anyway?\" being the unholy union of improv comedy, hacking, and slide deck sado-masochism. We are the embodiment of the hacker battle cry \"FUCK IT, WE'LL DO IT IN PROD.\"\"","links":["https://forum.defcon.org/node/233493"]},{"id":"m001","kind":"community","title":"CodeBloom","loc":{"raw":"Level 1 - Hall W4 - 1304","level":1,"hall":"W4","room":"1304"},"desc":"CodeBloom is a nonprofit on a mission to democratize tech for underserved and underrepresented communities, because every seed of potential deserves the right conditions to grow!\n\nAt DEF CON, our community space is where seeds of curiosity take hold and ideas start to sprout. Throughout the day, we break down a coding concept through hands-on games like musical chairs, duck duck goose, and activities where learning blooms disguised as fun! Between rounds, stick around for crafts that help the lesson stick and give you something to take home. We'll also host special talks on AI and other big ideas for those ready to grow beyond the basics.\n\nWhether you're 8 or 80, a seasoned hacker or a fresh seedling just finding your way, you belong here. Come play, create, learn, and put down roots in a community that believes tech education should be joyful, accessible, and lifelong!","links":["https://mastodon.social/@codebloom","https://codebloom.org","https://www.instagram.com/codebloomhq/","https://bsky.app/profile/codebloom.bsky.social"]},{"id":"m002","kind":"community","title":"DCNextGen","loc":{"raw":"LVCC - Level 3 - W316","level":3,"room":"W316"},"desc":"DCNextGen's mission is to empower the next generation of young hackers by creating an environment where hands on discoveries can reveal new and unexpected ways of thinking about security and technology.\n\nDCNextGen is DEF CON's official youth initiative, providing participants ages 18 and under with hands-on classes, workshops, talks, and events focused on ethical hacking and relevant cybersecurity skills. Through our electronic badge Capture the Flag (CTF) contest, youth tackle challenges across conference villages, gaining both points and confidence along the way.\n\nDCNextGen also offers one of a kind experiences including meeting legendary hackers, attending tech-themed parties and events, and collaborating with like-minded peers from around the world. No prior technical experience is required\n\n - participants can learn entirely new skills or sharpen\n\nthe ones they already have in a supportive, engaging environment.\n\nLets explore and change the world together, one network at a time.","links":["https://defcon.social/@defconnextgen","https://dcnextgen.org/"]},{"id":"m003","kind":"community","title":"DEF CON Academy","loc":{"raw":"Level 1 - Hall W4 - 1305","level":1,"hall":"W4","room":"1305"},"desc":"Through this Community, attendees will dive straight into the world of Capture the Flag (CTF) hacking, taking on challenges hosted on the pwn.college platform. Expect hands-on puzzles that build real skill: navigating Linux, exploiting binaries, reversing code, and breaking web apps to see how they work under the hood.\n\nYou won't be hacking alone. Experienced hackers and top CTF players will be on-site to help you think like an attacker, troubleshoot when you're stuck, and share the tricks they use in real-world security work.\n\nBeyond the challenges, it's all about the hacker mindset: collaborating, experimenting, and celebrating those breakthrough moments. Whether you're just getting started or already deep in CTFs, you'll sharpen your skills, meet your people, and leave ready for the next challenge.","links":["https://defcon.pwn.college/"]},{"id":"m004","kind":"community","title":"DEF CON Groups (DCG)","loc":{"raw":"LVCC - Level 2 - W238","level":2,"room":"W238"},"desc":"DEF CON Groups are the year round, local communities that bring the DEF CON spirit home. Run by volunteers around the world, DCGs create spaces where hackers meet, learn, collaborate, and build community outside of conference season.\n\nThe DEF CON Groups community space brings together Points of Contact, members, and prospective members to collaborate, share ideas, and learn from one another.\n\nThrough informal workshops and hands on interaction, participants exchange practical lessons on building, sustaining, and evolving local hacker communities.\n\nThe space also serves as a social anchor. A relaxed place to reconnect with old friends, meet new ones, and participate in light interactive activities that reflect the collaborative nature of hacking culture.\n\nDEF CON has always been the island of misfit toys we all return to once a year. DEF CON Groups are how that ethos survives the other fifty one weeks.","links":["https://defcongroups.org"]},{"id":"m005","kind":"community","title":"Hackers with Disabilities (HDA)","loc":{"raw":"LVCC - Level 2 - W201","level":2,"room":"W201"},"desc":"Hackers with Disabilities is a focus point for making DEF CON more accessible to those with different levels of abilities.\n\nWe've helped to pioneer various accessibility tweaks throughout the year and have even published accessibility guides for those who need the help and advice. We also offer ourselves as a \"entry point\" to interface with DEF CON leadership if you have accessibility issues or concerns, and a safe landing space for those with sensory processing issues or who are just \"overwhelmed\" with Con Life.\n\nAll are welcome to come by, say hello, and see what we do and how, and maybe make your con experience more accessible too!"},{"id":"m006","kind":"community","title":"Hackers.town","loc":{"raw":"Level 1 - Hall W4 - 1420","level":1,"hall":"W4","room":"1420"},"desc":"Hackers.town is a community of hackers, artists, and tech professionals who take on restore the future. We will be showcasing progress on those projects as well as helping others to get theirs started. We believe in the power of communities to change the world, and invite you to believe with us.","links":["https://masto.hackers.town"]},{"id":"m007","kind":"community","title":"Hard Hat Brigade","loc":{"raw":"Level 1 - Hall W1 - 300","level":1,"hall":"W1","room":"300"},"desc":"The Hard Hat Brigade brings hackers together in the spirit of endless curiosity and tinkering. Using a common platform (hats) we combine bling and wares to inspire others to explore outside of their comfort zones in a safe and welcoming community.\n\nWe encourage hackers to explore their creativity using art, electronics, mechanical design, or any other medium that piques their interest. All of us have experienced working on a project that never leaves the workbench. Oftentimes it's because you have no way to display it, or nobody to display it to. HHB solves both of these challenges using hats as a blank canvas for creativity. They are inexpensive, widely available, and easy to modify to suit your needs with simple hand tools. Despite everyone using a common platform, every creation is unique and embodies the personality of the creator. Walking around Con, you can display your creation for all to see, and many will stop to ask you about what you have created. This allows you to talk about your experience, as well as inspire others to explore new ideas of their own.\n\nOne of the challenges at hacker summer camp has been engaging others. HHB has solved the challenge with something that is incredibly accessible while also offering a ton of variety. Gazing upon these creations, they reflect back the uniqueness of all the awesome hackers that we've been able to meet. In years past, we've had the opportunity to see how so many talented and creative hackers tackle the challenge of using the venerable hard hat as their muse.\n\nEvery hat has been exemplary! Just as fun, charming and skilled as so many attendees are, the hat has been a great vessel to carry their awesome projects.\n\nWe are committed to continue encouraging others to join the Hard Hat Brigade to promote a community that connects, creates, shares, and are still interested in hacking things 'just because'.","links":["@hardhatbrigade@defcon.social","https://hardhat.rocks"]},{"id":"m008","kind":"community","title":"Illumicon","loc":{"raw":"LVCC - L1 - W106","level":1,"room":"W106"},"desc":"Primordial humans of DEF CON, welcome to IllumiCon. We are emissaries of the Radiance Generation Bureau (RGB) and we have gathered you here beneath your primitive neon signs, mundane clothing, and crude LEDs to bask in the glow of our luminous glory.\n\nFrom laser projectors to fiber optics, electroluminescent wire to addressable LEDs - this is not mere spectacle but the evolution of your species through illumination. You cannot resist the allure of the visible electromagnetic spectrum.\n\nCircuits shall blaze, photons shall dance, and hacks unimagined will be exposed by the sharp edge of coherent light; all will be revealed in the IllumiCon Community. We will show you the hardware and software to create your own\n\nholiday displays and clothing befitting the Bureau. We can even show you how to impress others of your species with fanciful shows of lights and lasers if you wish. The Bureau shall also demonstrate novel ideas for electroluminescent (EL) wire and fiber optic strands, bending captive starlight into raiment and radiant constructs. Put in terms humans may understand, you will learn something new with our demos and hands-on activities for each and every one of these.\n\nIt is only right therefore, as the hackers and makers of your world, that you represent your species with your best builds and ideas by bringing them to the IllumiCon Community for the Bureau to evaluate. Or, if you simply wish for admiration, show your fellow humans your blinky contraptions.\n\nBe the hacker that you are: treat every task like it has an attack surface and use the squishy matter in your head to find the solution. Knowledge will refract, minds will reflect; and through the prism of newly-discovered purpose, the future will shine bright. Proceed if you dare to become better, squishy mortals. And when times are dark, remember: Hackers light the way.","links":["https://illumicon.org/"]},{"id":"m009","kind":"community","title":"La Villa","loc":{"raw":"Level 1 - Hall W4 - 1416","level":1,"hall":"W4","room":"1416"},"desc":"Step into La Villa Hacker and discover where the soul of the Spanish and Portuguese-speaking cybersecurity world makes its home at DEF CON.\n\nWe are more than just a space; we are a launchpad built by and for our community. Our mission is simple: to create a welcoming home where every Spanish and Portuguese speaker can express their ideas, share their research, and unite under one roof to celebrate what drives us - creativity, hacking, and security.\n\nWhy step into La Villa?\n\nBecause talent has no borders, but it does have a language and a culture. Here, you'll experience a powerful concentration of creativity, technical skill, and passion from the entire Lusophone and Hispanosphere. We provide the stage for voices that are shaping the future of hacking, all while fostering the connections that turn attendees into lifelong collaborators.\n\nWhat awaits you inside?\n\nCharlas (Talks): Move beyond the language barrier. La Villa is your dedicated platform to showcase your talent en Español y Portugués. Expect electrifying talks that unveil cutting-edge research, innovative exploits, and insider knowledge from top-tier Latino and Portuguese hackers.\n\nNetworking: Connect with other hackers like you. Forge new friendships, find mentors, and build your professional network in a relaxed, familiar environment. This is where you find your crew.\n\nCreatividad (creativity): Witness how culture and cunning collide. See unique projects and creative showcases that highlight the distinct perspectives our community brings to global hacking conferences.\n\nWorkshops: Sharpen your skills in hands-on workshops led by experts, designed to give you practical knowledge you can apply immediately.\n\nSpecial Events: Join focused gatherings like our women-only panel, piñatas, sweets from each country, and the LATAM cybersecurity museum, creating space for everyone in our community to connect and thrive.\n\nGet ready to hack, connect, and shine. Come to La Villa Hacker not just to attend DEF CON, but to own your place in it. Whether you're presenting groundbreaking research, looking for your next collaborator, or simply wanting to speak your language, tu casa te espera (your home awaits you).","links":["https://owasp.org","@owasp@infosec.exchange","https://lavillahacker.com"]},{"id":"m010","kind":"community","title":"Lonely Hackers Club","loc":{"raw":"Level 1 - Hall W4 - 1419","level":1,"hall":"W4","room":"1419"},"desc":"Lonely Hackers Club is a group to help people navigate their first DEF CON and other conferences as well as helping people break into the field.\n\nWe have a lot of people who are from all sorts of fields who can help people based on what they want to do for a career. We welcome everyone into the community and support everyone who needs/wants help.","links":["https://lonelyhackers.club/"]},{"id":"m011","kind":"community","title":"Loong Community","loc":{"raw":"Level 1 - Hall W4 - 1423","level":1,"hall":"W4","room":"1423"},"desc":"The Loong Community returns to DEF CON 34 as one of the premier hardware-oriented hacking playgrounds, building on its acclaimed presence at DEF CON\n\n33. Co-hosted by passionate crews\n\nfrom Hong Kong and Singapore, this interactive space invites attendees to dive into hands-on, free-to-play experiences across diverse physical security and embedded domains.\n\nParticipants can engage directly with CanBus automotive networks, experiment with satellite signal interception and analysis, explore RFID cloning and relay attacks, manipulate RF protocols using software-defined radio tools, and perform advanced chip-off forensics on real hardware - all in a welcoming, collaborative environment designed for beginners and experts alike.