Event Guides

DEF CON 34 Attendee List: Who's Going and How to Reach Them

Sam Kumar··13 min read
DEF CON 34 attendee listDEF CON 34 exhibitorswho attends DEF CONDEF CON 2026 datescybersecurity conference attendee listhacker conference attendee dataDEF CON attendeesDEF CON 34 exhibitor list

Quick answer: A DEF CON 34 attendee list is a verified database of security professionals attending DEF CON in August 2026. WhoGoes surfaces these contacts from public LinkedIn posts, so you get names, titles, companies, and proof of attendance. Preview 5 contacts free at /events/def-con-34.

What Is a DEF CON 34 Attendee List?

A DEF CON 34 attendee list is a contact database of verified professionals attending the DEF CON hacking conference in Las Vegas.

Unlike most trade shows, DEF CON doesn't publish a registration directory, because the conference has deep roots in hacker culture where many attendees value their anonymity, badges are bought with cash, and using your real name is entirely optional. That makes it hard. Building a reliable contact list requires a different approach than pulling a CSV out of a Salesforce event.

That's the core challenge. And it's exactly why tools that source attendee data from public LinkedIn posts work so well for DEF CON. People who post about attending aren't hiding. They're signaling.

DEF CON 34 by the Numbers

MetricFigure
Expected attendees~30,000 (source)
DatesAugust 6-9, 2026
LocationLas Vegas Convention Center, West Hall
Theme"Agency"
Villages30+ specialized tracks (source)
Badge price$560-$600 (source)
First held1993 (34th edition)
DEF CON attendance growth chart from 1999 to 2026 showing growth from 2,000 to over 30,000 attendees
DEF CON attendance has grown from roughly 2,000 in 1999 to over 30,000 by the mid-2020s. Source: DEF CON organizer data.

Bottom Line Up Front

  • 30,000+ security professionals in one building for four days, from pentesters to CISOs to government operators
  • DEF CON's culture is anti-marketing, which means your outreach has to be genuine, technical, and timing-aware
  • Enterprise buyers are there, but they're mixed in with researchers, students, and hobbyists. Knowing who's who matters.
  • LinkedIn posts are the best signal for identifying attendees with real buying authority, since DEF CON doesn't share registration data
  • Preview 5 verified DEF CON 34 contacts free at /events/def-con-34, each backed by a public LinkedIn post

What Cybersecurity Buyers Actually Want at DEF CON 34

Most SDRs think of DEF CON as a hacker party. It is. But it's also where enterprise security teams go to pressure-test their assumptions.

The 2026 theme is "Agency," and it focuses on self-determination in technology use. That's not abstract philosophy for the people walking the floor. It maps directly to purchasing decisions: autonomous threat detection, AI-driven security operations, zero-trust architecture that doesn't depend on a single vendor's stack.

I've talked to security teams who came back from DEF CON and immediately ripped out a tool they'd been using for two years. The conference has that effect. People see what's actually possible (or what's actually broken) and it changes their roadmap.

Here's what the different buyer segments are evaluating:

CISOs and VP-level security leaders are watching the main stage talks and networking in the hallways. They're interested in macro trends: AI risk, supply chain security, regulatory shifts. They don't want demos. They want to know if you understand their threat model.

Security engineers and architects spend their time in the Villages, where these hands-on evaluators will quietly test your product against real workloads long before any budget conversation happens, moving between Cloud Village, ICS Village, AI Village, and AppSec Village. If your tool can't survive the Village floor, it won't survive their evaluation.

Pentesters and red teamers are competing in CTF, attending offensive security talks, and hanging out in Adversary Village. They influence tooling decisions even if they don't own the budget. A pentester who loves your product will lobby their CISO harder than any outbound email ever could.

Government and DoD personnel are there in larger numbers than most people realize. The conference has had a visible federal presence for years. These buyers have long procurement cycles but massive contract values.

The DEF CON Attendee Profile Most SDRs Overlook

If you're selling security tools and you're only targeting CISOs at DEF CON, you're missing the bigger picture. Way bigger.

DEF CON's crowd is unusually diverse in both seniority and role, and that diversity is entirely by design, because the conference deliberately keeps its badge price low enough that students, independent researchers, and Fortune 500 CISOs all end up in the same rooms. The badge costs $560-$600, not $2,500. Students show up. Independent researchers show up. Bug bounty hunters who've earned six figures on HackerOne show up. And yes, the CISO of a Fortune 500 company shows up too, sometimes wearing the same black t-shirt as everyone else.

