Main Program

14-16 October 2026 | Melbourne Convention & Exhibition Centre

Browse the program and start planning your CyberCon 2026 experience across three days of keynotes, panels, workshops, and more.

Format
Location
Audience Level
Themes & Topics
Building Secure Technology
Hacking, Red Teaming
Law, Policy and Global Power
Leadership, Governance and Accountability
People, Culture and Workforce
Running Secure Operations
Think Tank

DMARC can’t see this: Where brand impersonation hides in plain sight

Bradley Anstis
Thu
 
15 Oct
2:20 pm
 - 
3:00 pm
Think Tank 4
Running Secure Operations
Vulnerability, Exposure and Attack Surface Management

Brand impersonation is shifting from email to social platforms, bypassing DMARC entirely, and this session shows how to extend detection beyond the inbox.

26101514203040
Intermediate
Ask an Expert

Ask me about people, culture and workforce development or leadership, governance and accountability

James Morphett
Thu
 
15 Oct
2:20 pm
 - 
3:00 pm
Ask an Expert 1

James Morphett is in Ask an Expert 1 at 2.20pm Thursday for people, culture and workforce development or leadership, governance and accountability.

26101514204010

Afternoon Tea

Thu
 
15 Oct
3:00 pm
 - 
3:50 pm
Exhibition Hall
Break
26101515001030
Panel

Challenges of governing the ungovernable & security leadership in the age of AI autonomy

Sam Fariborz, Nigel Hedges, Faizal Janif & Sheena Peeters
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Melbourne Room 1
Leadership, Governance and Accountability
Governing Autonomous and AI-Driven Systems

Security executives share lessons from real AI-driven incidents on governing autonomous agents that already make decisions with minimal human oversight.

26101515501010
Intermediate
Panel

Navigating cyber insurance in uncertain times - wars, systemic events, AI and beyond

Raymond Loh, Ben Di Marco, Melissa Tan & Anne Hoffmann
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Melbourne Room 2
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Geopolitical instability, systemic events, and AI are reshaping cyber insurance markets, changing how insurers price and assess risk for buyers.

26101515501020
General
Knowledge Hub

Unified, Automated, and Powered by Agentic AI: The SOC Reimagined

Presented by 
Fortinet
Thu
 
15 Oct
3:50 pm
 - 
4:10 pm
Exhibition Hall

Guardrails and human expertise sit alongside the automation in the SOC described, where AI agents triage alerts and initiate response actions.

26101515501030
Careers Village

Hack your job search: The human side of getting hired

Laura Mackay
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Exhibition Hall

What is broken in cyber recruitment right now? Laura Mackay's Careers Village talk on the human side of getting hired asks it at 3.50pm Thursday.

26101515501030
Breakout

Same humans, smarter attacker: What three years of AI development has done to security awareness training

Sarah Assaf
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 103
Building Secure Technology
Autonomous and AI-Enabled Systems Security

New research shows AI now runs personalised social engineering attacks as effectively as it once simulated them, testing today's training frameworks.

26101515502103
General
Breakout

Guarding the pipeline: Hardening GitHub actions against supply chain attacks

Pratik Khasnabis
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 104
Building Secure Technology
Supply Chain, Dependency and Provenance Risk

Misconfigured GitHub Actions pipelines are an increasingly attractive supply chain target, and this talk offers practical guidance for hardening CI/CD.

26101515502104
General
Breakout

Phishing isn't an awareness strategy: The behavioural science behind why your human risk program is broken

Chantelle Strauts
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 105
People, Culture and Workforce
Security Culture and Behavioural Change

Behavioural science explains why annual training and phishing simulations rarely change behaviour, and what an evidence-based human risk program needs instead.

26101515502105
General
Breakout

Hacked attention: A father–son story of ADHD as a cyber security superpower

Abbas Kudrati & Murtaza Kudrati
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 203
People, Culture and Workforce
Diversity, Equity and Inclusion

A father and son in cyber security share how ADHD traits such as hyperfocus become strengths in threat detection and incident response.

26101515502203
General
Breakout

Human out of the loop: The AI success story nobody is planning for

Pippa Flanagan
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 204
Leadership, Governance and Accountability
Governing Autonomous and AI-Driven Systems

Compensating human workarounds inside operational data pipelines become invisible risk once AI quietly replaces the people who were fixing broken data.