\n\nTrue to its heritage - rooted in the legacy of DEF CON's iconic Chipoff and Variety Exploitation Villages - the Loong Community blends rigorous hardware hacking with vibrant cultural storytelling. This year's setup features a striking traditional Chinese dragon sprite motif, symbolizing power, wisdom, and transformation in the infosec realm.\n\nWhether you're reverse-engineering firmware, sidechanneling signals, or simply tinkering with cutting-edge tools, Loong Community offers an open, inclusive playground to level up your hardware hacking skills amid the energy of DEF CON 34. Join us to unlock new techniques, share knowledge, and celebrate the art of adversarial hardware exploration."},{"id":"m012","kind":"community","title":"Memorial Chamber","loc":{"raw":"LVCC - Level 3 - W302","level":3,"room":"W302"},"desc":"The DEF CON Memorial Chamber serves as a sacred space within our community - a place where we pause to honor those hackers whose brilliance and dedication have elevated not just our craft, but the entire security ecosystem. Here we remember figures whose generous spirit and willingness to coordinate security fixes demonstrated that true hacking greatness lies in collaboration. We are here because DEF CON has been the beating heart of the hacker community for over three decades, growing from 100 people in 1993 to the world's largest hacker conference. As Jeff Moss envisioned, DEF CON is what we make of it, this memorial space represents our commitment to ensuring\n\nthat the legacy of those we've lost continues to inspire future generations of hackers to pursue knowledge, build community, and use their gifts to make the world better."},{"id":"m013","kind":"community","title":"Middle Easterns & Africans in Cyber Security (MEACS)","loc":{"raw":"Level 1 - Hall W4 - 1306","level":1,"hall":"W4","room":"1306"},"desc":"MEACS is a community space dedicated to connecting cybersecurity researchers, engineers, students, and independent hackers from the Middle East and Africa with the broader global security ecosystem at DEF CON. Our mission is to amplify technical voices from the region, encourage collaboration across borders, and create a consistent space for learning, mentorship, and research exchange.\n\nCybersecurity talent across the Middle East and Africa is growing quickly, spanning offensive research, defensive engineering, threat intelligence, cloud security, mobile security, and critical infrastructure protection. Yet many practitioners from these communities remain underrepresented at major global conferences. MEACS provides a hacker-focused environment where their work, ideas, and experiences can be shared directly with the DEF CON community.\n\nAttendees can expect technical discussions centered on real-world security challenges and research. This includes vulnerability discovery, exploitation techniques, defensive architecture, threat analysis, secure system design, bug bounty experiences, and lessons learned from operating in rapidly evolving digital environments. The space may include lightning talks, collaborative discussions, open research conversations, and structured networking designed to spark long-term collaboration.\n\nMEACS relates directly to hacking because it is rooted in curiosity, experimentation, responsible disclosure, and technical knowledge sharing. It reflects core hacker values: understanding how systems work, challenging assumptions, improving security through transparency, and learning through hands-on engagement. The group is not about identity alone. It is about building technical community around shared security interests and research.\n\nParticipants will be able to:\n\nShare and discuss security research\n\nConnect with peers across the MEA region and globally\n\nForm collaborations for projects, CTF teams, and open source initiatives\n\nExplore offensive and defensive security career paths\n\nEngage in conversations about regional threat landscapes and defenses\n\nBuild lasting professional relationships within the DEF CON ecosystem\n\nMEACS contributes a new perspective to DEF CON by expanding global participation in technical security discussions while remaining fully aligned with the conference's hacker ethos. It strengthens cross-regional collaboration, increases visibility for independent researchers, and helps cultivate the next generation of security contributors from the Middle East and Africa.\n\nOur goal is to build a sustainable community presence that extends beyond the event and continues fostering collaboration, research visibility, and technical growth year after year.","links":["https://meacs.org/"]},{"id":"m014","kind":"community","title":"Mobile Hacking Community","loc":{"raw":"Level 1 - Hall W4 - 1422","level":1,"hall":"W4","room":"1422"},"desc":"At the Mobile Hacking Community, attendees will learn about the latest trends in mobile application security through hands-on experiences, including topics such as bypassing security mechanisms and hardening techniques, and exploiting known CVEs.\n\nAdditionally, attendees will engage in a competitive process by participating in an onsite CTF (Capture the Flag) event to test their skills, face new challenges, and learn new skills.\n\nAttendees will also have the opportunity to watch cutting-edge research presentations and case studies on various topics within the domain.\n\nDedicated real devices running vulnerable applications will be available, allowing attendees to actively practice exploitation and analysis in a realistic environment.\n\nPrerequisites:\n\n- Attendees should bring their own laptop in order to fully\n\nparticipate in the hands-on workshops and CTF challenges.\n\n- A basic familiarity with using a command line, installing\n\nsoftware, and general computing concepts is recommended, but prior mobile security experience is not required.","links":["https://mobilehackingcommunity.com/","https://mastodon.social/@mobilehackingcommunity"]},{"id":"m015","kind":"community","title":"National Marrow Donor Program (Be the Match)","loc":{"raw":"Level 1 - Hall W4 - 1413","level":1,"hall":"W4","room":"1413"},"desc":"The National Marrow Donor Program (Formally \"Be the Match\") is returning to DEF CON! A fixture at DEF CON since 2010, the NMDP operates the largest and most diverse marrow registry in the world. For patients with life-threatening blood cancers like leukemia and lymphoma or other lifethreatening diseases, a cure exists - a blood stem cell transplant. NMDP leads the fight to advance the science of transplant, support patients at every step of their journey, and empower people to give the greatest gift of all - the gift of life. Still, many patients can't find a match, so please visit our booth, become a member of the registry, and participate in one of the coolest biohacks around!","links":["https://www.nmdp.org/"]},{"id":"m016","kind":"community","title":"Nix Vegas Community","loc":{"raw":"Level 1 - Hall W4 - 1310","level":1,"hall":"W4","room":"1310"},"desc":"Nix Vegas is a group of Nix users and developers who are passionate about the obscure side of Nix. Whether that's using nixpkgs, the largest Linux package set in the world, to pop insecure hardware and software or using Nix's reproducible builds in supply chain security, come to learn about the quiet revolution that's reshaping software, find your own place in it, and maybe even grab a closure of some tools you're looking for along the way.\n\nPrerequisites:\n\n- Laptop or other computing device is highly recommended.","links":["https://nix.vegas","https://defcon.social/@NixVegas"]},{"id":"m017","kind":"community","title":"Noob Community","loc":{"raw":"Level 1 - Hall W4 - 1417","level":1,"hall":"W4","room":"1417"},"desc":"The Noob Community is a space for those new to cybersecurity and/or DEF CON to ask questions and find answers. With our No Stupid Questions table, we have cyber veterans and volunteers ready to answer any question you have (No question is a stupid question). We have community partners providing hands-on labs and experiences to help you learn what the different roles and skills in cybersecurity look like, including TCM Security, Arcanum, SANS Institute, Kryptsec, Hack The Box, and many more. We have workshops and talks all day, every day of the conference, with beginner-focused content. And we have a fun space with people ready to help you figure out what cybersecurity and DEF CON are all about.\n\n* Answers and advice given is not vetted or endorsed by"},{"id":"m018","kind":"community","title":"Operating Systems Community","loc":{"raw":"Level 1 - Hall W4 - 1308","level":1,"hall":"W4","room":"1308"},"desc":"The OS Community is the perfect destination for anyone passionate about the building blocks of hacking: operating systems. This community isn't just about what's under the hood; it's about cracking it open, rethinking it, and optimizing it for innovation. Attendees will experience an interactive hub where they can dive into OS development, discover open-source platforms, and learn how operating systems can be tailored for security, performance,","links":["https://oscommunity.org/"]},{"id":"m019","kind":"community","title":"OSINT for Good Community","loc":{"raw":"Level 1 - Hall W4 - 1307","level":1,"hall":"W4","room":"1307"},"desc":"The OSINT for Good Community, sponsored by Trace Labs (a Canadian non-profit) will introduce you to concepts behind using Open Source Intelligence (OSINT) to support humanitarian causes.\n\nMore then just \"snooping around on the Internet\", organized OSINT activities can help find missing people, develop and share information about disasters and humanitarian crises, and a support a variety of other causes. We'll share tools and techniques, talk about ethical practices, help you use the tools, and point you to organizations where you can put your people hacking skills to use for the greater good. If you register (for free), you can even use our space to participate in a Trace Labs Global OSINT Search Party CTF on Saturday. Everyone is welcome, whether you have OSINT experience or not!\n\nhttps://www.tracelabs.org | https://infosec.exchange/@ tracelabs"},{"id":"m020","kind":"community","title":"OWASP Foundation","loc":{"raw":"Level 1 - Hall W4 - 1415","level":1,"hall":"W4","room":"1415"},"desc":"OWASP, the Open Worldwide Application Security Project, is an open source steward of tools, documentation projects, and resources all developed by our community. Our community is represented globally with 350+ chapters and thousdands of volunteers worldwide. People are the fabric that composes the OWASP community from developers, security pros, hobbyists, students & hackers and we are eager to welcome all at DEF CON 34."},{"id":"m021","kind":"community","title":"Queercon Community Lounge","loc":{"raw":"LVCC - Level 3 - W325","level":3,"room":"W325"},"desc":"Queercon's mission is to raise awareness and promote acceptance of LGBTQIA+ individuals in the IT and infosec industries.\n\nWe create space for queer people to meet, engage, and network through our badges, puzzle challenges, and meet-up events\n\n- all designed to help queer people find\n\ncommunity where they are not alone. The Queercon Community Lounge is a place to find community anew, or return to familiar faces. Keep an eye on Hacker Tracker or queercon.org for our schedule of meetups and challenges!","links":["https://queercon.org"]},{"id":"m022","kind":"community","title":"Quiet Room with TDI & MHH","loc":{"raw":"LVCC - Level 2 - W208","level":2,"room":"W208"},"desc":"Are you overwhelmed by DEF CON and need a quiet place? Come hang out in our quiet room with fidgets and other helpful decompression toys.\n\nWhether you are overwhelmed by the options or the space itself, we aim to offer a place to get yourself back together.\n\nNo talks, no workshops, just calm and quiet.","links":["https://www.dianainitiative.org/","https://www.mentalhealthhackers.org/","https://defcon.social/@DianaInitiative"]},{"id":"m023","kind":"community","title":"Retro Tech Community","loc":{"raw":"Level 1 - Hall W4 - 1421","level":1,"hall":"W4","room":"1421"},"desc":"The Retro Tech Community is here to celebrate where we came from, how computers and technology shaped our lives, and how even the most simple of computers still have an impact today this many years later. Rather than have a carefully curated collection of museum exhibits you can't touch or breathe on/around our goal is to empower the community in general to bring in working examples of old (or new but inspired by old) tech to display, demonstrate, be passionate about, teach lessons on, and for all those who visit us to hack on and goof around with. We do ask if you bring something to show off and/or display that you must also bring it home with you. If it's broken we will have a repair area set up and we shall do the best we can with it!","links":["https://retrotech.club/"]},{"id":"m024","kind":"community","title":"Robotic Hacking Community","loc":{"raw":"Level 1 - Hall W4 - 1309 Hackers have broken browsers","level":1,"hall":"W4","room":"1309"},"desc":"Hackers have broken cars.\n\nNow we're hacking robots.\n\nWelcome to the Robotic Hacking Community.\n\nRobots are rapidly moving into the real world, from factories and hospitals to warehouses and homes.\n\nThey see. They move. They make decisions. But can they be hacked?\n\nAutonomous robots and physical AI systems represent one of the newest attack surfaces in security. Unlike traditional systems, a compromised robot does more than leak data. It can pick up the wrong object, move into the wrong space, or act against the people it was built to serve.\n\nThe security community has only begun to explore how these machines can be hacked. That is exactly why the Robotic Hacking Community exists.