DEF CON 34 Attendee List: Who's Going and How to Reach Them
Quick answer: A DEF CON 34 attendee list is a verified database of security professionals attending DEF CON in August 2026. WhoGoes surfaces these contacts from public LinkedIn posts, so you get names, titles, companies, and proof of attendance. Preview 5 contacts free at /events/def-con-34.
What Is a DEF CON 34 Attendee List?
A DEF CON 34 attendee list is a contact database of verified professionals attending the DEF CON hacking conference in Las Vegas.
Unlike most trade shows, DEF CON doesn't publish a registration directory, because the conference has deep roots in hacker culture where many attendees value their anonymity, badges are bought with cash, and using your real name is entirely optional. That makes it hard. Building a reliable contact list requires a different approach than pulling a CSV out of a Salesforce event.
That's the core challenge. And it's exactly why tools that source attendee data from public LinkedIn posts work so well for DEF CON. People who post about attending aren't hiding. They're signaling.
DEF CON 34 by the Numbers
| Metric | Figure |
|---|---|
| Expected attendees | ~30,000 (source) |
| Dates | August 6-9, 2026 |
| Location | Las Vegas Convention Center, West Hall |
| Theme | "Agency" |
| Villages | 30+ specialized tracks (source) |
| Badge price | $560-$600 (source) |
| First held | 1993 (34th edition) |
Bottom Line Up Front
- 30,000+ security professionals in one building for four days, from pentesters to CISOs to government operators
- DEF CON's culture is anti-marketing, which means your outreach has to be genuine, technical, and timing-aware
- Enterprise buyers are there, but they're mixed in with researchers, students, and hobbyists. Knowing who's who matters.
- LinkedIn posts are the best signal for identifying attendees with real buying authority, since DEF CON doesn't share registration data
- Preview 5 verified DEF CON 34 contacts free at /events/def-con-34, each backed by a public LinkedIn post
What Cybersecurity Buyers Actually Want at DEF CON 34
Most SDRs think of DEF CON as a hacker party. It is. But it's also where enterprise security teams go to pressure-test their assumptions.
The 2026 theme is "Agency," and it focuses on self-determination in technology use. That's not abstract philosophy for the people walking the floor. It maps directly to purchasing decisions: autonomous threat detection, AI-driven security operations, zero-trust architecture that doesn't depend on a single vendor's stack.
I've talked to security teams who came back from DEF CON and immediately ripped out a tool they'd been using for two years. The conference has that effect. People see what's actually possible (or what's actually broken) and it changes their roadmap.
Here's what the different buyer segments are evaluating:
CISOs and VP-level security leaders are watching the main stage talks and networking in the hallways. They're interested in macro trends: AI risk, supply chain security, regulatory shifts. They don't want demos. They want to know if you understand their threat model.
Security engineers and architects spend their time in the Villages, where these hands-on evaluators will quietly test your product against real workloads long before any budget conversation happens, moving between Cloud Village, ICS Village, AI Village, and AppSec Village. If your tool can't survive the Village floor, it won't survive their evaluation.
Pentesters and red teamers are competing in CTF, attending offensive security talks, and hanging out in Adversary Village. They influence tooling decisions even if they don't own the budget. A pentester who loves your product will lobby their CISO harder than any outbound email ever could.
Government and DoD personnel are there in larger numbers than most people realize. The conference has had a visible federal presence for years. These buyers have long procurement cycles but massive contract values.
The DEF CON Attendee Profile Most SDRs Overlook
If you're selling security tools and you're only targeting CISOs at DEF CON, you're missing the bigger picture. Way bigger.
DEF CON's crowd is unusually diverse in both seniority and role, and that diversity is entirely by design, because the conference deliberately keeps its badge price low enough that students, independent researchers, and Fortune 500 CISOs all end up in the same rooms. The badge costs $560-$600, not $2,500. Students show up. Independent researchers show up. Bug bounty hunters who've earned six figures on HackerOne show up. And yes, the CISO of a Fortune 500 company shows up too, sometimes wearing the same black t-shirt as everyone else.
