The Caspian Region's Premier Gathering for Real-World Hackers & Security Leaders
CyberHackCon is the Caspian region's premier offensive security conference, uniting international vulnerability researchers, defense intelligence professionals, CISOs, security managers, and elite whitehats in Baku.
Designed for professionals operating at the edge of security research, CyberHackCon delivers strict technical briefings, live hacking demonstrations, and deep investigations into modern cyber warfare. No marketing fluff, no high-level sales decks, just raw engineering, zero-day disclosures, and high-impact exploitation mechanics.
> 1. Disclose vulnerabilities responsibly but fully.
> 2. Educate infrastructure engineers on real-world threat capabilities.
> 3. Advance regional talent through direct hands-on village labs.
Advanced exploitation tactics, kernel-level escapes, hypervisor hacking, and bypassing next-generation telemetry controls.
Hacking physical hardware, SCADA/ICS grid penetration, satellite communications, and software-defined radio (SDR) interception.
Autonomous threat agents, adversarial AI generation, code synthesis vectors, and defending LLM orchestration layers.
Presenting vulnerability disclosures and research from leading specialists worldwide.
CEO at @CyberHackCon / Organizer & Moderator
OPEN DOSSIER [SEC-INFO] →CISO & Deputy Head at SCISSS / Head of CERT.GOV.AZ
OPEN DOSSIER [SEC-INFO] →Offensive Security Red Team Manager at NBSP
OPEN DOSSIER [SEC-INFO] →CTO at Veiliux & CEO at Speeqr
OPEN DOSSIER [SEC-INFO] →Head of CTI at Signify / Founder, Underdark.ai
OPEN DOSSIER [SEC-INFO] →Security Researcher, Autonomous Offensive Security
OPEN DOSSIER [SEC-INFO] →Head of Cyber Defense & Offensive Security at HBL
OPEN DOSSIER [SEC-INFO] →Entrepreneur & Strategic Advisor
OPEN DOSSIER [SEC-INFO] →Security Researcher, Identity & Session Security
OPEN DOSSIER [SEC-INFO] →Consulting Manager at Google EMEA
OPEN DOSSIER [SEC-INFO] →Senior Penetration Tester at Hoffmann Netherlands
OPEN DOSSIER [SEC-INFO] →Head of Investigations at InfoGuard
OPEN DOSSIER [SEC-INFO] →Field CTO, South EMEA at Fortinet
OPEN DOSSIER [SEC-INFO] →Domain Consultant at Palo Alto Networks
OPEN DOSSIER [SEC-INFO] →CEO at @CyberHackCon / Organizer & Moderator
OPEN DOSSIER [SEC-INFO] →CISO & Deputy Head at SCISSS / Head of CERT.GOV.AZ
OPEN DOSSIER [SEC-INFO] →Offensive Security Red Team Manager at NBSP
OPEN DOSSIER [SEC-INFO] →CTO at Veiliux & CEO at Speeqr
OPEN DOSSIER [SEC-INFO] →Head of CTI at Signify / Founder, Underdark.ai
OPEN DOSSIER [SEC-INFO] →Security Researcher, Autonomous Offensive Security
OPEN DOSSIER [SEC-INFO] →Head of Cyber Defense & Offensive Security at HBL
OPEN DOSSIER [SEC-INFO] →Entrepreneur & Strategic Advisor
OPEN DOSSIER [SEC-INFO] →Security Researcher, Identity & Session Security
OPEN DOSSIER [SEC-INFO] →Consulting Manager at Google EMEA
OPEN DOSSIER [SEC-INFO] →Senior Penetration Tester at Hoffmann Netherlands
OPEN DOSSIER [SEC-INFO] →Head of Investigations at InfoGuard
OPEN DOSSIER [SEC-INFO] →Field CTO, South EMEA at Fortinet
OPEN DOSSIER [SEC-INFO] →Domain Consultant at Palo Alto Networks