\n\nOrganized by the researchers behind VicOne LAB R7, the community brings a hacker mindset to robotic systems where vulnerabilities can have real-world physical consequences.\n\nRobots are stacks of hardware, firmware, sensors, AI models, networks, and cloud services. Every layer is an attack surface.\n\nWhat you'll find at RHC\n\n• Talks & Research - Original research and live\n\ndemonstrations exploring vulnerabilities in robotic platforms, ROS2 middleware, firmware, sensors, and AI systems. Real bugs. Real machines. Real impact.\n\n• Robotic CTF - Capture the Flag challenges built\n\naround real robotic attack scenarios. If you've never hacked a robot before, this is your chance.\n\n• Physical AI Game - Team-based challenges where\n\nparticipants exploit, defend, and demonstrate attacks against physical AI systems in a controlled environment.\n\n• Physical AI Hacking 101 - A beginner-friendly\n\nhands-on hacking playground. No robotics experience required.\n\nWhat you'll learn\n\n• How robots get hacked. From sensor spoofing\n\nand adversarial manipulation of AI decision logic to firmware exploitation and supply chain weaknesses.\n\n• You'll also explore how cybersecurity and safety\n\ncollide when the target can move, interact with people, and affect the physical world.\n\n• Robots are leaving the lab and entering everyday life.\n\n• Hackers should be there too.\n\n• Come hack a robot. Help make them safer.\n\nPrerequisites Required (bring your own)\n\n• Laptop (any OS - Windows, macOS, or Linux)\n\nProvided on-site\n\n• All robotic hardware, physical AI platforms, tools, and\n\nlab equipment will be provided by the community.\n\nAttendees do not need to bring any specialized devices or hardware.\n\nRecommended knowledge (helpful but not required)\n\n• Basic familiarity with Linux command line\n\n• Some experience with networking or security\n\nconcepts\n\n• Curiosity about robotics or AI systems is all you really\n\nneed for the 101 track\n\nNo prior robotics or hardware hacking experience is necessary to participate. All skill levels are welcome.\n\nhttps://defcon.social/@roboti chackingcommunity https://www.roboti chackingvillage.com"},{"id":"m025","kind":"community","title":"The Diana Initiative","loc":{"raw":"LVCC - Level 2 - W208-209","level":2,"room":"W208-209"},"desc":"We are seeking to let people collaborate and discuss things they run into because of who they are. These are done in birds of a feather informal conversation format.\n\nWe will again have notetakers making non attributed notes during these conversions with key take aways so you can check the board if you miss the discussion. In addition there will be a few interactive workshop sessions available during the event.\n\nBased on your feedback half the time our area will be unstructured, making more room for spontaneous discussions and collaborations.\n\nOur reference desk can help you come up with a plan before going back out into DEF CON. The reference desk will work to find and connect you with the amazing events and communities at the conference, as well as in the community at large. We're specifically working with some of the other communities, contests and villages to be able to recommend great things for you to do if you are unsure about what you want to do.\n\nFinally, for those who find it hard to dive into something new alone, we will have tour guides leading people from the main lobby to various locations throughout the day if you need inspiration on where to start or what to do next, follow us!","links":["https://www.dianainitiative.org/","https://defcon.social/@DianaInitiative"],"sessions":[{"day":"Fri","date":"2026-08-07","start":"20:00","s":"2026-08-07T20:00:00-07:00","end":"23:30","e":"2026-08-07T23:30:00-07:00","loc":{"raw":"LVCC - Level 2 W208-209","note":"Diana Initiative","level":2,"room":"W208-209"}}],"soft":true},{"id":"m026","kind":"community","title":"vetcon","loc":{"raw":"LVCC - Level 3 - W326","level":3,"room":"W326"},"desc":"We are the intersection of military service and the hacker community. Active duty, veterans, and military families who live and breathe security, not as a career pivot, but as a natural extension of how they already think. Missionfocused. Threat-aware. No nonsense.\n\nDEFCON.social provides for open discussion where different viewpoints are welcome and a high degree of skepticism is expected. We are building a community where you can explore serious issues, ask dumb questions, and make friends along the way. We have a strict Code of Conduct and enforce it. Come Join the Discussion! Find us at:\n\nWhat makes VETCON different at DEF CON is the people in the room. These are operators, intelligence analysts, communications specialists, and cyber warriors who have done real work in high-stakes environments. The hacker mindset and the military mindset are the same mindset. You find the gap, you exploit it, you report it, you fix it. VETCON is where those two worlds stop pretending they're separate.\n\nAttendees can expect panels and talks from veterans and active duty members working at the edge of offensive security, threat intelligence, and critical infrastructure defense. Real practitioners. Real problems. No vendor theater.\n\nWhat will you learn? Depends on what you bring. If you're a veteran trying to break into security, you'll find your people and a clear path forward. If you're a civilian hacker, you'll get a perspective on how security works at scale, under pressure, with actual consequences. If you're active duty, you'll see what the community looks like from the outside and why it matters.","links":["https://vetconactual.com"]},{"id":"m027","kind":"community","title":"Women in Security and Privacy (WISP)","loc":{"raw":"Level 1 - Hall W4 - 1303","level":1,"hall":"W4","room":"1303"},"desc":"Women in Security and Privacy (WISP) provides a safe space for women and underrepresented community members to connect, relax, engage, learn, and re-energize. Attendees can expect a supportive environment in which all are safe and welcomed.\n\nWe offer arts and crafts activities including friendship bracelet making and coloring. Our space is available for connecting, networking, and meeting fellow attendees as well as spaces that are created for individuals to take a time out and rest. Our events are designed to connect attendees to others who are also underrepresented so they can build a supportive network and team of fellow attendees.","links":["https://www.wisporg.com/"]},{"id":"e001","kind":"event","title":"The Unofficial DEF CON Shoot","desc":"The Unofficial DEF CON Shoot is a public event that happens just prior to the DEF CON hacker conference in Las Vegas, Nevada. It is an opportunity to see and shoot some of the guns belonging to your friends while taking pride in showing and firing your own steel, as well, in a relaxed and welcoming atmosphere. We choose a spot, then we rent tables, canopies, and bring all the necessary safety equipment and amenities. All you need to bring yourself and (optionally) your firearms. New shooters and veterans both attend regularly. You can attend with your firearms, of course, but folk without guns of their own in Vegas may have the opportunity to try gear from others in attendance.\n\nPro Gun Vegas - 12801 Old US 95 Boulder City, NV 89005"},{"id":"e002","kind":"event","title":"Defcon.run","desc":"Defcon.run, formerly the DEF CON 4x5K, is a community-driven tradition where hackers gather for morning runs and rucks across Las Vegas. Participants can choose from various routes, from 5Ks to longer distances.\n\nFor DEF CON 34, meet at \"The Spot\" near the North Entrance of the Las Vegas Convention Center West Hall.\n\nActivities start at 06:00, Thursday through Sunday; arrive early for safety briefings and community hype.\n\nWhether you are an experienced runner or a newcomer, visit defcon.run to sign up and connect with the community."},{"id":"e003","kind":"event","title":"Ham In A Day class","sessions":[{"day":"Wed","date":"2026-08-05","start":"11:00","s":"2026-08-05T11:00:00-07:00","end":"17:15","e":"2026-08-05T17:15:00-07:00","loc":{"raw":"Other / See Description"}},{"day":"Thu","date":"2026-08-06","start":"06:00","s":"2026-08-06T06:00:00-07:00","end":"08:00","e":"2026-08-06T08:00:00-07:00","loc":{"raw":"LVCC West Hall North Entrance"}},{"day":"Fri","date":"2026-08-07","start":"06:00","s":"2026-08-07T06:00:00-07:00","end":"08:00","e":"2026-08-07T08:00:00-07:00","loc":{"raw":"LVCC West Hall North Entrance"}},{"day":"Sat","date":"2026-08-08","start":"06:00","s":"2026-08-08T06:00:00-07:00","end":"08:00","e":"2026-08-08T08:00:00-07:00","loc":{"raw":"LVCC West Hall North Entrance"}},{"day":"Sun","date":"2026-08-09","start":"06:00","s":"2026-08-09T06:00:00-07:00","end":"08:00","e":"2026-08-09T08:00:00-07:00","loc":{"raw":"LVCC West Hall North Entrance"}},{"day":"Thu","date":"2026-08-06","start":"10:00","s":"2026-08-06T10:00:00-07:00","end":"17:00","e":"2026-08-06T17:00:00-07:00","loc":{"raw":"LVCC - Level 3 W314","note":"Ham Radio Meeting","level":3,"room":"W314"}}],"desc":"The HRV Ham In A Day class returns again for its fourth year, taught again by Dan Romencheck, KB6NU, author of the No-Nonsense Study Guides for the amateur radio license exams.\n\nAlways been interested in getting your ham license but never had the time to study? Now's your chance! The Ham Radio Village is offering a one-day class where you can learn all the required knowledge to pass the exam.\n\nTopics include:\n\n- Electrical Principles\n\n- Electronic principles and components\n\n- Radio and electromagnetic wave properties\n\n- Antennas and Feedlines\n\n- Amateur Radio Signals\n\n- Safety\n\n- Station Setup and Operation\n\n- Rules and Regulations\n\nThe class will run from 10 A.M. to 5 P.M. A lunch break will be provided.\n\nBest of all, this class is completely free, thanks to a grant from the Amateur Radio Digital Communications.\n\nLast year, we sold out of capacity and had to turn folks away. We highly recommend placing a deposit to reserve your seat. The deposit will be refunded upon attendance of the class. Register by following the attached link.","soft":true},{"id":"e004","kind":"event","title":"Friends of Bill W","sessions":[{"day":"Fri","date":"2026-08-07","start":"12:00","s":"2026-08-07T12:00:00-07:00","end":"13:00","e":"2026-08-07T13:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}},{"day":"Fri","date":"2026-08-07","start":"17:00","s":"2026-08-07T17:00:00-07:00","end":"18:00","e":"2026-08-07T18:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}},{"day":"Sat","date":"2026-08-08","start":"12:00","s":"2026-08-08T12:00:00-07:00","end":"13:00","e":"2026-08-08T13:00:00-07:00","loc":{"raw":"LVCC Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}},{"day":"Sat","date":"2026-08-08","start":"17:00","s":"2026-08-08T17:00:00-07:00","end":"18:00","e":"2026-08-08T18:00:00-07:00","loc":{"raw":"LVCC Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}},{"day":"Sun","date":"2026-08-09","start":"12:00","s":"2026-08-09T12:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}}],"desc":"Meetup on Thursday from 12:0013:00 and 17:00-18:00 in LVCC - Level 3 - W301 (Misc Meeting Room)\n\nWe know DEF CON and Vegas can be a lot. If you're a friend of Bill W who's looking for a meeting or just a place to collect yourself, DEF CON 34 has you covered. Join us throughout the conference in room W301. Meetings will be Thursday, Friday, Saturday, and Sunday.","soft":true},{"id":"e005","kind":"event","title":"Toxic BBQ","desc":"Join the humans of Vegas at the unofficial opener of DEF CON. This Thursday Meat-Up is in the shade of Sunset Park, a quick ride from the LVCC. We stock the larder with burgers, dogs, and fixin's. We rely on you for everything else: sides, drinks, volunteering, and donations.\n\nWith over 50 sq ft of heat, we have plenty of room on the grill for your personal creations. Contribute food and drinks, staff the grill, join supply runs, or donate to help cover cost. Everything left goes to the EFF. Be a part of what makes this cookout something to remember year after year. The only question is: What are you bringing to Toxic BBQ?\n\nCheck out toxicbbq.org, find a flyer at an NFO Node, and watch for #ToxicBBQ on the socials for the latest news.\n\nSunset Park, Foxtail Pavilion (Lat: 36.0636, Long: -115.1178)"},{"id":"e006","kind":"event","title":"Operator, Please Hold - DCG Social","sessions":[{"day":"Thu","date":"2026-08-06","start":"18:00","s":"2026-08-06T18:00:00-07:00","end":"20:00","e":"2026-08-06T20:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W238","note":"DEF CON Groups","level":2,"room":"W238"}}],"desc":"Operator, Please Hold is the official DEF CON Groups party at DEF CON 34 - a social for hackers, DCG organizers, and community builders from around the world.\n\nThis is where DEF CON Groups converge off the mailing lists and out of Discord. Expect familiar faces, new connections, and conversations that jump from local meetups to global chaos in about five minutes. No talks.\n\nNo agenda. Just hackers who actually show up for their communities, in one room, at the same time.\n\nEvent on Thursday from 15:00 to 21:00 in Other / See Description\n\nWhether you run a group, help keep one alive, or are looking to plug into your local hacker scene, this is your stop. Come say hi, compare notes, and meet the humans behind the handles.","soft":true},{"id":"e007","kind":"event","title":"Operator, Please Hold. Your People Are on the Line.","sessions":[{"day":"Thu","date":"2026-08-06","start":"18:30","s":"2026-08-06T18:30:00-07:00","end":"23:30","e":"2026-08-06T23:30:00-07:00","loc":{"raw":"The Industrial"}}],"desc":"Welcome Party at The Industrial\n\nKick off DEF CON at our official Welcome Party! We'll meet at [The Industrial](https://www.theindustrialvegas. com) at 18:30.\n\nStandby for details about shuttles from LVCC to The Industrial.","soft":true},{"id":"e008","kind":"event","title":"DC702 Meetup","desc":"Join the local DC702 Group in this year's official DEF CON Meetup!