Offensivecon
OffensiveCon is a Berlin-based annual international cybersecurity conference organized by Binary Gecko GmbH, focused exclusively on offensive security research. It delivers a single-track, two-day program of deep technical talks and pre-conference research-grade training sessions for elite vulnerability researchers, security practitioners, and sponsoring vendors.
- Company typePrivate
- Founded2018
- HeadquartersBerlin, Germany
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Offensivecon does
OffensiveCon is an annual international cybersecurity conference organized by Binary Gecko GmbH, a private limited company registered in Berlin, Germany. Founded in 2018, the event is positioned as a highly technical forum dedicated exclusively to offensive security — covering vulnerability discovery, advanced exploitation techniques, and reverse engineering — and is distinguished by a single-track, two-day format combined with multi-day technical training sessions held in the days immediately preceding the conference. The conference runs annually in Berlin (with 2026 set for May 15–16 at the Hilton Berlin) and has expanded to a Tokyo edition via a dedicated regional site (offensivecon.jp).
The core product is the annual conference, anchored by approximately 18 deep-technical talks featuring researchers from Google Project Zero, Google TAG, the UK NCSC, ETH Zürich, DEVCORE, Sonar, Raelize, and other prominent offensive security firms. The complementary training program offers roughly seven research-grade workshops per year — covering Linux kernel exploitation, iOS reverse engineering, AI-assisted bughunting, EDR analysis, embedded device hacking, advanced fuzzing, and baseband exploitation — with capped seating (e.g., 24 seats per course) and non-refundable, non-upgradable tickets priced at 4,800 EUR per attendee for premium offerings. Bundles combine training and conference access at a tiered price point. Conference-only tickets are released in a separate, later sale phase.
Monetization rests on three streams: conference and training ticket sales, bundled packages, and a tiered corporate sponsorship program (Diamond, Gold, Silver, Bronze, plus party and DEI sponsors). The 2026 edition lists approximately 19 recurring sponsors, including Zero Day Initiative, Google, Trail of Bits, Hex-Rays, Synacktiv, Corellium, and Dataflow Security. Distribution is direct via offensivecon.org and a dedicated third-party ticketing platform (tickets.offensivecon.org), with marketing driven organically through speaker reputation, the curated Call for Papers, and community word-of-mouth on X, YouTube, LinkedIn, BlueSky, and Mastodon. Pricing is deliberately affordable per the organizer's stated mission, and there is no parent company, no external funding, and no public revenue disclosure.
Offensivecon firmographics
Firmographics- Name
- Offensivecon
- Legal name
- Binary Gecko GmbH
- Website
- https://offensivecon.org
- Company type
- Private
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- OffensiveCon is a Berlin-based annual international cybersecurity conference organized by Binary Gecko GmbH, focused exclusively on offensive security research. It delivers a single-track, two-day program of deep technical talks and pre-conference research-grade training sessions for elite vulnerability researchers, security practitioners, and sponsoring vendors.
- Ownership category
- akta.pro rank
Offensivecon industry classification
Industry- Product category
- Cybersecurity Conference & Training Services
- NAICS
- Convention and Trade Show Organizers (561920), Educational Services (611)
- SIC
- Services-Miscellaneous Amusement & Recreation (7990)
- akta.pro primary industry
- Phishing, Social Engineering & Business Email Compromise (BEC) Training (EDABAGAB)
Keywords
Where Offensivecon is headquartered
LocationHeadquarters
- HQ city
- Berlin
- HQ country
- Germany
- HQ region
- Europe
Offices1 record
Markets served
Offensivecon business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Operations, Personnel, Marketing or Sales, Others, Technology or R&D
Revenue model
- Conference Tickets: Conference-only tickets sold at standard pricing with limited seat availability. Ticket sales open in phases — training and bundle tickets first, conference-only tickets at a later date.
- Training Sessions: Separate paid training sessions held in the days before the main conference. Each training has a limited number of seats. Training tickets cannot be upgraded to bundles after purchase.
- Bundles (Training + Conference): Combined ticket bundles offering both training sessions and conference attendance at a bundled price point.