OPEN DOSSIER [SEC-INFO] →CEO at @CyberHackCon / Organizer & Moderator
OPEN DOSSIER [SEC-INFO] →CISO & Deputy Head at SCISSS / Head of CERT.GOV.AZ
OPEN DOSSIER [SEC-INFO] →Offensive Security Red Team Manager at NBSP
OPEN DOSSIER [SEC-INFO] →CTO at Veiliux & CEO at Speeqr
OPEN DOSSIER [SEC-INFO] →Head of CTI at Signify / Founder, Underdark.ai
OPEN DOSSIER [SEC-INFO] →Security Researcher, Autonomous Offensive Security
OPEN DOSSIER [SEC-INFO] →Head of Cyber Defense & Offensive Security at HBL
OPEN DOSSIER [SEC-INFO] →Entrepreneur & Strategic Advisor
OPEN DOSSIER [SEC-INFO] →Security Researcher, Identity & Session Security
OPEN DOSSIER [SEC-INFO] →Consulting Manager at Google EMEA
OPEN DOSSIER [SEC-INFO] →Senior Penetration Tester at Hoffmann Netherlands
OPEN DOSSIER [SEC-INFO] →Head of Investigations at InfoGuard
OPEN DOSSIER [SEC-INFO] →Field CTO, South EMEA at Fortinet
OPEN DOSSIER [SEC-INFO] →Domain Consultant at Palo Alto Networks
OPEN DOSSIER [SEC-INFO] →CEO at @CyberHackCon / Organizer & Moderator
OPEN DOSSIER [SEC-INFO] →CISO & Deputy Head at SCISSS / Head of CERT.GOV.AZ
OPEN DOSSIER [SEC-INFO] →Offensive Security Red Team Manager at NBSP
OPEN DOSSIER [SEC-INFO] →CTO at Veiliux & CEO at Speeqr
OPEN DOSSIER [SEC-INFO] →Head of CTI at Signify / Founder, Underdark.ai
OPEN DOSSIER [SEC-INFO] →Security Researcher, Autonomous Offensive Security
OPEN DOSSIER [SEC-INFO] →Head of Cyber Defense & Offensive Security at HBL
OPEN DOSSIER [SEC-INFO] →Entrepreneur & Strategic Advisor
OPEN DOSSIER [SEC-INFO] →Security Researcher, Identity & Session Security
OPEN DOSSIER [SEC-INFO] →Consulting Manager at Google EMEA
OPEN DOSSIER [SEC-INFO] →Senior Penetration Tester at Hoffmann Netherlands
OPEN DOSSIER [SEC-INFO] →Head of Investigations at InfoGuard
OPEN DOSSIER [SEC-INFO] →Field CTO, South EMEA at Fortinet
OPEN DOSSIER [SEC-INFO] →Domain Consultant at Palo Alto Networks
OPEN DOSSIER [SEC-INFO] →Examine the schedule of key briefings, panels, and workshops.
Check-in at the registration desk, collect your attendee badges and conference materials, and network over morning coffee.
Welcome address by the organizing committee, introducing the tracks, speaker roster, and key cybersecurity themes for CyberHackCon 2026.
Opening remarks on the strategic state of national cyber security, critical infrastructure protection, and the critical role of incident response coordination.
A keynote briefing on how artificial intelligence is reshaping cyber conflict, from AI-generated exploits and autonomous attack tooling to the strategic defenses organizations must build for the next era of cyber warfare.
Rahul Vashisht explores advanced AV/EDR evasion techniques, exploiting design limitations in security controls, and executing custom malware payloads without triggering behavioral telemetry.
Security teams today are drowning in alerts, logs, and false positives, while real threats slip through the cracks. This session looks at why traditional detection approaches generate so much noise, how attackers exploit alert fatigue to stay hidden, and what it takes to build detection practices that surface the signals that actually matter.