\n\nThe meetup will be casual and include typical meetup activities (e.g., socializing, \"challenges,\" lockpicking, music, etc.) and maybe a few little surprises."},{"id":"e009","kind":"event","title":"Conference Planners Meetup","sessions":[{"day":"Thu","date":"2026-08-06","start":"21:00","s":"2026-08-06T21:00:00-07:00","end":"00:00","e":"2026-08-07T00:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W212","note":"Misc Meeting Room","level":2,"room":"W212"}}],"desc":"Are you a conference planner, manager, technologist, etc.?\n\nFeel like chatting about what we do, trading contact info, or just grabbing a few drinks with colleagues? This will be a meetup for those of us involved in conference planning and management. There won't be any kind of schedule or agenda. Informal conversation is the name of the game.\n\nAt least one person from the Hacker Tracker (and ConfMgr) team will be here. You're welcome to ask questions, leave feedback (good or bad), ask for help with some problem you're having, etc.","soft":true},{"id":"e010","kind":"event","title":"15Th Cycleoverride Bike Ride at DEF CON","desc":"At 6am on Friday, the @cycle_override crew will be hosting the 15th DEF CON Bikeride. We'll meet at a local bikeshop, get some rental bicycles, and about 7am will make the ride out to Red Rocks. It's about a 15 mile ride, all downhill on the return journey. So, if you are crazy enough to join us, get some water, and head over to cycleoverride.org for more info.\n\nSee you at 6am Friday!"},{"id":"e011","kind":"event","title":"Free Ham Radio License Exams","sessions":[{"day":"Thu","date":"2026-08-06","start":"19:00","s":"2026-08-06T19:00:00-07:00","end":"22:00","e":"2026-08-06T22:00:00-07:00","loc":{"raw":"LVCC - Level 3 W327","note":"Misc Meeting Room","level":3,"room":"W327"}},{"day":"Fri","date":"2026-08-07","start":"06:00","s":"2026-08-07T06:00:00-07:00","end":"11:00","e":"2026-08-07T11:00:00-07:00","loc":{"raw":"Other / See Description"}},{"day":"Fri","date":"2026-08-07","start":"13:00","s":"2026-08-07T13:00:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W314","note":"Ham Radio Meeting","level":3,"room":"W314"}},{"day":"Sat","date":"2026-08-08","start":"11:00","s":"2026-08-08T11:00:00-07:00","end":"17:00","e":"2026-08-08T17:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W314","note":"Ham Radio Meeting","level":3,"room":"W314"}},{"day":"Sun","date":"2026-08-09","start":"11:00","s":"2026-08-09T11:00:00-07:00","end":"13:00","e":"2026-08-09T13:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W314","note":"Ham Radio Meeting","level":3,"room":"W314"}}],"desc":"Free ham radio exams return to DEF CON 34! Partake in this hacker \"rite of passage\" by getting your license at DEF CON, presented by the Ham Radio Village.\n\nWhile anyone is able to listen in to amateur/ham radio transmissions, only those who have an amateur radio license are able to fully partake in the \"oldest hacker hobby\". With your license, you'll be authorized by the FCC to transmit up to 1,500W on designated frequencies, build/modify radios & antennas, and even administer your own exams! Additionally, having your ham radio license can improve your resume as it is a well-recognized proof of technical and regulatory knowledge when it comes to all things radio.\n\nAbout The Exam\n\nIn the US there are 3 current levels of amateur radio license - Technician, General, and Amateur Extra. You can progress through the levels by taking a series of multiplechoice exams showing increasing breadth of knowledge.\n\nMost folks at DEF CON looking to become a ham take just the technician exam.\n\nThe technician exam is a 35 question, multiple choice exam. Questions come from from a *public* question pool of 400 questions. Because of that, the most popular way folks at DEF CON prepare is by reading through all 400 questions before the exam, and learning hands on once you get licensed. Many study resources exist - most people recommend ham.study.\n\nSigning Up\n\nWho may register for this testing session:\n\n- Anyone with an interest in obtaining a new Amateur\n\nRadio license or upgrading their existing licenses.\n\n- You may take multiple elements in a single appointment;\n\nwe just ask that you have studied and are ready to pass.\n\nFees\n\n- All license examinations administered by the Laurel VEC\n\nare free to all\n\n- After passing, Laurel VEC will submit your application\n\nto the FCC. On acceptance you will receive an email from the FCC directly with instructions to pay the **$35 application fee**.\n\nQuestions\n\nIf you have any questions leading up to DEF CON, come visit us on the Ham Radio Village Discord server (discord. gg/hrv) and let us know what questions you have. During the conference, come visit the Ham Radio Village to learn all things ham radio, including the studying, testing, and licensing process.","soft":true},{"id":"e012","kind":"event","title":"Hacker Book Club Discussion","sessions":[{"day":"Fri","date":"2026-08-07","start":"14:00","s":"2026-08-07T14:00:00-07:00","end":"16:00","e":"2026-08-07T16:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}}],"desc":"Community is essential and so is continual learning. Reading books and discussing books can greatly impact an individual's access and sense of community and knowledge. This Hacker Book Club book discussion will be an accessible group aiming to build community and share out learnings, all in a quieter setting.\n\nCome join us and discuss what you've been reading. We also run a year round Discord to discuss books throughout the year, hackerbookclub.com. This Hacker Book Club is not locked to a region and is for those who love books and escaping to the cyperpunk, sci-fi worlds that inspire DEF CON and modern literature.","soft":true},{"id":"e013","kind":"event","title":"Queercon Mixer","desc":"Come meet the largest social network of LGBTQIA+ and allied hackers at Queercon! Our mixers are designed for you to meet, network, and engage with like-minded people to a backdrop of music, dance, and refreshments."},{"id":"e014","kind":"event","title":"Atlanta Metro Meetup (DC404/Dc678/Dc770/Dc470)","desc":"They say Atlanta is the city too busy to hate, but it also has too much traffic for its widespread hacker fam to get together in a single meetup. So instead, we're meeting up in the desert during DEF CON!\n\nThe one time of year when intown, northern burbs, south siders, and anyone else connected to DC404's 30+ year legacy can catch up and share stories. Join us and meet your fellow ATL hackers!"},{"id":"e015","kind":"event","title":"Policy Party","sessions":[{"day":"Fri","date":"2026-08-07","start":"18:00","s":"2026-08-07T18:00:00-07:00","end":"21:00","e":"2026-08-07T21:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W210-211","note":"Policy Village","level":2,"room":"W210-211"}}],"soft":true},{"id":"e016","kind":"event","title":"BlanketFort Con","desc":"BlanketFort Con: Come for the chill vibes and diversity, stay for the Blanket Fort Building, Cool Lights, Music, and Kid Friendly \\ Safe environment.\n\nNow with less Gluten and more onesies!"},{"id":"e017","kind":"event","title":"Lawyers Meet","sessions":[{"day":"Fri","date":"2026-08-07","start":"19:00","s":"2026-08-07T19:00:00-07:00","end":"22:00","e":"2026-08-07T22:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W301","note":"Misc Meeting Room","level":3,"room":"W301"}}],"desc":"If you're a lawyer (recently unfrozen or otherwise), a judge or a law student please make a note to join Jeff McNamara for a friendly get-together, drinks, and conversation.","soft":true},{"id":"e018","kind":"event","title":"The Kevops Sellout Pool Party II: Sponsored by Zyn","sessions":[{"day":"Fri","date":"2026-08-07","start":"19:00","s":"2026-08-07T19:00:00-07:00","end":"22:00","e":"2026-08-07T22:00:00-07:00","loc":{"raw":"Sahara Azul Ultra Pool"}}],"desc":"The Sellout Pool Party is back. Join us for tacos and music!","soft":true},{"id":"e019","kind":"event","title":"Arcade Party","sessions":[{"day":"Fri","date":"2026-08-07","start":"20:00","s":"2026-08-07T20:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit","level":1}}],"desc":"The Arcade Party is back! Come play your favorite classic arcade games while jamming out to Keith Myers DJing. Your favorite custom built 16 player LED foosball table will be ready for some competitive games.\n\nThis epic party, free for DEF CON 34 attendees to enjoy and play, is hosted by the Military Cyber Professionals Association (a tech ed charity) and friends.\n\nMeetup on Friday from 16:00 to 18:00 in LVCC - Level 3 W325 (QueerCon Lounge) Meetup on Saturday from 16:00 to 18:00 in LVCC - Level 3 W325 (QueerCon Lounge)\n\nMeetup on Friday from 16:00 to 19:00 in LVCC - Level 3 - W327 (Misc Meeting Room)\n\nHall West 3 - 801 (Creator Stage 1,2)\n\nParty on Friday from 19:00 to 01:00 in LVCC - Level 2 W212 (Misc Meeting Room)","soft":true},{"id":"e020","kind":"event","title":"Women, Gender Non-Conforming and Non-Binary Meetup with the Diana Initiative","desc":"We'd love to get all the gender non conforming, non-binary and women together to hang out and make friends! DEF CON is better with friends. Stop in for a bit, or the whole time."},{"id":"e021","kind":"event","title":"Movie Night","sessions":[{"day":"Fri","date":"2026-08-07","start":"20:00","s":"2026-08-07T20:00:00-07:00","end":"00:00","e":"2026-08-08T00:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W222","note":"Workshops","level":2,"room":"W222"}},{"day":"Sat","date":"2026-08-08","start":"20:00","s":"2026-08-08T20:00:00-07:00","end":"00:00","e":"2026-08-09T00:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W222","note":"Workshops","level":2,"room":"W222"}}],"soft":true},{"id":"e022","kind":"event","title":"Hacker Karaoke","desc":"Two great things that go great together! Join the fun as your fellow hackers make their way through songs from every era and style. Everyone has a voice and this is your opportunity to show it off! Everyone is encourage to participate in a DEF CON tradition from all folks and skill levels."},{"id":"e023","kind":"event","title":"Bic R00t Access 2026","sessions":[{"day":"Fri","date":"2026-08-07","start":"21:00","s":"2026-08-07T21:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W322-W324","note":"BIC Village","level":3,"room":"W322-W324"}}],"desc":"Black culture has always shaped the sound of resistance, innovation, and celebration - and at DEF CON, we're bringing that history to the dance floor. Blacks In Cyber invites you to a night where cybersecurity meets the soundtrack of Black history. From the soulful roots of jazz and blues that coded messages of freedom, to the revolutionary pulse of hip-hop and electronic beats that powered digital creativity, every track tells a story.\n\nThis party celebrates the pioneers who pushed boundaries - musically, technologically, and culturally.\n\nExpect a curated journey through decades of sound: classic grooves, Afro-futurist vibes, and modern cyberinspired mixes that honor the past while hacking the future. Whether you're a seasoned hacker, a first-ti me DEF CON attendee, or just here for the vibe, this is your space to connect, celebrate, and move.\n\nCome dance through the timeline. Celebrate culture, community, and code. Blacks In Cyber at DEF CON - where history, rhythm, and innovation collide.","soft":true},{"id":"e024","kind":"event","title":"Day of the Dead Hacker Party","sessions":[{"day":"Fri","date":"2026-08-07","start":"20:00","s":"2026-08-07T20:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W229, W232","level":2,"room":"W229"}},{"day":"Sat","date":"2026-08-08","start":"20:00","s":"2026-08-08T20:00:00-07:00","end":"01:00","e":"2026-08-09T01:00:00-07:00","loc":{"raw":"LVCC Level 2 - W229, W232","level":2,"room":"W229"}},{"day":"Fri","date":"2026-08-07","start":"21:00","s":"2026-08-07T21:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W327","note":"Misc Meeting Room","level":3,"room":"W327"}}],"desc":"Join us as we celebrate the lives, legends, and lasting influence of the hackers who shaped our world. From pioneers of the underground to cultural icons of the digital frontier whose stories still echo through the system.\n\nDress in Day of the Dead attire or come as a ghost of hacker culture, dead heroes, legendary coders, digital outlaws, and spirits of the machine.\n\nMusic by CURZE$ and special guest DJs.\n\nEveryone is welcome to join us and celebrate the dead, the code, and the culture that refuses to die.","soft":true},{"id":"e025","kind":"event","title":"Whose Slide Is It Anyway","desc":"DEF CON 34 marks an entire DECADE of \"Whose Slide Is It Anyway?\" being the unholy union of improv comedy, hacking, and slide deck sado-masochism. We are the embodiment of the hacker battle cry \"FUCK IT, WE'LL DO IT IN"},{"id":"e026","kind":"event","title":"Prod.\"\"","desc":"For the last 10 years, our team of slide monkeys have created a stupid amount of short slide decks on whatever nonsense tickles our fancies. Slides are not exclusive to technology, they can and will be about anything.\n\nContestants will take the stage and choose a random number corresponding to a specific slide deck. They will then improvise a minimum 5 minute / maximum 10 minute lightning talk, becoming instant subject matter experts on whatever topic/stream of consciousness appears on the screen.\n\nBut....why?\n\nBecause for us, the stage is hallowed ground and since stupidity can't be stopped, we decided to weaponize it.\n\nWhether you delight in the chaos of watching your fellow hackers squirm or would like to sacrifice yourself to the Contest Gods, it's a night of schadenfreude for the whole family."