- Sponsorships: Corporate sponsors (e.g., Zero Day Initiative, Dataflow Security, Epsilon, Trail of Bits, Google, Hex-Rays, Synacktiv, and others) pay for visibility at the conference. Sponsorship tiers include Diamond, Gold, Silver, Bronze, Welcome Party Sponsor, Closing Party Sponsor, Diversity Equity Inclusion, and Whiskey Cocktail Sponsor.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| One time/ perpetual license | Pay-as-you-go | AI-powered Bughunting training: 4,800€ per attendee, capacity 24 seats, 4-day course (May 11-14, 2026) |
Go-to-market motion1 record
Distribution channels3 records
Marketing channels7 records
Offensivecon product offering
Product offeringCore offering
OffensiveCon is a highly technical international security conference focused exclusively on offensive security, featuring a single track of deep technical talks over two full days covering vulnerability discovery, advanced exploitation techniques, and reverse engineering. The conference is complemented by multi-day pre-conference technical training workshops led by world-renowned researchers on topics such as Linux kernel exploitation, iOS reverse engineering, AI-powered bug hunting, EDR analysis, embedded device hacking, baseband exploitation, and advanced fuzzing. Tickets (conference-only, training-only, and bundles) are sold via a dedicated ticketing platform with limited seat capacity to create exclusivity.
Product overview
OffensiveCon is a single unified offering consisting of an annual international offensive security conference (the core product) combined with pre-conference technical training sessions. The conference features a single track of deep technical talks on offensive security topics, while the training sessions offer hands-on workshops led by security researchers. An archive section provides access to materials from past conferences.
Differentiator
Problem solved
Functional benefit
Brands
- OffensiveCon Tokyo Edition: Tokyo edition of the offensive security conference held in Japan
- OffensiveCon Berlin
Products and services
- OffensiveCon Conference (Berlin Edition) A two-day single-track international security conference focused exclusively on offensive security, covering vulnerability discovery, advanced exploitation techniques, and reverse engineering. Targeted at professional security researchers, vulnerability analysts, penetration testers, red teamers, and security vendors. The 2026 Berlin edition takes place May 15-16, 2026.
- OffensiveCon Training Sessions Multi-day hands-on technical training workshops held in the days before the main OffensiveCon conference, covering Linux kernel exploitation, iOS reverse engineering, AI-powered bug hunting, EDR analysis, embedded device hacking, baseband exploitation, and advanced fuzzing. Targeted at working security professionals, with limited seating capacity (e.g., 24 seats per training). The 2026 trainings run May 11-14, 2026.
- OffensiveCon Tokyo Edition A regional edition of the OffensiveCon offensive security conference held in Tokyo, Japan, representing geographic expansion of the conference brand to serve the Asian security research community.
- OffensiveCon Archive
Quantifiable outcome
- 9 consecutive annual editions (2018–2026) demonstrating sustained event viability and community trust
- +2 more outcomes
Companies that use Offensivecon
Customer profileNamed customers9 records
Segments3 records
Ideal customer profiles3 records
Offensivecon technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Offensivecon partnerships and signals
Strategic signalPartnerships
Two partnerships are on record, tiered core.
- Binary Gecko GmbHcoreBinary Gecko GmbH is the parent company that organizes OffensiveCon. The company is registered in Berlin (Rosenstraße 2) and operates the conference, CFP, sponsorships, and venue coordination. It also maintains a relationship with the conference through direct involvement in operations.
- Hilton BerlincoreHilton Berlin is the exclusive venue partner for OffensiveCon Berlin, located at Anton-Wilhelm-Amo-Straße 30 in Berlin's Mitte district near Gendarmenmarkt. Special hotel rates are negotiated for conference attendees using the keyword 'Yankee Doodle' or a dedicated booking link.
Scale indicators5 records
Recent moves6 records
Expansion highlights5 records
Offensivecon competitors and assessment
Company assessmentBroad incumbents
- Black Hat: Black Hat is a large, established global security conference series (Las Vegas, Europe, Asia) covering offensive and defensive security. It overlaps with OffensiveCon in offensive-security talks and trainings but operates at much greater scale across broader security topics.