The profiles that matter most for B2B outreach, broken down:
| Attendee Segment | Est. Share | Buying Role | Pain Points |
|---|---|---|---|
| Security engineers / architects | ~25% | Evaluator, influencer | Tool sprawl, alert fatigue, integration gaps |
| CISOs / VPs of Security | ~10% | Decision-maker | Budget justification, board reporting, vendor consolidation |
| Pentesters / red teamers | ~15% | Influencer, end user | False positives, slow scans, poor API coverage |
| Government / DoD / IC | ~10% | Procurement lead | FedRAMP, compliance, long sales cycles |
| Researchers / academics | ~15% | Thought leader, influencer | Open-source tooling, research access |
| CTF competitors / bug bounty | ~10% | End user, future hire | Tooling speed, automation, accuracy |
| GRC / compliance | ~5% | Co-signer | Audit readiness, regulatory mapping |
| Other (media, students, hobbyists) | ~10% | N/A | N/A |
Not every segment is a sales target. But knowing which village they'll be in, which talks they'll attend, and what they posted on LinkedIn before the event gives you a massive edge over cold outreach.
Don't pitch DEF CON attendees like you'd pitch RSA attendees. Skip the polished marketing language. Reference a specific talk, village, or CTF challenge. DEF CON people can smell a template from three paragraphs away.
Want the DEF CON 34 attendee list now? Preview 5 verified contacts free, each with LinkedIn proof of attendance.
Preview DEF CON 34 freeBuyer Signals: Spotting the Hot Leads Before the Badge Pickup Line
The single best signal for DEF CON buyer intent is a LinkedIn post. Full stop.
Someone who posts "Heading to DEF CON 34 to check out the AI Village and Cloud Village" is telling you three things: they're going, they're interested in AI and cloud security, and they're not hiding it. That last part matters. In a conference where anonymity is part of the culture, a public LinkedIn post is a strong intent signal.
Other signals to look for:
- Village volunteering or speaking: If they're presenting at a village or running a workshop, they're deep in that domain. Reference their specific contribution.
- CTF team membership: CTF competitors are often senior engineers or team leads. They influence tool purchases even if they don't sign checks.
- Pre-conference blog posts or tweets: Security researchers often publish analysis of DEF CON topics before the event. That's content you can reference in outreach.
- Company sending multiple employees: When a company sends 3-5 people to DEF CON (not just one), that's a team evaluation signal. Probably budget allocated.
- Job title + LinkedIn post combo: A "Director of Security Operations" posting about DEF CON is a very different lead than a college student posting about it. Both are valid attendees. Only one has a procurement card.
I keep saying this to SDR teams: proof of attendance isn't just verification. It's the opening line of your email. "I saw you're heading to DEF CON 34 for the Cloud Village" is a thousand times better than "I noticed you work in cybersecurity."
Check whether the attendee posted about specific DEF CON villages or talks. That tells you their focus area and gives you a natural, non-salesy angle for your first message. Generic "excited for DEF CON!" posts are weaker signals but still confirm attendance.

DEF CON 34 vs. Black Hat USA vs. RSA Conference: Different Crowds, Different Plays
SDRs who sell into cybersecurity often treat DEF CON, Black Hat, and RSAC as interchangeable. They're not. Not even close.
| Factor | DEF CON 34 | Black Hat USA | RSA Conference |
|---|---|---|---|
| Attendees | ~30,000 | ~20,000 | ~43,000 |
| Badge cost | $560-$600 | $2,500-$3,500+ | $2,000-$3,000+ |
| Vibe | Hacker community, casual | Corporate, enterprise | Enterprise, vendor expo |
| Buyer seniority | Mixed (students to CISOs) | Skews senior / enterprise | Skews senior / executive |
| Vendor presence | Minimal, curated | Heavy (expo hall) | Very heavy (430+ exhibitors) |
| Best for outreach to... | Engineers, researchers, practitioners | Enterprise security teams, consultants | CISOs, executives, procurement |
| Outreach tone | Technical, casual, specific | Professional, solution-focused | Executive, ROI-driven |
| Timing (2026) | Aug 6-9 | Aug 1-6 | Typically spring |
The practical implication is straightforward: if you're selling to security engineers and practitioners, DEF CON's audience is more aligned with your buyer, whereas if you're selling to CISOs who control million-dollar budgets, RSA is probably a better primary target and DEF CON a strong secondary one. Many senior buyers attend both Black Hat and DEF CON during "Hacker Summer Camp" week in Vegas, so there's real overlap.
One thing I've noticed: the outreach that works for RSA will bomb at DEF CON. A polished, branded email with a case study PDF attached? That's RSA language. For DEF CON attendees, you need to sound like a peer, not a vendor. Short, specific, technically aware.
Black Hat and DEF CON run back-to-back in Las Vegas. Many attendees go to both. If someone posts about "Hacker Summer Camp" or "Vegas security week," they're likely attending DEF CON 34 and Black Hat. Target them for both events.
Two Outreach Angles That Actually Work for DEF CON Attendees
Most cold outreach to security people fails. DEF CON attendees are even harder to reach because they're trained to spot social engineering. Your email is, in a way, a social engineering attempt. They'll notice.