26101515502204
General
Breakout

The front line – Scambaiters – a need to develop a closer relationship with authorities

Chris Peacock & Leslie Baker
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 207
Law, Policy and Global Power
Public Policy, Regulatory Reform and Enforcement

Four years of scambaiting data shows the real intelligence value of disrupting fraudsters, and why closer ties with authorities would help victims more.

26101515502207
General
Breakout

Quantum automation for cyber defence: Moving beyond classical limits in real-time threat response

Robin Doss
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 208
Law, Policy and Global Power
Strategic Competition in AI and Quantum Capability

Quantum computing's ability to process vast data quickly could move cyber defence beyond the limits of classical real-time threat response.

26101515502208
General
Breakout

BTCScamFinder: Catching crypto scam sites before the first victim pays and tracing the criminals behind them

Arvin Ghalansouii
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 209
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

An open-source pipeline flags crypto scam sites within hours of launch and traces stolen funds through a fully auditable evidence chain.

26101515502209
General
Breakout

Better plumbing in security: Bringing pipes to SQL

John Stoner
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 210
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

SQL pipe syntax makes SQL usable for security hunts and detection logic, potentially breaking down the query-language silos between SIEMs and analysts.

26101515502210
General
Breakout

When the victim panics: The missing layer in cyber incident response

Jessica Sears
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 211
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Victims under pressure delay reporting, hide evidence and make rash decisions, so response models need to stabilise people before technical response begins.

26101515502211
General
Breakout

Preparing for ransomware and commodity malware in OT environments

Lesley Carhart
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 212/213
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Beyond state-sponsored sabotage headlines, most OT organisations' real incident response work involves ransomware and commodity malware on ageing systems.

26101515502212
Intermediate
Breakout

Strategy is not activity: Why cyber leaders mistake motion with progress

John Ellis
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 216
Leadership, Governance and Accountability
Board Oversight, Assurance and Risk Appetite

Busy dashboards and expanding controls can mask strategic failure, and this session shows how to separate genuine risk reduction from well-organised activity.

26101515502216
Intermediate
Breakout

Build your own potato - an exploration of how Windows authentication abuse "actually works"

Daniel Cooper
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 217
Hacking, Red Teaming
Tool Development, Bug Bounty and Vulnerability Research

Building a Potato exploit from scratch explains why these privilege escalation techniques keep working despite years of Microsoft patching.

26101515502217
Intermediate
Breakout

Privileged by design: The attack paths you already built

Andrew Lynes & Alex Carr
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 218
Hacking, Red Teaming
Post-Exploitation and Red Team Operations

MFA and EDR alone cannot stop attackers who exploit administrative practices and identity workflows, the attack paths organisations already built themselves.

26101515502218
General
Breakout

Global cyber security board reporting research results are in. How to ensure your reporting makes the grade?

Tommy Viljoen
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Room 219/220
Leadership, Governance and Accountability
Board Oversight, Assurance and Risk Appetite

New research across 67 boards reveals why most directors rate cyber security reporting poorly, and introduces a framework to align expectations.

26101515502219
General
Think Tank

Anatomy of hacktivist attacks: Detecting and mitigating emerging threats

Daniel dos Santos
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Think Tank 1
Running Secure Operations
Threat Intelligence, Detection and Adversary Behaviour

A honeypot breach by a pro-Russian hacktivist group reveals current tactics against OT networks and the hardened controls that stop them.

26101515503010
General
Think Tank

After the incident burns: What the board didn't know, couldn't decide, and wished they'd asked

Louay Ghashash
Thu
 
15 Oct
3:50 pm
 - 
4:30 pm
Think Tank 2
Running Secure Operations
Incident Response, Crisis Coordination and Recovery

Seven real breaches reveal how governance failures, not technology gaps, determine whether an organisation recovers cleanly or falls apart.

26101515503020
Intermediate

Secure your place at CyberCon 2026

Join thousands of cyber security professionals in Melbourne this October.

Speaker in a grey suit presenting at a lectern on stage
Woman being interviewed with a Ticker microphone on the expo floor
Audience members smiling and taking photos on their phones during a session
Speaker presenting on stage against a blue and pink backdrop
Attendees wearing CyberCon headphones listening during a session
Panellists seated in white armchairs on stage during a conference discussion
Keynote speaker presenting on stage with a title slide behind him
Speaker addressing the audience with a microphone as a colleague looks on