WHAT MAKES A GREAT SUMMERCON PRESENTATION?

With the opening of the Summercon 2025 CFP, here are a few friendly tips for what makes a great Summercon presentation. These seven points represent the kinds of things that we are evaluating when we look at CFP proposals.

  1. Technical
    • While we occasionally incorporate talks of a non-technical nature, almost every presentation that shows up at Summercon is deeply technical. They’re not sales pitches, and they’re not about righting societal wrongs. So if you’re planning on submitting a talk about why people should buy your company’s particular security snake oil, or why your company has the best culture (and you can too!), you’ll have more success somewhere else.
  2. Novel
    • From time to time, in the interest of getting important content in front of the best audience in the world, we let people present something they’ve already shown at events of lesser stature. But we prefer totally new presentations instead of rehashed talks. New content has a better chance of getting shown on the Summercon stage.
  3. Irreverent
    • While the presentations are technical, successful Summercon presentations get their point across is through non-traditional means. This is not the place to read slides. One memorable presentation used an Android-shaped piñata as a prop. Another invited participation through an AA-meeting style format. The sky’s the limit (within the limits of our code of conduct, of course).
  4. Revels in the Journey
    • If you like talking about the trials and tribulations of research, we are all ears. Even though your final results may be super polished and look effortless, everyone knows you had at least three major setbacks and went down two totally worthless paths before you arrived at a good solution. Share those. People love that, especially our speaker selection committee.
  5. Sticks it to The Man
    • Despite all the sponsorships, corporate attendance, and more buttoned-up nature of Summercon (see our Code of Conduct, which is totally reasonable, by the way), we are still, at heart, a hacker conference. Challenge authority. Show you’re not a patsy for The Man. Fight the Power.
  6. Engages the Audience
    • Summercon speakers are a special breed, because Summercon attendees are a special breed. Prepare to have people call out your mistakes, heckle if you’re less than prepared, and generally push your buttons. Successful presentations channel this misplaced audience enthusiasm. We still fondly recall a choose-your-own-adventure presentation, where randomly selected audience members got to dictate the direction of the talk. Engage your audience, and they won’t turn on you. (This can be good life advice, too.)
  7. Fits into the Allocated Time
    • We cannot overstate this: fill the time, generally 45 minutes of speaking with 10 minutes of Q&A. Our speaker selection committee has been around the block, so if you’re going to try to pretend that a six hour seminar fits into 55 minutes of speaking slot, it’s probably not going to get selected.

We look forward to your submission!

sponsors sidebar 2026

Platinum

Atredis Logo

Gold

Etsy Logo

Silver

Bishop Fox Logo

K logix Logo

Tracebit Logo

 

Supporter

RunSybil Logo

 

 

 

Special Thanks to

Sponsors

PLATINUM

Atredis Partners is a research-driven Information Security consultancy. We deliver advanced penetration testing, embedded security research, and cutting edge risk management. Our team is made up of some of the most respected hackers in the information security industry, and we thrive on hacking complicated targets, on time and under budget. Our HQ also happens to be in the birth city of SummerCon, but we’re pretty sure the Best Western in North Saint Louis burned down years ago.


GOLD

Etsy is the global marketplace for unique and creative goods. Our two-sided marketplace connects over 5M makers, artisans and creative entrepreneurs to tens of millions of buyers around the world looking for something special. Buyers come to the Etsy marketplace to be inspired and delighted by items that are made, designed and handpicked by our creative entrepreneurs. For nearly two decades, Etsy has been the online home for creativity and self expression. Our mission is to “Keep Commerce Human,” and we’re committed to using the power of business and technology to strengthen communities and empower people around the world.

Phyle builds AI-native systems that enable governments to conduct online operations at scale with the precision that matters. It’s building for what comes next: automating the parts of the offensive cyber mission that have always taken the most time, the most judgment, and the most headcount. 