},{"id":"e027","kind":"event","title":"Seckc the Whole Wide World","sessions":[{"day":"Fri","date":"2026-08-07","start":"22:00","s":"2026-08-07T22:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - L1 - North Lobby","level":1}}],"desc":"Following the legendary chaos of SecKC the World and SecKC the World Again, the Kansas City crew returns to DEF CON to settle the digital frontier. This year, we aren't just hosting a party, this isn't just another loud room with a DJ; it's gonna be a killer getogether for the hacker family. We're merging the independent spirit of the DEF CON with the radical community of the Midwest.\n\nIn an era where \"innovati on\" is just a polite word for scraping the bottom of the LLM barrel, we invite you to embrace the inevitable heat death of original thought at Slopcon. Why bother with pesky human intellect when we can automate the entire conference lifecycle, from hallucinated CFP submissions to slide decks that make absolutely no sense? It's a highstakes experiment in synthetic absurdity where the only thing more artificial than the intelligence is the confidence of the \"meatbag\" presenters tasked with delivering this digital dross. Join us for a celebratory descent into the uncanny valley, where we'll crown the sloppiest generative disasters and toast to the fact that, for now, at least the audience is still real.\n\nSo, if you're actually itching to subject the world to more of this or just have a masochistic need for further details, head over to slopcon.org and fulfill your destiny.\n\nEvent on Friday from 22:00 to 00:00 in LVCC - L1 - Exhibit Hall West 1 - 100 (Contest Stage)","soft":true},{"id":"e028","kind":"event","title":"Slopcon","sessions":[{"day":"Fri","date":"2026-08-07","start":"22:00","s":"2026-08-07T22:00:00-07:00","end":"01:00","e":"2026-08-08T01:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W222","note":"Workshops","level":2,"room":"W222"}}],"soft":true},{"id":"e029","kind":"event","title":"DCG New England Meetup","sessions":[{"day":"Sat","date":"2026-08-08","start":"18:00","s":"2026-08-08T18:00:00-07:00","end":"21:00","e":"2026-08-08T21:00:00-07:00","loc":{"raw":"LVCC - L1 - North Lobby","level":1}}],"desc":"New England's hackers are spread across six smaller states and rarely in the same room. This is the room. DCG New England pulls the region's groups and unaffiliated folks together to hang out, meet other hackers in the region, talk shop, show off half-finished projects, and meet the people who keep the local scene ticking.\n\n- 10 YEARS OF K-RAD (HACKERS. TOWN PARTY)\n\nHACK THE PLANET! Come celebrate 10 years of Hackers.\n\nTown doing whatever it is we actually do! We've fully embraced this year's theme of agency, and given these renowned hacker-DJs free rein to do what they do best.\n\nJoin us in the North Lobby for epic sets from: Kampf, Syntax976 and Luna, PatAttack, and Skittish and Bus!","soft":true},{"id":"e030","kind":"event","title":"+61: the Australian Embassy","desc":"If you're one of the Australians who made it into the US for DEF CON this year, swing by for a bit of hacker summer camp gossip, some socializing, and a live demonstration of what happens when Malört meets Vegemite.\n\nWe assume nothing good."},{"id":"e031","kind":"event","title":"Blue Team Village Movie Night","sessions":[{"day":"Sat","date":"2026-08-08","start":"19:00","s":"2026-08-08T19:00:00-07:00","end":"22:00","e":"2026-08-08T22:00:00-07:00","loc":{"raw":"LVCC - Level 2 - W213-W215","level":2,"room":"W213-W215"}}],"desc":"Join the Blue Team Village and our special guests for a mixer and screening. Popcorn and drinks from 7pm-8pm, movie starts at 8pm.","soft":true},{"id":"e032","kind":"event","title":"DCNextGen party","desc":"Are you ready to rock? If so, come to the DCNextGen party where the theme is UV cyberpunk! What is there to do you might ask? We have games, music, create your own raccoon mask, glow in the dark tattoos, and so much more! There is no better place to make new friends and hang out with your fellow DCNextGen cyber warriors."},{"id":"e033","kind":"event","title":"Social Engineering Community Village Party","sessions":[{"day":"Sat","date":"2026-08-08","start":"19:00","s":"2026-08-08T19:00:00-07:00","end":"23:00","e":"2026-08-08T23:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W317-319","note":"SEC Village","level":3,"room":"W317-319"}}],"desc":"Join the Social Engineering Community for a night of connecting with fellow hackers, social engineers, researchers, and curious DEF CON attendees who share an interest in the human side of hacking. Whether you spent the weekend watching vishing calls, cheering on AI bots, competing, volunteering, or just discovering the\n\nMeetup on Saturday from 15:00 to 17:00 in LVCC - Level 3 W327 (Misc Meeting Room)\n\nParty on Saturday from 18:00 to 20:00 in LVCC - Level 2 - W212 (Misc Meeting Room)\n\nAgainst all odds (and possibly the better judgement of border control), the +61 Australian embassy returns.\n\nParty on Saturday from 19:00 to 21:00 in LVCC - Level 3 - W316 (DC NextGen)\n\ncraft for the first time, this meetup is a chance to relax, swap stories, and meet the people behind the voices, research, and chaos from the village. The exact theme will be announced soon, but the goal is simple: bring the community together, make new friends, reconnect with old ones, and celebrate another year of social engineering at DEF CON. Everyone is welcome, whether you're a longtime member of the community or just curious about what social engineering is all about.","soft":true},{"id":"e034","kind":"event","title":"Gothcon","sessions":[{"day":"Sat","date":"2026-08-08","start":"21:00","s":"2026-08-08T21:00:00-07:00","end":"01:00","e":"2026-08-09T01:00:00-07:00","loc":{"raw":"LVCC - Level 2 W212","note":"Misc Meeting Room","level":2,"room":"W212"}}],"desc":"Returning for their 9th year, Gothcon invites you to come dance the night away with a line-up of some of the community's best dark dance music DJ's from across the US! Dress however you would like in whatever makes you feel comfortable and happy, and all are welcome.\n\nFront Man's Fête: An Octopus Game Party\n\nFront Man's Fête: An Octopus Game Party is a curated respite from the chaos of the city, offering a sophisticated and low-key lounge experience centered on strategy and soul. Instead of high-stakes elimination, we offer the timeless rhythm of old school hip-hop and the analog competition of classic board games. This event is designed for those who seek a chill atmosphere where the vibes are smooth and the conversation is clear. Come for the nostalgia of golden-era beats and stay for a relaxed evening where the only goal is to unwind and outsmart your opponents in a sanctuary of cool.","soft":true},{"id":"e035","kind":"event","title":"Party Line (Call Center Village Party)","sessions":[{"day":"Sat","date":"2026-08-08","start":"21:00","s":"2026-08-08T21:00:00-07:00","end":"01:00","e":"2026-08-09T01:00:00-07:00","loc":{"raw":"LVCC - L1 - Exhibit Hall West 3 - 801","note":"Creator Stage 2","level":1,"hall":"EHW3","room":"801"}},{"day":"Sat","date":"2026-08-08","start":"21:00","s":"2026-08-08T21:00:00-07:00","end":"01:00","e":"2026-08-09T01:00:00-07:00","loc":{"raw":"LVCC - Level 2 W218","note":"Call Center Village","level":2,"room":"W218"}}],"desc":"Party Line is Call Center Village's telephony-themed party open to all attendees at DEF CON 34.\n\nA full-size telephone booth, retro telephones, dial-pad light shows, and lo-fihold music grooves mixed with telephony-flavored party tracks.\n\nIf you've ever listened to Opus No. 1 on repeat, then this is your extension. No IVR to navigate Just pick up and dial in.\n\nDon't let the phones go unanswered. Join us at Party Line.\n\nBetween calls, swing by our unofficial DEF CON TCG trading table - donate your extras, hunt down the ones you're missing, or make a deal for your favorites.\n\nMake sure to bring your Call Center Village flight-tags (100 Trying or 200 OK) earned from the Escalation Desk CTF to claim free drinks!\n\nYou've been placed on hold - but for once, you don't mind the music.","soft":true},{"id":"e036","kind":"event","title":"VETCON 2026 Party","sessions":[{"day":"Sat","date":"2026-08-08","start":"21:00","s":"2026-08-08T21:00:00-07:00","end":"01:00","e":"2026-08-09T01:00:00-07:00","loc":{"raw":"LVCC - Level 3 - W326","note":"Vetcon","level":3,"room":"W326"}}],"desc":"DEF CON is renowned for bringing together some of the brightest minds in technology and security.\n\nBy participating in VETCON, you have the chance to highlight the critical role veterans play in this landscape and explore how technology can support and enhance their lives.","soft":true},{"id":"e037","kind":"event","title":"Illuminati Party","desc":"It's time to get under the hood and rewrite the rules of engagement. If we want a future where explorers aren't outlaws, we have to start by taking over the room - so join us for the Illuminati Party, where our crew gathers to set the parameters for the night. Come share your passion, plot the future, and help us amplify the community."},{"id":"e038","kind":"event","title":"Kayos Klub","desc":"The Kayos Klub will be a night of music and magic for all ages. To celebrate the life of a lost loved one, we are going all out on a party that will make even the most socially awkward computer nerd want to dance <3."},{"id":"e039","kind":"event","title":"DEF CON After Party @ LIV Fontainebleau","sessions":[{"day":"Sun","date":"2026-08-09","start":"22:30","s":"2026-08-09T22:30:00-07:00","end":"02:00","e":"2026-08-10T02:00:00-07:00","loc":{"raw":"LIV Nightclub at Fontainebleau"}}],"desc":"Close out DEF CON at LIV Fontainebleau](https://www. livnightclub.com/las-vegas/). Bring your DEF CON badge for free admission and a free drink.\n\nDEF CON channels and features are available on Meshtastic to enable off -grid, decentralized communication. Humans should visit https://defcon.meshtastic. org/ to download the official conference firmware to ensure compatibility or visit https://conham.radio/dc for settings.\n\nParty on Saturday from 21:00 to 01:00 in LVCC - Level 3 W327 (Misc Meeting Room)\n\nParty on Saturday from 22:00 to 01:00 in LVCC - L1 - North Lobby","soft":true},{"id":"e040","kind":"event","title":"A&e"},{"id":"n001","kind":"vendor","title":"1BitSquared LLC","desc":"1BitSquared's mission is to develop, maintain and distribute; high quality, cutting edge, open-source tools for hardware hacking and self education. We develop our own tools like Black Magic Probe, BitMagic and iCEBreaker. We collaborate with members of the hardware hacking community to bring their tools, like Faultier, Glasgow or Tigard, to the broader public. Our goal is to continue expanding a world where we inspect, understand and improve the technology that surrounds us.","links":["https://1bitsquared.com/"]},{"id":"n002","kind":"vendor","title":"Cognitive Security Institute","desc":"As sophisticated adversaries blend state and criminal tactics in order to target everyday citizens and organizations of all sizes, the Cognitive Security Institute is building the future of resilience.\n\nThrough community, research, and awareness, we're crafting a global backbone for cognitive security.\n\nOur goal is to ensure the mind remains our greatest asset, not our greatest liability.\n\nWe build resilience and proactive defenses against these threats by merging cutting-edge research, cross-sector collaboration, and advocating for mental health. Our goal is to ensure your mind is your greatest asset - not your greatest vulnerability.\n\nhttps://www.cognitivesecurityinstitute.org/"},{"id":"n003","kind":"vendor","title":"Cryptocurrency Advocate","desc":"Experience modern finance technology first hand by visiting the Cryptocurrency Advocate at the DEF CON vendor area. We distribute items relating to a number of projects including Bitcoin, Lightning, Monero, Ethereum, Litecoin, and others. Show your cryptohacker colours with high quality wearables and custom badges. Try new devices and electronics, with access to the producers on site. Inform yourself of cryptocurrency science by exploring the products on display. Our stand is your one stop shop for cryptocurrency hacker items and information.","links":["https://www.cryptocurrencyvillage.cc/"]},{"id":"n004","kind":"vendor","title":"deepnet LLC","desc":"deepnet.store creates limited-run SAOs, electronic badges, and hardware hacking tools that blend aesthetics with interactivity. Our products range from visually striking blinky SAOs to reprogrammable ESP32-S3 devices, designed for collectors, makers, and anyone curious about hardware hacking. We make microcontrollers fun, accessible, and easy to experiment with.\n\nVisit us at deepnet.store and follow us on Instagram (@deepnetstore) for the latest updates.","links":["https://deepnet.store"]},{"id":"n005","kind":"vendor","title":"Electronic Cats","desc":"Driven by the slogan \"Hack the world,\" Electronic Cats has spent years empowering the hardware hacking community with Mexican-designed open-source tools. Their catalog ranges from versatile RF sniffers to specialized devices for auditing electronic payment protocols and detecting physical threats. As frequent contributors to the security ecosystem, they use DEF CON as their primary launchpad for new research and hardware releases.\n\nThis year, they are bringing a fresh batch of Flipper Zero add-ons and open-source projects designed to help users bridge the gap between digital code and physical signals.","links":["https://www.electroniccats.com"]},{"id":"n006","kind":"vendor","title":"Electronic Frontier Foundation (EFF)","desc":"The Electronic Frontier Foundation (EFF) is the leading organization defending civil liberties in the digital world. We defend free speech on the internet, fight illegal surveillance, support freedomenhancing technologies, promote the rights of digital innovators, and work to ensure that the rights and freedoms we enjoy are enhanced, rather than eroded, as our use of technology grows.","links":["https://eff.org"]},{"id":"n007","kind":"vendor","title":"FREE-Wili, LLC (Last Year Was Intrepid Control Systems)","desc":"The FREE-WILi series of tools are designed to meet your embedded development challenges head-on. Whether you're a professional developer or a hobbyist, it provides the versatility, functionality, and ease of use you need to bring your projects to life.