The profiles that matter most for B2B outreach, broken down:

Attendee SegmentEst. ShareBuying RolePain Points
Security engineers / architects~25%Evaluator, influencerTool sprawl, alert fatigue, integration gaps
CISOs / VPs of Security~10%Decision-makerBudget justification, board reporting, vendor consolidation
Pentesters / red teamers~15%Influencer, end userFalse positives, slow scans, poor API coverage
Government / DoD / IC~10%Procurement leadFedRAMP, compliance, long sales cycles
Researchers / academics~15%Thought leader, influencerOpen-source tooling, research access
CTF competitors / bug bounty~10%End user, future hireTooling speed, automation, accuracy
GRC / compliance~5%Co-signerAudit readiness, regulatory mapping
Other (media, students, hobbyists)~10%N/AN/A

Not every segment is a sales target. But knowing which village they'll be in, which talks they'll attend, and what they posted on LinkedIn before the event gives you a massive edge over cold outreach.

Don't pitch DEF CON attendees like you'd pitch RSA attendees. Skip the polished marketing language. Reference a specific talk, village, or CTF challenge. DEF CON people can smell a template from three paragraphs away.

Want the DEF CON 34 attendee list now? Preview 5 verified contacts free, each with LinkedIn proof of attendance.

Preview DEF CON 34 free

Buyer Signals: Spotting the Hot Leads Before the Badge Pickup Line

The single best signal for DEF CON buyer intent is a LinkedIn post. Full stop.

Someone who posts "Heading to DEF CON 34 to check out the AI Village and Cloud Village" is telling you three things: they're going, they're interested in AI and cloud security, and they're not hiding it. That last part matters. In a conference where anonymity is part of the culture, a public LinkedIn post is a strong intent signal.

Other signals to look for:

  • Village volunteering or speaking: If they're presenting at a village or running a workshop, they're deep in that domain. Reference their specific contribution.
  • CTF team membership: CTF competitors are often senior engineers or team leads. They influence tool purchases even if they don't sign checks.
  • Pre-conference blog posts or tweets: Security researchers often publish analysis of DEF CON topics before the event. That's content you can reference in outreach.
  • Company sending multiple employees: When a company sends 3-5 people to DEF CON (not just one), that's a team evaluation signal. Probably budget allocated.
  • Job title + LinkedIn post combo: A "Director of Security Operations" posting about DEF CON is a very different lead than a college student posting about it. Both are valid attendees. Only one has a procurement card.

I keep saying this to SDR teams: proof of attendance isn't just verification. It's the opening line of your email. "I saw you're heading to DEF CON 34 for the Cloud Village" is a thousand times better than "I noticed you work in cybersecurity."

Check whether the attendee posted about specific DEF CON villages or talks. That tells you their focus area and gives you a natural, non-salesy angle for your first message. Generic "excited for DEF CON!" posts are weaker signals but still confirm attendance.

WhoGoes contact card showing LinkedIn proof of DEF CON attendance
Each contact includes the LinkedIn post where they mentioned attending DEF CON, so you know the data is real.

DEF CON 34 vs. Black Hat USA vs. RSA Conference: Different Crowds, Different Plays

SDRs who sell into cybersecurity often treat DEF CON, Black Hat, and RSAC as interchangeable. They're not. Not even close.

FactorDEF CON 34Black Hat USARSA Conference
Attendees~30,000~20,000~43,000
Badge cost$560-$600$2,500-$3,500+$2,000-$3,000+
VibeHacker community, casualCorporate, enterpriseEnterprise, vendor expo
Buyer seniorityMixed (students to CISOs)Skews senior / enterpriseSkews senior / executive
Vendor presenceMinimal, curatedHeavy (expo hall)Very heavy (430+ exhibitors)
Best for outreach to...Engineers, researchers, practitionersEnterprise security teams, consultantsCISOs, executives, procurement
Outreach toneTechnical, casual, specificProfessional, solution-focusedExecutive, ROI-driven
Timing (2026)Aug 6-9Aug 1-6Typically spring

The practical implication is straightforward: if you're selling to security engineers and practitioners, DEF CON's audience is more aligned with your buyer, whereas if you're selling to CISOs who control million-dollar budgets, RSA is probably a better primary target and DEF CON a strong secondary one. Many senior buyers attend both Black Hat and DEF CON during "Hacker Summer Camp" week in Vegas, so there's real overlap.

One thing I've noticed: the outreach that works for RSA will bomb at DEF CON. A polished, branded email with a case study PDF attached? That's RSA language. For DEF CON attendees, you need to sound like a peer, not a vendor. Short, specific, technically aware.