Silver

Bishop Fox is the leading authority in offensive security, providing solutions ranging from continuous penetration testing, red teaming, and attack surface management to product, cloud, and application security assessments. We’ve worked with more than 25% of the Fortune 100, half of the Fortune 10, eight of the top 10 global technology companies, and all of the top global media companies to improve their security. Our Cosmos platform, service innovation, and culture of excellence continue to gather accolades from industry award programs including Fast Company, Inc., SC Media, and others, and our offerings are consistently ranked as “world class” in customer experience surveys. We’ve been actively contributing to and supporting the security community for almost two decades and have published more than 20 open-source tools and 50 security advisories in the last five years. Learn more at bishopfox.com. Follow us on LinkedIn.

Scorpion Labs is a Boston-based offensive security team that uses threat-driven penetration testing to provide impactful and actionable results to customers across nearly every industry vertical. The team provides network, application, and product-focused penetration testing.

North Pole Security (NPS) offers a proactive solution to endpoint security by focusing on prevention rather than detection and response. NPS develops the open source security agent Santa, that the team started while at Google. Santa operates on macOS endpoints, enforcing policies based on a “naughty or nice” list. NPS’ new control plane pairs Santa with a streamlined approval process to ensure your business runs safely and seamlessly.

The NYS Office of Information Technology Services (ITS) was established in 2012 and is the largest consolidated IT organization in America. At ITS, we are guiding the State’s next phase of artificial intelligence as we deliver modern technology solutions that connect NYS agencies, entities, commissions, and local governments with millions of New Yorkers. 

 Our talented ITS employees are leaders, innovators and drivers of positive change who have won countless state and national awards. We believe technology is transformational, and we will never stop striving to do better, be better and improve the way we operate.

 Want to know more about how ITS, a NYS Agency on the rise, makes IT Happen? Visit our website at its.ny.gov and follow ITS on X, Instagram, Facebook and LinkedIn. 

Scalable Cyber provides cyber vulnerability research products and services powered by an internal AI-driven research platform. The platform leverages teams of AI agents to build digital models of target device software, then tasks separate agent teams to discover and validate cyber capabilities against those models. Scalable Cyber sells directly to USG, FVEY, and allied contractors. 

Tracebit deploys deception infrastructure across your cloud accounts, endpoints, SaaS applications, and CI/CD pipelines to detect attackers the moment they move. Unlike traditional detection hunting for suspicious patterns in billions of events, our canaries create definitive signals – when someone touches them, you know immediately, and you know it matters. Security teams deploy in 30 minutes using infrastructure-as-code: no agents, no servers, no tuning. Founded by former security leaders, Tracebit makes deception technology accessible to every security team.

Wiz is reinventing cloud & AI security from the inside out.

Led by an experienced and visionary team, we are on a mission to help organizations create secure cloud and AI environments that accelerate their businesses — across all major clouds. By creating a normalizing layer between cloud environments, the Wiz platform enables organizations to rapidly identify and remove critical risks.

Security teams don’t need more alerts—they need proof. XBOW is an AI-powered autonomous offensive security platform that operationalizes penetration testing as a continuous, machine-speed system. Instead of relying on annual assessments or theoretical vulnerabilities, XBOW independently discovers, chains, and proves exploits across your attack surface. Get expert-level pentesting results in days, not months, and know exactly what to fix first before an attacker does.


Supporter

RunSybil is a startup scaling offensive security by automating hacker intuition. RunSybil’s flagship AI-driven penetration testing platform, Sybil, autonomously finds vulnerabilities faster than human hackers and enables organizations to identify and fix weaknesses before they can be exploited. It combines state-of-the-art artificial intelligence with deep cybersecurity expertise to deliver active defense capabilities that simulate real attacker behavior. RunSybil’s core team includes seasoned industry veterans from OpenAI, Meta, Mandiant, NCC Group, and Trail of Bits.