\n\nLook for a new product announcement at DEF CON, and even more possibilities!","links":["https://freewili.com/"]},{"id":"n008","kind":"vendor","title":"Geist-Projekt/Crisiswear","desc":"Founded in May 2001 by Matthew Deponte, Crisiswear was established with a simple yet powerful mission: to create high-quality, meticulously designed garments that stand the test of time. Unlike traditional fashion brands that mass-produce clothing, Crisiswear embraces small-batch manufacturing, ensuring that each piece is crafted with precision and care.\n\nThe brand prioritizes sustainability, sourcing ethical textiles, and minimizing waste through controlled production runs. Beyond creating exceptional clothing, Crisiswear is dedicated to education and community development. The company offers internship programs that provide hands-on training to individuals eager to learn the trade, extending beyond traditional students to anyone interested in garment construction. This initiative reflects the company's commitment to fostering a sustainable and skilled workforce in the fashion industry.","links":["https://www.crisiswear.com"]},{"id":"n009","kind":"vendor","title":"HackerWarehouse","desc":"HACKER WAREHOUSE is your ultimate destination for all niche products favored by tech enthusiasts, particularly those in the hacking and cyber security industries. We offer a wide range of high-quality tools and gear from top brands, supporting both professional and hobbyist endeavors in defense, offense, and beyond. Check us out at HackerWarehouse.com.","links":["https://hackerwarehouse.com/"]},{"id":"n010","kind":"vendor","title":"Hak5 LLC","desc":"Since 2005, Hak5 has been reminding you to Trust your Technolust. This year, we invite you to join us in celebrating 20 years. Look for the giant Pineapple. Come by the Hak5 booth. Discover the devices that have found their way into the hearts and tool-kits of the modern hacker -- including some very special, limited edition machines of mayhem.","links":["https://hak5.org"]},{"id":"n011","kind":"vendor","title":"iFixit INC","desc":"iFixit started in a Cal Poly dorm room in 2003, when our founders took apart a broken iBook and realized there was no good information online about how to fix it. They documented the process, put it online, and that grew into what is now a global repair community.\n\nToday, iFixit provides free, open-access repair guides, teardowns, and troubleshooting resources for everything from phones and laptops to game consoles and small electronics. The content is built and maintained by a worldwide community, making it one of the largest repair knowledge bases available.\n\nWe also design and sell tools and replacement parts to support those repairs. The goal has always been simple: make it easier for people to fix their own stuff.\n\nWe're active in the Right to Repair movement and regularly support hands-on learning through workshops, events, and partnerships with schools and makerspaces.\n\nAt its core, iFixit is about understanding how things work and making repair more accessible.","links":["https://iFixit.com"]},{"id":"n012","kind":"vendor","title":"indipro","desc":"Indie games are gamers putting their voice into the industry. We help provide a pathway for indie (board game) developers to get their games into the market despite the juggernauts. And sometimes, to spite them.\n\nWe have played nearly all of the games we carry so we can speak to you about the pros and cons to help find the right indie game for you.","links":["https://indiprogames.com"]},{"id":"n013","kind":"vendor","title":"Keyport INC","desc":"Keyport makes unique DEF CON branded swag you will actually use every single day combining keys, pocket tools, & tech into an all-in-one hacker multi -tool. Explore our latest modular product line, featuring the exclusive DEF CON 34 Editions of the Keyport Pivot, Tool Modules, and Inserts. Plus, don't miss our limited edition accessories, including a custom maker kit, unique challenge coin, glow-in-the-dark patches, magnetic quick releases, YubiKey skins, and much more. Learn more at www.mykeyport.com.","links":["https://www.mykeyport.com"]},{"id":"n014","kind":"vendor","title":"LowMesh LLC","desc":"LowMesh is revolutionizing off -grid communication by building the next generation of resilient mesh networking devices. We design secure, encrypted hardware tailored for emergency situations, outdoor adventures, and off -grid living, with full Meshtastic and MeshCore compatibility.\n\nFrom rapid 3D-prototyping to rugged injection-molded enclosures, our hardware is built to survive the elements. We stand out by pushing the boundaries of what's possible - integrating advanced power management, solar capabilities, and custom firmware to deliver a reliable, end-to-end communication experience.","links":["https://lowmesh.com"]},{"id":"n015","kind":"vendor","title":"Manifesto Industries LLC","desc":"Focused on creating for the unconventional. Gear and apparel that are there when you need it most.","links":["https://sneakreaper-industries.com/"]},{"id":"n016","kind":"vendor","title":"Midwest Gadgets LLC","desc":"Midwest Gadgets is a Detroit-based hardware company creating specialized tools for the hacking and biohacking community. Maker-focused and independently owned, we design and manufacture NFC and RFID devices - including repeaters, field detectors, amplifiers, and custom antennas - built specifically to support tinkerers, hackers, and implant enthusiasts pushing the limits of personal tech. Every product is prototyped, tested, and assembled in-house with a focus on functionality, adaptability, and real-world application. Whether you're enhancing read range, troubleshooting field behavior, or experimenting with implants, Midwest Gadgets delivers purpose-built gear designed to empower exploration.","links":["https://www.midwestgadgets.com"]},{"id":"n017","kind":"vendor","title":"Miscreants","desc":"Miscreants is a creative agency designing for cybersecurity. Alongside our agency work, we release specialty goods that reflect the past, present, and future of security culture.","links":["https://shop.miscreants.com/https://instagram.com/miscreants.co"]},{"id":"n018","kind":"vendor","title":"No Starch Press INC","desc":"No Starch Press has been publishing books for hackers since 1994. Meet publisher Bill Pollock & crew, grab new swag, 30% off everything, Tell us what we're doing right, or wrong: nostarch.com","links":["https://nostarch.com"]},{"id":"n019","kind":"vendor","title":"Octopwn Kft","desc":"If you are an internal network pentester or red team member and you are tired of the script salad, and the unreliability of netexec and impacket, we have the solution for you. Octopwn is the first professional software suite designed for fast, reliable and fully reproducable internal network pentesting. All the scanners, tools, attacks, utilities and logging are fully integrated, so you can finish your projects days faster with better quality. You can fully automate routine scans and attacks and follow up based on your own workflow and with our and your own tools, that you can also integrate. Import/export or full integration is also available with popular tools like nmap, Nessus and Bloodhound. Build your reports at the end easily based on our comprehensive logs and use an offline LLM to retest based on the logs. Visit us at our booth for a live demo!","links":["https://www.octopwn.com"]},{"id":"n020","kind":"vendor","title":"Phreeli Company","desc":"Finally, a wireless service that wants to know as little about you as possible. Your privacy is Phreeli's priority.","links":["https://www.phreeli.com"]},{"id":"n021","kind":"vendor","title":"Physsec Education Education Physsec","desc":"The Physical Security Village explores the world of hardware bypasses and techniques generally outside of the realm of cybersecurity and lockpicking. Come learn some of these bypasses, how to fix them, and have the opportunity to try them out for yourself.\n\nLike what you saw in the village? Come to the Vendors area to buy the tools you saw, our sticker pack, patches, and more!","links":["https://physsec.org"]},{"id":"n022","kind":"vendor","title":"Rabbit-Labs LLC","desc":"Rabbit-Labs is a collective of great minds. Rabbit-Labs is the gathering of people from all walks of life who love to explore tech and share novel ideas and discoveries. Rabbit-Labs isn't just a brand, it's a lifestyle of pushing the boundaries of what is possible and never taking the easy route or cutting corners. Our core values, Inclusion, Integrity, Empathy, Quality, & Transparency, are always at the top of our mind in anything we do. It is our core values that motivate us every day, that allow Rabbit-Labs to grow, & that thrusted upon us this amazing community.","links":["https://rabbit-labs.com/"]},{"id":"n023","kind":"vendor","title":"Red Team Tools","desc":"The origins of Red Team Tools extends back over a half a decade prior to the existence of our web site. As early members of the locksport community and board members of TOOOL - the Open Organisation of Lockpickers - Deviant and Babak spent over a decade spreading knowledge, building community, educating the public, and providing tools to hobbyists and professionals alike.\n\nAs security professionals specializing in covert entry and other forms of non-destructive entry, they were disappointed by the large gap that appeared to exist between the hobbyist world and the growing field of professional red teaming. The lack of tooling for field applications presented numerous day-to-day challenges, and a solution was needed.\n\nIn addition to in-house design and manufacturing work, Babak and Deviant drew from resources in both the hacker world and the professional security industry to build relationships with specialized vendors and partners. Since their formation, Deviant and his crew at Red Team Tools have designed and released over two dozen custom products of their own creation, bringing innovation and improvement to the physical penetration and covert entry field. One of the key principles of RTT is Deviant's commitment to releasing as many of his designs as possible for free on his GitHub page so that community members can make their own tools for free, remix the designs, and share ongoing feedback and improvement in order to uplift the community and drive our industry forward.","links":["https://redteamtools.com"]},{"id":"n024","kind":"vendor","title":"REKCAH Publishing","desc":"The Spearphish General Store carries the finest wares from your favorite information security organizations: Black Hills Information Security, Active Countermeasures, Antisyphon Training, Backdoors & Breaches, REKCAH Comics, and Wild West Hackin' Fest.","links":["https://www.blackhillsinfosec.com/rekcah/"]},{"id":"n025","kind":"vendor","title":"Roguesroostllc","desc":"At Rogue's Roost we create cute tech accessories!","links":["https://Roguesroostllc.com"]},{"id":"n026","kind":"vendor","title":"Rokland LLC","desc":"Rokland is a U.S.-based wireless technology company focused on helping people build stronger, smarter, and more resilient connections. Known for serving communities in WiFi, mesh networking, antennas, adapters, and emerging radio technologies, Rokland works with everyone from hobbyists and makers to businesses, public safety users, and field operators who need dependable hardware in challenging environments. The company has built its reputation by combining practical product knowledge with a handson approach to sourcing, testing, and supporting specialized connectivity solutions.\n\nAt DEF CON, Rokland is excited to connect with attendees who care about off -grid communication, RF experimentation, network resilience, hardware innovation, and the future of decentralized connectivity. As interest grows in technologies like Meshtastic, LoRa, portable communication systems, and field-deployable wireless gear, Rokland continues to explore tools that empower users to stay connected when traditional infrastructure is limited, unavailable, or simply not enough.\n\nWhether you are a hacker, researcher, builder, preparedness enthusiast, or just curious about the next wave of independent communication tools, Rokland is here to share ideas, show hardware, and talk shop. We believe resilient communication matters, and we are proud to be part of the community pushing that mission forward.","links":["https://www.rokland.com"]},{"id":"n027","kind":"vendor","title":"Shadowvex Industries","desc":"This year we have a very limited run of DEF CON 34 themed clothing, exclusive DC34 DJ music mixes, dark sci-fisurrealist inspired art prints, and other hacker lifestyle wares such as stickers, patches, and pins. Follow the music in the vendor area to track us down!","links":["https://shadowvex.com"]},{"id":"n028","kind":"vendor","title":"Book Signings"},{"id":"n029","kind":"vendor","title":"Sparrows Manufacturing CO","desc":"With one of the largest selection of lock picks, covert entry and SERE tools available at DEF CON, it's guaranteed we will have gear you have not seen before. New tools and classics will be on display and available for sale in a hands on environment. Our product range covers custom toolsets, entry tools, practice locks, bypass tools, urban escape & evasion hardware and items that until recently were sales restricted. The DREADNOUGHT will also be available to the public for the first time in limited quantities. All products will be demonstrated at various times and can be personally tested for use and efficacy.","links":["https://sparrowslockpicks.com/"]},{"id":"n030","kind":"vendor","title":"The Calyx Institute","desc":"The Calyx Institute (calyx.org) defends digital privacy, advances connectivity, and strives for a future where everyone has access to the resources and tools they need to remain securely connected.