Black Hat and DEF CON run back-to-back in Las Vegas. Many attendees go to both. If someone posts about "Hacker Summer Camp" or "Vegas security week," they're likely attending DEF CON 34 and Black Hat. Target them for both events.

Two Outreach Angles That Actually Work for DEF CON Attendees

Most cold outreach to security people fails. DEF CON attendees are even harder to reach because they're trained to spot social engineering. Your email is, in a way, a social engineering attempt. They'll notice.

Angle 1: The Village-Specific Hook

Subject: Quick question about your [Village Name] session at DC34

Hey [First Name],

Saw your post about heading to DEF CON 34 for the [AI Village / Cloud Village / ICS Village]. We've been working on [specific technical problem relevant to that village], and I'd love to get 10 minutes of your perspective.

Not a sales pitch. Genuinely curious how practitioners like you are thinking about [specific topic].

[Your name]

This works because it's specific, short, and positions you as a learner rather than a seller. Hackers respect curiosity.

Angle 2: The Post-Conference Follow-Up

Subject: That DC34 talk on [topic] was wild

Hey [First Name],

I noticed you were at DEF CON 34 (saw your LinkedIn post about [specific detail]). The [speaker name] talk on [topic] is still bouncing around in my head.

We're working on something related, specifically around [one-sentence description]. Worth a 15-min chat, or should I just send you the technical doc?

[Your name]

Post-event outreach for DEF CON tends to work better than pre-event, honestly, because before the conference people are heads-down prepping talks, rehearsing CTF strategies, and sorting out travel, while afterward they're still processing what they saw and far more open to a real conversation. Timing is everything. The follow-up window is about two weeks.

Who Exhibits at DEF CON 34?

DEF CON's exhibitor footprint is intentionally small. The conference keeps its vendor presence curated, so unlike RSA or Black Hat, you won't find a sprawling expo hall packed with 400 booths, flashing lights, and badge scanners competing for your attention at every turn. It's deliberate. That's the point.

According to DEF CON's call for exhibitors, the vendor area focuses on products and services relevant to the hacker community: security tools, hardware, training platforms, and community organizations. The exhibitor list for DEF CON 34 will be finalized closer to the event.

What this means for SDRs: the exhibitor list itself is a prospecting signal. Companies that exhibit at DEF CON (not just RSA) are investing in the practitioner audience. Their competitors might be your targets. And the people staffing those booths? They're worth knowing too, since they're often product managers or engineers, not just sales reps.

WhoGoes DEF CON 34 attendee list preview showing locked and unlocked contact rows
Preview the first rows free, then unlock verified DEF CON 34 contacts with credits. Updated daily as new LinkedIn posts appear.

When Is DEF CON 34 and How Should You Time Your Outreach?

DEF CON 34 runs August 6-9, 2026 at the Las Vegas Convention Center West Hall, landing right after Black Hat USA (August 1-6) so that a large share of attendees simply stay in town for both shows during the stretch the community affectionately calls Hacker Summer Camp. Mark the date. Timing matters here.

Your outreach window depends on whether you're running a pre-show or a post-show play:

  • 6-8 weeks before (mid-June): Start identifying attendees who've posted about going. Build your list early.
  • 2-4 weeks before (mid-July): First outreach wave. Keep it light. Reference their village or talk interests.
  • Week of the event (Aug 6-9): Don't email during the conference itself. People are busy, offline, or deliberately ignoring vendor messages.
  • 1-2 weeks after (Aug 10-23): Prime follow-up window. Reference specific talks, announcements, or village demos. This is when conversations convert.

How to Get the DEF CON 34 Attendee List

DEF CON doesn't sell or share its registration list. The conference has always protected attendee privacy, and that's not changing. So the traditional route of buying an organizer list doesn't apply here.

WhoGoes takes a different approach: it surfaces verified attendees from public LinkedIn posts where people mention DEF CON 34, giving you names, job titles, companies, email addresses, and the actual LinkedIn post as proof that each person is genuinely going. Unlike purchased lists that might be outdated or fabricated, every contact comes with LinkedIn proof that they're actually going.

Preview 5 DEF CON 34 contacts free at /events/def-con-34. The list updates daily as more people post about attending.

WhoGoes surfaces DEF CON 34 attendees from public LinkedIn posts. You get verified names, emails, companies, and proof of attendance. Preview 5 contacts free, then unlock more starting at $29 for 200 contacts.

Credits start at $29 for 200 contacts. No subscription. No contract. Credits don't expire. For the complete guide on every method of sourcing event attendee data, see How to Get a Trade Show Attendee List in 2026.

Related Reading

Ready to get your attendee list?

Browse 1,200+ trade shows. 5 free preview contacts per event.

Browse Events Free