InterConnect Defense delivers a wide range of expertise to bring together all aspects of cybersecurity and the CNO mission. We provide key services to our clients such as software engineering (capability/tool dev, low-level/embedded, full-stack, UI, web, DevOps, etc), vulnerability research/analysis, reverse engineering, network analysis, software testing, network/infrastructure engineering, and hands-on cyber operations. We are experts in CNO, and support numerous challenging, mission-critical projects that make a direct impact on our nation’s security and intelligence mission.

Binary Ninja is a powerful reverse engineering platform with native APIs for the languages you use, program analysis techniques that make finding vulnerabilities easier, and a stack of ILs that not only make scripting easier but also make moving between architectures for manual analysis easier.


Partner

No Starch Press publishes the finest in geek entertainment — bestsellers like Python Crash CoursePython for KidsHow Linux Works, and Hacking: The Art of Exploitation. We focus on computer programming, security, hacking, alternative operating systems, STEM, and LEGO. Our titles have personality, our authors are passionate, and we read and edit everything we publish. Readers appreciate our straightforward presentation, fearless approach to the complex world of technology, and support of the global hacking community. No Starch Press titles have been included in the prestigious Communication Arts Design Annual and STEP inside 100 competition, and have won the Independent Publisher Book Award (the “IPPYs”) from Independent Publisher magazine.

San Francisco-based No Starch Press was founded in 1994 by Bill Pollock, who brings more than 30 years of publishing industry experience to the company. Prior to launching No Starch Press, Pollock worked in professional reference, scientific, college and trade publishing, and was a co-founder of computer book publisher APress.

Locks are puzzles you can solve without the key! Explore the fun world of locksport with Lockpick Extreme. Learn to lockpick from friendly instructors or practice what you already know with their assortment of locks and picks. When you’re done, you can shop at their pop-up shop and take your new hobby home with you.

Lockpick Extreme has run lockpick villages for many public conferences including HOPE, B-Sides SF & Chicago, and the Diana Initiative. Here you will find the necessary materials, locks, picks, instructional aids, and knowledgeable instructors to start or continue your lockpicking journey.

Lockpick Extreme provides fun, informative remote and in-person lockpicking workshops for team building and marketing events. This is Lock Pick Extreme’s tenth year hosting lockpick villages for security conferences, trade shows, and nonprofit organizations they support. They love to spread the joy of discovery and accomplishment that comes with learning how to pick locks. Locks are just puzzles you can solve without the key.

The Lockpick Village will host an ongoing workshop for both days of SummerCon, where everyone can learn and practice lockpicking. All of the necessary materials will be available for you to use, including locks, picks, and instructional aids. Knowledgeable instructors will give you an understanding of how locks work.

Special Thanks To

Big Mike’s Discount Exploit Emporium has been serving the security community’s vulnerability procurement needs since stacks were still executable. Whether you’re shopping for certified pre-owned zero-days, surplus nation-state inventory, or slightly leaked exploit chains, Big Mike has a deal for you. We don’t waste money vetting our sources and we pass the savings directly on to you. Browse our famous Scratch ‘n Dent for unbeatable deals on patch-gap bugs, heap sprays, and 0-clicks that require brute forcing addresses. They may not be pretty, but they get the job done! Why pay premium prices for brand new bugs when nobody patches anyways? Big Mike’s proudly supports Summercon because nothing says “community” quite like high-quality exploits at low, low prices. Cash only. No receipts. No questions. No judgments. No gods.

Not all heroes wear capes. The old BK Hackers support Summercon for the sheer love of the game.

Interested in Sponsoring Summercon 2026? Email [email protected] for details.

The Lineup

check back soon 2025…

WE HAVE A SCHEDULE

It’s not quite finalized, but we have a functioning schedule. We’re excited to see if we can actually keep to it. Last year went super smoothly, and we somehow stayed within one minute of our published schedule (as far as anyone remembers). You can click the link up there where it says “schedule,” or you can try this link out here.

THE LINEUP

Here’s what we have cooking!