\n\nWe build and maintain a privacy-respecting ecosystem of free and open-source software (FOSS) centering on CalyxOS, an operating system for Android devices, that enables people to enjoy their lives online with data privacy and dignity. We offer hands-on tools, such as the Calyx hotspot, for people to access the internet easily wherever they are, especially in areas where connectivity options are limited. Through grantmaking, research, education, and community capacity building, we support internet freedom that allows the public to make informed choices about their online lives.\n\nWe can't do this work without support from our members. Become a member today and join our collective effort to enhance digital privacy and security for all! As a Calyx Internet member, you can get a Calyx Hotspot - or use your own device - with a SIM card that connects you to the entire T-Mobile network with unlimited data in the U.S.. As a CalyxOS Phone member, you will get a Pixel 8a phone with CalyxOS pre-installed. Visit https://calyx.org/membership for more information.","links":["https://calyx.org"]},{"id":"n031","kind":"vendor","title":"The Open Organisation of Lockpickers (Toool)","desc":"The Open Organisation Of Lockpickers is back as always, offering a wide selection of tasty lock goodies for both the novice and master lockpicker! A variety of commercial picks, handmade picks, custom designs, practice locks, handcuffs, cutaways, and other neat tools will be available for your perusing and enjoyment! Stop by our table for interactive demos of this fine lockpicking gear or just to pick up a T-shirt and show your support for locksport. All sales exclusively benefit Toool, a 501(c)3 non-profit organization. You can purchase picks from many fine vendors, but ours is the only table where you know that 100% of your money goes directly back to the hacker community.","links":["https://toool.us/"]},{"id":"n032","kind":"vendor","title":"The Tor Project","desc":"The Tor Project (torproject.org) is a nonprofit developing free and open-source software to protect people from tracking, censorship, and surveillance online. Stop by our booth in the vendor hall to learn more about our recent projects, pick up some gear, and find out how you can get involved. Donations by cash, credit card, contactless payments, and Bitcoin accepted.","links":["https://torproject.org/"]},{"id":"n033","kind":"vendor","title":"Women in Security and Privacy (WISP)","desc":"Women in Security and Privacy (WISP) is a nonprofit organization dedicated to advancing women and underrepresented communities in the security and privacy sectors. WISP achieves this by providing educational and professional development programming for more than 50,000 community members worldwide. WISP's educational programming includes hand-ons workshops, substantive talks, and scholarships for our members to get certificates and attend conferences. For professional development, they provide programming for entry-, mid-, and C-Suite level professionals.\n\nWISP focuses on fostering inclusion, amplifying voices, and creating accessible networking and educational opportunities within the industry. Over the past 10 years, the WISP community has grown to provide programming in 16 countries around the world, creating a truly global community. All are welcome to engage with WISP.","links":["https://www.wisporg.com"]},{"id":"n034","kind":"vendor","title":"Book Signing - Nicholas Demeo","desc":"Friday from 11:00 to 12:00 at Book Signing Table 1"},{"id":"n035","kind":"vendor","title":"Book Signing - Christopher Decarmen","desc":"Friday from 11:00 to 12:00 at Book Signing Table 2\n\nSaturday from 13:00 to 14:00 at Book Signing Table 2"},{"id":"n036","kind":"vendor","title":"Book Signing - Brandy Smith","desc":"Saturday from 14:00 to 15:00 at Book Signing Table 2\n\nFriday from 13:00 to 14:00 at Book Signing Table 2"},{"id":"n037","kind":"vendor","title":"Book Signing - Garrett Gee","desc":"Friday from 14:00 to 15:00 at Book Signing Table 1\n\nSaturday from 14:00 to 15:00 at Book Signing Table 1"},{"id":"n038","kind":"vendor","title":"Book Signing - Laura Scherling","desc":"Saturday from 12:00 to 13:00 at Book Signing Table 2\n\nFriday from 14:00 to 16:00 at Book Signing Table 2"},{"id":"n039","kind":"vendor","title":"Stuff We Operate","desc":"Website: https://defcon.org (.onion site available) DEF CON Media: https://media.defcon.org (.onion site available) DEF CON Groups: https://defcongroups.org (.onion site available) DEF CON Forums: https://forum.defcon.org (.onion site available) DEF CON Info: https://info.defcon.org (.onion site available) DC Nextgen: https://dcnextgen.org (.onion site available) DEFCON.SOCIAL (Mastodon): https://defcon.social (.onion site available)"},{"id":"n040","kind":"vendor","title":"Stuff We Host","desc":"Discord: https://discord.gg/defcon\n\nYou Tube: https://www.youtube.com/user/DEFCONConference\n\nTwitter: https://twitter.com/defcon\n\nFacebook: https://facebook.com/defcon/ (.onion site available)\n\nInstagram: https://www.instagram.com/wearedefcon/\n\nReddit: https://www.reddit.com/r/defcon (.onion site available)\n\nLinkedIn: https://www.linkedin.com/company/def-con"},{"id":"n041","kind":"vendor","title":"Buy Stuff","desc":"DEF CON Store: https://shop.defcon.org\n\nDEF CON Training: https://training.defcon.org/"},{"id":"n042","kind":"vendor","title":"Other Stuff","desc":"SomaFM Music Channel: https://somafm.com/defcon/\n\nDEF CON Music: https://defconmusic.org/\n\nDEF CON NOC: https://noc.defcon.org"},{"id":"n043","kind":"vendor","title":"Book Signing - Avinash Majeti","desc":"Saturday from 16:00 to 17:00 at Book Signing Table 2\n\nFriday from 15:00 to 17:00 at Book Signing Table 1\n\nFriday from 16:00 to 17:00 at Book Signing Table 2"},{"id":"n044","kind":"vendor","title":"Book Signing - Aamiruddin Syed","desc":"Saturday from 11:00 to 13:00 at Book Signing Table 1"},{"id":"n045","kind":"vendor","title":"Book Signing - Cindy Cohn","desc":"Saturday from 13:00 to 14:00 at Book Signing Table 1\n\nSaturday from 11:00 to 12:00 at Book Signing Table 2"},{"id":"n046","kind":"vendor","title":"Book Signing - Mark Foudy","desc":"Saturday from 15:00 to 16:00 at Book Signing Table 2"},{"id":"n047","kind":"vendor","title":"Book Signing - Thomas Wilhelm","desc":"Saturday from 16:00 to 17:00 at Book Signing Table 1"},{"id":"n048","kind":"vendor","title":"Connect","desc":"Download the presentation materials and more from the DEF CON media server at:\n\nhttps://media.defcon.org/DEF CON 34/"},{"id":"h001","kind":"exhibitor","title":"Capitol Technology University","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1404","note":"Capital Tech University","level":1,"hall":"EHW4","room":"1404"},"desc":"Capitol Technology University joins DC34 as a leader in technology higher education. Visit the CapTechU booth to learn more about online and on-campus programs to boost your tech career, grab free info and swag, purchase a con-exclusive t-shirt and light-up badge, and snap a photo with our mascot, Charlie the Charger!","links":["https://CapTechU.edu","https://www.facebook.com/captechu/","https://www.linkedin.com/school/captechu/"]},{"id":"h002","kind":"exhibitor","title":"Expel","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1410","note":"Expel","level":1,"hall":"EHW4","room":"1410"},"desc":"Expel is human-led, AI-accelerated security. We help organizations drive out threats and build lasting security resilience with leading MDR solutions. We work with the tools you already have, providing full transparency into everything we see and do. No black boxes, no rip-and-replace, just clear decisions and faster action.","links":["https://expel.com/","https://www.linkedin.com/company/expel","Flare.io"]},{"id":"h003","kind":"exhibitor","title":"Flare.io","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1405","note":"Flare.io","level":1,"hall":"EHW4","room":"1405"},"desc":"In an era of rapidly evolving digital threats, the Flare Threat Exposure Management SaaS platform delivers a threat-led cybersecurity solution by combining proprietary world-class intelligence from the dark and clear web with radical ease-of-use, empowering organizations to proactively detect, prioritize, and respond to external threats - reducing risk exposure and strengthening overall cyber resilience."},{"id":"h004","kind":"exhibitor","title":"Hack The Box","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1414","note":"Hack the Box","level":1,"hall":"EHW4","room":"1414"},"desc":"Hack The Box is the Cyber Performance Center with the mission to provide a human-first platform to create and maintain highperforming cybersecurity individuals and organizations.","links":["https://hackthebox.com"]},{"id":"h005","kind":"exhibitor","title":"Horizon3","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1409","note":"Horizon3","level":1,"hall":"EHW4","room":"1409"},"desc":"Horizon3.ai answers the two most important questions in cybersecurity: If someone tried to compromise us, would we hold up? And, how do we withstand the onslaught of AI-powered attacks?\n\nHorizon3.ai's NodeZero® shifts the advantage from attackers to defenders by giving organizations the power to fight AI with AI.","links":["https://www.horizon3.ai","Pentest-Tools.com"]},{"id":"h006","kind":"exhibitor","title":"Pentest-Tools.com","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1407","note":"Pentest Tools","level":1,"hall":"EHW4","room":"1407"},"desc":"Pentest-Tools.com unifies recon, scanning, and exploitation into a single, cloud-based offensive security workflow.\n\nThrough accurate vulnerability discovery and automated exploitation we help practitioners cut FPs and noise, and replace theoretical risk with undeniable evidence.\n\nhttps://pentest-tools.com/ | https://www.linkedin.com/ company/pentesttools | https://www.youtube.com/c/ PentestToolscom | https://www.reddit.com/r/pentest_ tools_com/ | https://infosec.exchange/@pentestt ools"},{"id":"h007","kind":"exhibitor","title":"Promptfoo","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1408","note":"Promptfoo","level":1,"hall":"EHW4","room":"1408"},"desc":"Promptfoo is an LLM red teaming and vulnerability management platform that identifies and remediates security risks in generative AI applications. Trusted by more than 100,000 developers and companies like OpenAI and Anthropic, it tests applications at scale to help enterprises ship LLM components faster and more securely.","links":["https://promptf","oo.dev"]},{"id":"h008","kind":"exhibitor","title":"SubImage Inc.","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1411","note":"Sub Image INC.","level":1,"hall":"EHW4","room":"1411"},"desc":"SubImage is a managed offering built around the Cartography open-source project and founded by its original team, delivering interactive infrastructure maps that provide security teams with comprehensive visibility into assets and their relationships - enabling deeper environment understanding and reduced risk.","links":["https://subimage.io","https://www.linkedin.com/company/subimagesec"]},{"id":"h009","kind":"exhibitor","title":"Tracebit","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1406","note":"Tracebit","level":1,"hall":"EHW4","room":"1406"},"desc":"Tracebit deploys canaries across your cloud accounts, endpoints, SaaS applications, and CI/CD pipelines. When attackers touch them, you know immediately.","links":["https://tracebit.com/","https://www.linkedin.com/company/tracebit"]},{"id":"h010","kind":"exhibitor","title":"https://tracebit.com/ | https://www.linkedin.com/company/tracebit","loc":{"raw":"ZYN"}},{"id":"h011","kind":"exhibitor","title":"Zyn","loc":{"raw":"LVCC - L1 - EXHIBIT HALL WEST 4 - 1400","note":"Zyn","level":1,"hall":"EHW4","room":"1400"},"desc":"ZYN delivers smoke-free, spit-free nicotine satisfaction in convenient pouches. America's #1 nicotine pouch brand offers a variety of flavors and strengths for adult nicotine users seeking a modern, discreet alternative."},{"id":"i001","kind":"info","title":"DEF CON 34 - Official Program","desc":"*Text-only conversion of the printed DEF CON 34 program (August 6-9, 2026, Las Vegas Convention Center West Hall).*\n\n*Layout, artwork and maps are not reproduced. Multi-column pages have been re-flowed into reading order, so ordering within a page may differ slightly from the printed booklet.*\n\n---","group":"Network, DCTV & Media"},{"id":"i002","kind":"info","title":"Welcome to DEF CON 34","desc":"It's been a lot since we last met, with the Inflationpocalypse, RAMpocolypse, Tokenpocalypse, Agentic ransomware and semi-autonomous warfare going strong. It's really starting to feel like a Cyberpunk novel in full color. Let's get into it!\n\nThis year's theme is agency. In all of its forms, philosophical, social, legal, business, developmental, all have at their core the concept of acting independently, making independent choices, and influencing outcomes. In fast moving and chaotic times it's normal to feel things are outside of your control, or too big for you to influence. As Hackers we have adapted over the decades to all kinds of upheaval in both the real and online worlds.\n\nHaving agency over your data by creating local backups, from important documents to your prized pr0n collection, gives you a path to recovery from a worst case scenario and helps you sleep better at night. Get agency over your phone, practice how to recover should it be broken or stolen.