Angle 1: The Village-Specific Hook
Subject: Quick question about your [Village Name] session at DC34
Hey [First Name],
Saw your post about heading to DEF CON 34 for the [AI Village / Cloud Village / ICS Village]. We've been working on [specific technical problem relevant to that village], and I'd love to get 10 minutes of your perspective.
Not a sales pitch. Genuinely curious how practitioners like you are thinking about [specific topic].
[Your name]
This works because it's specific, short, and positions you as a learner rather than a seller. Hackers respect curiosity.
Angle 2: The Post-Conference Follow-Up
Subject: That DC34 talk on [topic] was wild
Hey [First Name],
I noticed you were at DEF CON 34 (saw your LinkedIn post about [specific detail]). The [speaker name] talk on [topic] is still bouncing around in my head.
We're working on something related, specifically around [one-sentence description]. Worth a 15-min chat, or should I just send you the technical doc?
[Your name]
Post-event outreach for DEF CON tends to work better than pre-event, honestly, because before the conference people are heads-down prepping talks, rehearsing CTF strategies, and sorting out travel, while afterward they're still processing what they saw and far more open to a real conversation. Timing is everything. The follow-up window is about two weeks.
Who Exhibits at DEF CON 34?
DEF CON's exhibitor footprint is intentionally small. The conference keeps its vendor presence curated, so unlike RSA or Black Hat, you won't find a sprawling expo hall packed with 400 booths, flashing lights, and badge scanners competing for your attention at every turn. It's deliberate. That's the point.
According to DEF CON's call for exhibitors, the vendor area focuses on products and services relevant to the hacker community: security tools, hardware, training platforms, and community organizations. The exhibitor list for DEF CON 34 will be finalized closer to the event.
What this means for SDRs: the exhibitor list itself is a prospecting signal. Companies that exhibit at DEF CON (not just RSA) are investing in the practitioner audience. Their competitors might be your targets. And the people staffing those booths? They're worth knowing too, since they're often product managers or engineers, not just sales reps.

When Is DEF CON 34 and How Should You Time Your Outreach?
DEF CON 34 runs August 6-9, 2026 at the Las Vegas Convention Center West Hall, landing right after Black Hat USA (August 1-6) so that a large share of attendees simply stay in town for both shows during the stretch the community affectionately calls Hacker Summer Camp. Mark the date. Timing matters here.
Your outreach window depends on whether you're running a pre-show or a post-show play:
- 6-8 weeks before (mid-June): Start identifying attendees who've posted about going. Build your list early.
- 2-4 weeks before (mid-July): First outreach wave. Keep it light. Reference their village or talk interests.
- Week of the event (Aug 6-9): Don't email during the conference itself. People are busy, offline, or deliberately ignoring vendor messages.
- 1-2 weeks after (Aug 10-23): Prime follow-up window. Reference specific talks, announcements, or village demos. This is when conversations convert.
How to Get the DEF CON 34 Attendee List
DEF CON doesn't sell or share its registration list. The conference has always protected attendee privacy, and that's not changing. So the traditional route of buying an organizer list doesn't apply here.
WhoGoes takes a different approach: it surfaces verified attendees from public LinkedIn posts where people mention DEF CON 34, giving you names, job titles, companies, email addresses, and the actual LinkedIn post as proof that each person is genuinely going. Unlike purchased lists that might be outdated or fabricated, every contact comes with LinkedIn proof that they're actually going.
Preview 5 DEF CON 34 contacts free at /events/def-con-34. The list updates daily as more people post about attending.
WhoGoes surfaces DEF CON 34 attendees from public LinkedIn posts. You get verified names, emails, companies, and proof of attendance. Preview 5 contacts free, then unlock more starting at $29 for 200 contacts.
Credits start at $29 for 200 contacts. No subscription. No contract. Credits don't expire. For the complete guide on every method of sourcing event attendee data, see How to Get a Trade Show Attendee List in 2026.
Related Reading
- Trade Show Attendee Data for SDRs, how B2B sales teams use attendee lists for pipeline
- How to Tell If an Event Attendee List Is Fake, red flags and verification signals
- How to Verify Trade Show Attendance, why LinkedIn proof matters for data quality
- Cybersecurity Trade Shows 2026: Attendee Guide, the full cybersecurity event lineup and who attends each
- Trade Show Calendar 2026-2027, plan your outreach across the full event calendar
Ready to get your attendee list?
Browse 1,200+ trade shows. 5 free preview contacts per event.
Browse Events Free