- Chaos Communication Congress (CCC): CCC is Europe's largest hacker conference (held annually in Germany), touching on offensive security, hacking culture, and broader tech policy. OffensiveCon shares geographic proximity (Berlin/Germany) and the offensive-security research niche.
- DEF CON: DEF CON is one of the largest and longest-running hacker conferences, featuring offensive security research, villages, and contests. It overlaps with OffensiveCon's offensive-security research focus but is far broader in scope and attendance.
- RSA Conference: RSA Conference is the largest enterprise cybersecurity event with a much broader defensive/operational focus; some overlap in cybersecurity practitioner audience but very different tone, scale, and content depth versus OffensiveCon.
Direct peers
- REcon: REcon is a Montreal-based highly technical security conference focused on reverse engineering and offensive security, with a similar single-track, deep-technical format. It is the closest direct peer to OffensiveCon in terms of audience, content depth, and curation style.
- Insomnihack: Insomnihack is a Swiss offensive-security conference featuring hands-on trainings and CTF competitions. It competes for similar elite offensive-security attendees and trainers across Europe.
- Hack In The Box (HITB): HITB is a deep-technical security conference series (Amsterdam, Kuala Lumpur, Dubai) focused on cutting-edge offensive security research and trainings. It directly overlaps with OffensiveCon's audience and curriculum-style training offerings.
Regional players
- NULLCON: NULLCON is an India-based offensive and defensive security conference covering vulnerability research, exploits, and hacking. It is a regional alternative for offensive-security content in South Asia.
- Power of Community (POC) Security Conference: POC is a Seoul-based offensive-security conference focused on vulnerability research and exploitation; sponsor cross-pollination with OffensiveCon (POC Security is a sponsor) indicates overlapping community.
Emerging players
- Canary Security Conference: Canary is a smaller, single-track offensive-security conference organized by Thinkst, focused on offensive talks and curated technical content. It targets a similar elite-researcher niche with a more boutique format.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat5 records
Key risks5 records
Key highlights7 records
Customer concentration
Offensivecon social profiles
Digital presenceOffensivecon financial estimates
Financial estimateRevenue estimate
Valuation estimate
Offensivecon leadership team
Management profileNumber of profiles
Offensivecon funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Offensivecon M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Offensivecon
What does Offensivecon do?
OffensiveCon is a highly technical international security conference focused exclusively on offensive security, featuring a single track of deep technical talks over two full days covering vulnerability discovery, advanced exploitation techniques, and reverse engineering. The conference is complemented by multi-day pre-conference technical training workshops led by world-renowned researchers on topics such as Linux kernel exploitation, iOS reverse engineering, AI-powered bug hunting, EDR analysis, embedded device hacking, baseband exploitation, and advanced fuzzing. Tickets (conference-only, training-only, and bundles) are sold via a dedicated ticketing platform with limited seat capacity to create exclusivity.
Is Offensivecon a public or private company?
Offensivecon is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Offensivecon founded?
Offensivecon was founded in 2018. It employs 11 to 50 people.
Where is Offensivecon based?
Offensivecon is headquartered in Berlin, Germany, in the Europe region.
How does Offensivecon make money?
Four revenue lines are on record. Conference Tickets are the primary driver. The others are training Sessions, bundles (Training + Conference) and sponsorships.
Who are Offensivecon's main competitors?
Broad incumbents on record are Black Hat, Chaos Communication Congress (CCC), DEF CON and RSA Conference. Direct peers are REcon, Insomnihack and Hack In The Box (HITB). Regional players are NULLCON and Power of Community (POC) Security Conference. Canary Security Conference is listed as an emerging player.
Does Offensivecon have an API?
No public API is recorded for Offensivecon.
What industry is Offensivecon in?
Offensivecon's product category is Cybersecurity Conference & Training Services. Its primary akta.pro industry code is EDABAGAB, Phishing, Social Engineering & Business Email Compromise (BEC) Training. Its NAICS code is 561920 and its SIC code is 7990.