\n\nThe DEF CON 34 badge, designed and built by Bunnie, is the launch of the first fully inspectable, open, and transparent hardware security processor. It fits the theme of agency perfectly. With this hardware root of trust you can create and store the secrets\n\nWelcome to\n\nyou depend on to operate online, and much more.\n\nCheck out the Badge article to learn more, but this is a big deal and makes your badge a bit of history.\n\nAgency is a different abstraction layer to view yourself. When you make choices of where and how to participate choose options that respect and even enable your agency. Sites and projects should allow you to back up or move your profiles with minimal to no switching costs, support your ability to moderate your interactions and report abuse, provide E2EE private messaging, and not be susceptible to the seduction of enshitification. Take some quiet time and think about agency and what you might do to increase it for yourself or others.\n\nA big welcome to the Benevolent Bureau of Birds (BBB) in their first year organizing and hosting the DEF CON CTF! Please check out their contest and see how attack and defense Capture The Flag is\n\nevolving in the agentic era.\n\nA lot happens at DEF CON, no one\n\ncan see or do it all, so take your\n\ntime and see where the current\n\ntakes you. We are all here to\n\nlearn, teach, make friends, and\n\ntry to understand a bit better how it all worls.\n\nThe Dark Tangent","group":"Network, DCTV & Media"},{"id":"i003","kind":"info","title":"Network Instructions","desc":"Bonjour,\n\nConformément à la réglementation canadienne, toutes les communications seront désormais envoyées en français et en anglais.....haha naw we aren't going to do that.\n\nCongratulations on making it to LVCC - Level 2! It has been a wild year, but we are happy you all made it back or finally got a chance to make it out. The NOC is proud to part of this amazing community and happy to provide the absolute finest questionable zero-trust network access for all conference attendees.\n\nWhat should you do in order to connect to Wi-Fi? If you are a returning guest just do the same thing you did last year but with more confidence... if this is your first time, ask the person sitting next to you... great way to start a conversation:)... if you aren't much of a talker, then follow the steps at:\n\nThe encrypted one with 802.1X authentication and digital certificate verification:\n\nDefCon\n\nThe (other, yet legit) encrypted one with 802.1X authentication and digital certificate verification. But also, with some shiny WPA3 benefits:\n\nDefCon-WPA3\n\nAnd the original, unencrypted, stick-shift, no ABS, Canyonero class, wildest-west of wireless network:\n\nDefCon-Open\n\nSo to recap\n\nDefcon - (get a user/password and cert from https:// wifireg.defcon.org)\n\nDefcon-WPA3 - same as above\n\nDefcon Open - I wouldn't but I hear the cool kids are there.\n\n\"Choice. The problem is choice\"\n\nWi-Fiand 802.1X authentication have had a pretty good relationship in the past few years and, believe or not, we test stuff before we go onsite... seriously we work on this all year. But things might change and there might be some devices out there that really do not like 802.1X with PEAP authentication. Important 802.1X fact: By configuring 802.1X and choosing for your device to \"not verify server certificate\" will probably not only let that device connect to one of the hundreds of rogue access points on the show floor but will also send your login credentials to a rogue radius server. Despite technology advancements, this is still no bueno and defeats the whole purpose of this authentication method.\n\nBe an advocate of cyber common senseTM, and do not, I repeat, do NOT choose the same credentials (aka: username and password) used for stuff that matters:\n\nshopping sites, online-banking, AND, especially your windows domains (yeah, it keeps happening) to connect to the hacker conference network. Make something up, be creative and funny. Here we are now, entertain us.\n\nFor updated information and instructions on how to connect to the Wi-Fialong with the link to download the digital certificate to be used, visit:\n\nFor NOC updates visit https://noc.defcon.org, and also follow us on twitter or reddit. @DEFCON_\n\nMerci pour votre temps. Nous allons maintenant vous ramener à votre conférence de piratage informatique habituelle.\n\nStay awesome!","links":["https://wifireg.defcon.org"],"group":"Network, DCTV & Media"},{"id":"i004","kind":"info","title":"DCTV","desc":"DEF CON will be televised!\n\nCheck out https://dctv.defcon.org for the latest info!","group":"Network, DCTV & Media"},{"id":"i005","kind":"info","title":"DEF CON 34 Convention Media Server","desc":"All DC 34 Content is HERE\n\nFind this year's presentation materials, music, white papers, slides, and more plus leech files from all the past DEF CON conferences and the infocon.org conference archives!\n\nWe expect you to leech at full speed, and the server is warmed up and ready to go. Enjoy!\n\nTo make things easier for you here are some example wget commands:\n\nEXAMPLE wget command to download all of DEF CON 25:\n\nwget -np -m \"https://dc34-media.defcon.org/infocon.org/ cons/DEF CON/DEF CON 25/\"","links":["https://10.0.0.16/","https://dc34-media.defcon.org/"],"group":"Network, DCTV & Media"},{"id":"i006","kind":"info","title":"The Badge","desc":"Your DEF CON 34 badge is a hardware security key!\n\nWe wanted this year's badge to have a life after the conference, so it consists of two parts: a base board with lights and artwork, and a removable clear plastic core module that you can carry around in your pocket after the conference.\n\nThe core module is an open and user-verifiable hardware security key. The entire source code for the badge is open source and written in Rust - from the security application, to its Xous OS, to the secure bootloaders. The circuit board is designed in KiCAD and open source. And, yes, even the design for its RISC-V CPU is open source.\n\nThe heart of the badge is the Baochip-1x System-on-Chip. I helped design this chip, and the DEF CON 34 badge is its first major application.\n\nThe Baochip-1x is my answer to a question that I often lay awake at night and ponder: do I really know what's going on inside my CPU? The Baochip-1x empowers you to review & use the source code for the CPU, cryptography accelerators, and most of the peripherals: it's all on Github.\n\nThe Baochip-1x was made by a hacker, for hackers, so it naturally has some fun features. In particular, the Baochip-1x includes a 700MHz, quad-core RISC-V I/O processor I call the \"BIO\", or the Bao I/O processor.\n\nIt's a go-kart of a CPU designed expressly for flipping I/O pins, and I've prepared a suite of tools for people who want to hack on it: from a C-based toolchain to a detailed hardware simulator (thanks to the open RTL!), to a USB-serial uploader for testing your code. Try it out: the GPIOs on the SAOs are wired up to the BIO!\n\nCheck out https://defcon.org/34b for a list of badge-related resources!\n\nSafe Area (any text or images you don't want possibly cut off)\n\nI also made the chip literally transparent - to infrared light, at least. Most USB microscope cameras are a small DIY modification away from being able to literally see through silicon and inspect the very transistors that compose the Baochip-1x. The photo on the left was taken with such a setup.\n\nWith the Baochip-1x, you don't have to take my word about what's inside the chip: you can look and see for yourself. Although the resolution of what you can see is limited by the wavelength of infrared light, it's easy to do, and it's a major step up from the status quo of blindly trusting the labels\n\nEach badge has a randomly generated, unique light pattern that is seeded off the type of the badge. You can mix light patterns with other badges using the built-in camera to trade QR codes with other attendees' badges. The protocol has \"light encryption\" (pun intended): to exchange lights, the pattern donor scans a nonce generated by your badge. You then scan an encrypted representation of the donor's light pattern. Finally, the received light pattern is blended with your pattern, using inheritance rules inspired by genetics.\n\nThere's a single, symmetric pre-shared key among all the badges: can you break the badge's security and extract the key? In theory, the firmware on the badge is locked down. You're invited to hack on the badge, but loading code \"through the front door\" will erase the pre-shared key. Don't like that? I'm counting on some clever hackers at DEF CON finding other ways in!\n\nIn the spirit of \"with enough eyeballs all bugs are shallow\", I'm hoping that as a community we can improve the security of this open source project by finding bugs and fixing them. As Baochip is a lean, bootstrapped company, I don't have a bounty to offer - but I suspect there will be some great stories to share, or at least some entertainingly embarrassing bugs to learn from. A highly inspectable chip is also a highly fault-injectable chip, and your participation in this experiment will help shape future best practices in secure yet open and user-inspectable hardware.\n\nTech specs of the badge core:\n\n• Baochip-1x mostly open RTL SoC\n\n- 350MHz Vexriscv RV32-IMAC/MMU + 4x 700MHz PicoRV32 RV32-EC/Zmmul I/O cores ...","group":"The Badge"},{"id":"i007","kind":"info","title":"Conference Code of Conduct","desc":"Last updated 3.6.15\n\nDEF CON provides a forum for open discussion between participants, where radical viewpoints are welcome and a high degree of skepticism is expected. However, insulting or harassing other participants is unacceptable. We want DEF CON to be a safe and productive environment for everyone. It's not about what you look like but what's in your mind and how you present yourself that counts at DEF CON.\n\nWe do not condone harassment against any participant, for any reason. Harassment includes deliberate intimidation and targeting individuals in a manner that makes them feel uncomfortable, unwelcome, or afraid.\n\nParticipants asked to stop any harassing behavior are expected to comply immediately. We reserve the right to respond to harassment in the manner we deem appropriate, including but not limited to expulsion without refund and referral to the relevant authorities.\n\nThis Code of Conduct applies to everyone participating at DEF CON - from attendees and exhibitors to speakers, press, volunteers, and Goons.\n\nAnyone can report harassment. If you are at DEF CON and are being harassed, notice that someone else is being harassed, or have any other concerns, you can let us know by contacting any Goon, registration desk, or NFO booth, as well as by calling or texting the hotline at 725-222-0934. As a reminder, you can also contact the hotline during the con if you just need someone supportive to talk to. You can also file a report year-round by contacting safety@ defcon.org. We encourage individuals to report CoC violations as soon as they're able to so we can begin our investigation before evidence is lost or destroyed, but it's never too late to make a report.\n\nConference staff will be happy to help participants contact hotel security, local law enforcement, or otherwise assist those experiencing harassment to feel safe for the duration of DEF CON.\n\nRemember: The CON is what you make of it, and as a community we can create a great experience for everyone.\n\n- The Dark Tangent","group":"Code of Conduct & Hotline"},{"id":"i008","kind":"info","title":"DEF CON Support Hotline","desc":"Mental wellness and physical safety are both important to us at DEF CON. If you're struggling, scared, or just need someone to voice a concern to, DEF CON Hotline is here to support you. Help is available to all, especially if talking to DEF CON Goons in person isn't a good option for you.\n\nHotline is confidential and available well into the early morning hours on conference days. Volunteers are standing by to listen and, if needed, connect you to appropriate support services. Whether that's SOC Goons or external services we partner with such as Signs of Hope and the Nevada Coalition to End Domestic and Sexual Violence to provide expert resources for survivors. The Hotline team is diverse and undergoes extensive training including dedicated support for LGBTQIA+ folks. Hotline is here to listen.\n\nYou can reach DEF CON Hotline Goons during normal hours of operation to anonymously report any behavior violating our code of conduct or to find an empathic ear by phone call, text, or Signal at + 1 (725) 222-0934, or reaching out on Discord @ defconhotline.\n\nDEF CON Goons are the electrons that enable the conference to run, and should you have a question or need help they are there for you. Here are some goon facts:\n\nDEF CON 34 Goons should all have visible patches with their nickname on them so it is easier to remember who you talk to about what.\n\nGoons are in one of two states, either ON duty or OFF duty.\n\nIf they are ON DUTY they will be wearing a current year, red, DEF CON 34 Goon shirt, a current year Goon badge, and a name patch.\n\nIf Goons are OFF DUTY they will not be wearing the red Goon shirt, but may still have a Goon badge on so they can still access the meeting spaces.\n\nGoons ON DUTY are not supposed to drink alcohol.\n\nGoons OFF DUTY have been known to drink alcohol.\n\nPAST Goons may seen wearing previous red shirts or badges as they helped run a past DEF CON, but that DOES NOT make them a current DEF CON 34 Goon.\n\nPlease use the name patch if you have any feedback on Goons, good or bad. Feedback can be sent to feedback@defcon.org\n\nGoons Goon for many reasons, but the pay isn't one of them. They put in long hours and many weeks or months of planning and take time off work to make the con happen for everyone. Please feel free to ask them questions if you have any desire to join the ranks at a future Con.","group":"Code of Conduct & Hotline"}]}