Friday, July 19

TimeSpeakerPresentation
10:00amDOORS OPEN
10:45amJohn Terrill &
Mark Trumpbour
Opening Remarks and Financials, probably a ridiculous amount of inside jokes; we’ll see how well John and Mark banter.
11:00amKaiRiPHash: Analyzing execution traces on a budget
12:00pmGenevieve StarkFrom Exploit Brokers to Extortion
12:35pmSUMMERCON HALL OF FAME – LIFETIME ACHIEVEMENT AWARD
1:00pmLUNCH
2:00pmBrian ReillyModern ColdFusion Exploitation and Attack Surface Reduction
3:00pmSteve MyrickDa Bomb: Beyond Insanity
4:00pmSPECIAL PRESENTATION – IN MEMORIAM
4:30pmGabe[REDACTED]
5:00pmInvisigothTBD – It’s Visi, so it’s something cool
6:00pmHAPPY HOUR
7:00pm[We strongly recommend using this time to have dinner]
9:30pmSummercon 2024 Presents: RESIDUAL GROOVE
1:00amEND DAY 1
Subject to change.

Saturday, July 20

TimeSpeakerPresentation
10:00amDOORS OPEN
10:45pmJohn Terrill &
Mark Trumpbour
Welcome back:, Recap, Apology, and Police Blotter.
11:00amSharon NachshonyIdentity Threat Hunting Insights: Unveiling Real-World Cases
12:00pmDavid CampbellDeveloper Mode Enabled: Pushing AI Red Teaming Boundaries
1:00pmLUNCH
2:00pmJ. GdanskiWe Kill People Based on Metadata
3:00pmMichael CoppolaStarfox: A Case Study in Exploiting Impractical Bugs (35min)
3:40pmIan Roos2024 PWNIE AWARDS NOMINATIONS
4:00pmMartin WendiggensenChinese Discourse Power
5:00pmJAGSTBD
6:00pmHAPPY HOUR / CLOSING CEREMONIES / FLIP CUP / SHOUTDOWN & OTHER INARTICULACIES
7:00pm[We’re not your mother, but you should eat something]
8:30pmPre-Game: HACK THE PLANET
9:30pmMovie Screening: Hackers (1995)
11:15pmPRIZES / DJ / PARTY PARTY
1:00amEND DAY 2
Subject to change

TICKETS TICKETS TICKETS

We’re finally remembering that we need to tell you where to buy tickets.

It’s here. Eventbrite. And thanks for your ongoing support — without you, there’s no Summercon.

HOTEL ROOM BLOCS

If you’re looking for a place to stay for Summercon 2024, do we have great news for you! There’s a new hotel right around the corner from Littlefield, Tru by Hilton. Or maybe you’re looking for the style and luxury of The Ace Brooklyn. Either way, we have room blocs ready to go, get ’em before they run out!

Tru By Hilton (Link expires June 18)

The Ace Brooklyn  (Link expires June 27)

  • Alternate instructions to make Online Reservations
  • Go to https://www.acehotel.com/brooklyn
  • Click BOOK NOW
  • Select Check in date | 7/18/24
  • Select Checkout date |  7/21/24
  • Select: Group Code
  • Enter Group Code: SMRCN724
  • Click Check Availability

Trouble is brewing

We’re excited to announce that we’re gearing up for our July event in Brooklyn, NY. We’re currently huddled over keyboards (and coffee mugs) planning something extraordinary. Yes, we’re a bit late in getting the news out – blame all the booze (and the hangovers)!

More thrilling updates are on the way. Stay tuned, keep hacking, and perhaps, keep nursing those hangovers – we’ll make sure this year’s Summercon is worth the wait!

Cheers,

Summercon Management

sponsors sidebar 2024

Research Grant Sponsors

 

 

Platinum Sponsors

 

 

Gold Sponsors

 

 

Silver Sponsors

 

 

Supporter Sponsors