Drawing on frontline incident response and threat intelligence data, this briefing unpacks the key findings of the M-Trends 2026 report: how attacker dwell time, tactics, and targeting are evolving, and what defenders should prioritize based on a year of real-world breach investigations.
This briefing covers CTI fundamentals, darknet and deep web environments, and collection sources, alongside threat actor profiling, combining darknet monitoring with predictive intelligence to give corporates a clearer view of emerging threats.
Cyberspace has become a central arena for state power and conflict. This talk traces major turning points — Estonia, Stuxnet, the Ukraine grid attacks — to show why cyber incidents are political events, not just technical ones, and examines proxies, attribution, deterrence, and the rise of digital sovereignty.
Drawing on 25+ years of enterprise and government security leadership across EMEA, this session explores how AI adoption is reshaping the threat landscape, why Zero Trust has become foundational to secure cloud transformation, and how organizations can translate emerging AI-driven risks into practical, actionable security strategy.
Can a malicious instruction embedded in a document survive as it moves through a chain of AI agents? This talk tests what remains after summarization, rewriting, translation, and cross-agent handoffs, then walks through a live demonstration tracing an instruction from its origin to a final action, and what provenance tracking can do to stop it.
This session follows the adversary’s journey from reconnaissance to compromise. It demonstrates how attackers discover publicly exposed assets, identify weaknesses, correlate leaked credentials and vulnerabilities, and build attack paths toward critical business systems. Participants will learn how External Attack Surface Management, threat intelligence and vulnerability-led penetration testing can be combined to continuously identify, prioritize and reduce external cyber exposure before it develops into a breach.
A catered gourmet lunch served at The Ritz-Carlton, Baku. Take this time to network with speakers, sponsors, and fellow cybersecurity leaders from the region.
Strong authentication does not always mean a secure session. This session explores how attackers can hijack authenticated browser sessions after MFA or passkeys have already done their job. Through a live, controlled demonstration, the talk will show how session replay works, why traditional authentication controls may not stop it, and how defenders can detect and respond to session theft using modern identity and security controls.
An exclusive session featuring one of our lead conference sponsors presenting real-world case studies, defensive technology deployments, or cybersecurity solutions.
A builder's account of an autonomous offensive agent developed over four months and 326 versions against real bug-bounty programs — the fingerprint, hypothesis, test, finding pipeline, the engineering fixes that made it survive contact with live targets, and the failure modes that never make it into demos.
A short break to recharge, grab a coffee, and network with fellow attendees, speakers, and sponsors.
A briefing on the human dimension of cybersecurity, exploring how psychology, governance, and strategic decision-making shape digital resilience, and why the human mind is often the first attack surface.
An exclusive session featuring one of our lead conference sponsors presenting real-world case studies, defensive technology deployments, or cybersecurity solutions.
An elite technical briefing to be announced. A leading security researcher will present their latest findings on offensive security, threat intelligence, or vulnerability research.
An elite technical briefing to be announced. A leading security researcher will present their latest findings on offensive security, threat intelligence, or vulnerability research.
An elite technical briefing to be announced. A leading security researcher will present their latest findings on offensive security, threat intelligence, or vulnerability research.
An exclusive session featuring one of our lead conference sponsors presenting real-world case studies, defensive technology deployments, or cybersecurity solutions.
Closing remarks by the organizing committee, followed by an appreciation ceremony presenting awards to our lead sponsors, strategic partners, and speakers who made CyberHackCon 2026 possible.
Attendance at CyberHackCon is strictly by invitation and vetted. We limit space to 200 participants to maintain high technical focus and operational quality.
Slots are reserved for cybersecurity researchers, enterprise CISO/security leads, government agency technicians, and qualified postgraduate engineering students. Tickets are free of charge, but attendance requires a confirmed, personalized access token.
To request an attendee invite token, send an encrypted or standard email containing your credentials (Name, Organization, and Professional Specialty) directly to our security officer:
You may encrypt your message using our public PGP keys or submit your public key to establish a secure transmission channel.