Cybersecurity

NorthSec Conference 2027

NorthSec Conference is one of the largest applied security events in Canada, covering topics such as pentesting, network security, software and hardware exploitation, application security, reverse engineering, malware, and cryptography. The event includes high-level talks, workshops, community villages, and thematic panels. Alongside the conference, there ar…

Visit the official siteRegisterSponsorship open
35Speakers
32Sponsors
32On the bill · sessions
55Companies · in total
§I

Speakers

Programmed at NorthSec, in alphabetical order.
Andrew Buchanan
Senior Red Team Operator · Figment
Ben Schroeder
Charl-alexandre Le Brun
Senior Penetration Tester · Desjardins
Charles F. Hamilton (Mr.Un1k0d3r)
CYPFER
Christian Paquin
Principal Research Software Engineer · Microsoft Research
Coline C
Strategic Cyber Threat Analyst · Sekoia.io
Dirk-jan Mollema
Security Researcher · Outsider Security
Émilio Gonzalez
François Labrèche
Principal Data Scientist · Sophos
François Proulx
VP of Security Research · BoostSecurity.io
Gaetan
Cybersecurity Researcher · GitGuardian
Guillaume Valadon
Staff Cybersecurity Researcher · GitGuardian
Jeremy Miller
Sr. Manager, Cybersecurity Strategy. & Research · OffSec
Jonathan Marcil
Application Security Specialist
Joshua Prager
Managing Consultant · SpecterOps Inc.
Kristine Barbará
Director, Security Engagement & Awareness · Ubisoft Entertainment
Martin Dubé
President & co-founder · Corsek
Max CM
Security Architect and Red Team Lead · Figment
Maxime ARQUILLIERE
CTI Analyst · Sekoia.io
Philippe Marchand
Researcher · Chaire Raoul-Dandurand
Philippe Pépos Petitclerc
Ph.D. Candidate · Université du Québec à Montréal
Pierre-Nicolas Allard-Coutu
Senior Penetration Tester · Bell Canada
§II

Sponsors

The houses behind the program. Tiers as disclosed.
CyberEcoGold
FlareGold
GoogleGold
SentinelOneGold
WizGold
ArmorCodeSilver
CensysSilver
CobaltSilver
Commissionnaires du QuébecSilver
CorelliumSilver
CorsekSilver
DesjardinsSilver
GoSecureSilver
IntactSilver
SekoiaSilver
SemperisSilver
SpecterOpsSilver
TenableSilver
XBOWSilver
CaidoSupporters
DevolutionsSustaining
EspressifSupporters
HackFestAssociations
IMC2Supporters
IntrasecureSupporters
ISC2 Ottawa ChapterAssociations
NooelecSupporters
OKIOKSustaining
PvotalStartup
Root-Me PROStartup
ShopifySupporters
TalentyStartup
§III

Agenda

Selected from 32 sessions on the bill.
  • May 14 2026 0900 — 0915(EDT)

    Opening Ceremony

    Welcome to NorthSec 2026!

  • May 14 2026 0930 — 1015(EDT)

    Hacking Dumberly

    We all hear about APT, but most breaches aren’t really by A (advanced) or P (persistent) threat actors. In this talk, Tim will discuss simple ways for attack and defense, and to sh…

  • May 14 2026 1030 — 1100(EDT)

    A systematic approach to evading antivirus software

    Red teaming and penetration testing are core practices of the cyber security audit landscape. Both of these practices rely on the ability to execute offensive software tools that a…

  • May 14 2026 1030 — 1100(EDT)

    Private Key Leaks in the Wild: Insights from Certificate Transparency

    Private key leaks represent a critical security vulnerability, with over 600,000 leaked keys on GitHub in 2024, yet their real-world impact remains largely unknown due to the chall…

  • May 14 2026 1130 — 1200(EDT)

    Doxxing-proof authentic digital media: trust the asset, protect the source

    We can't trust the images and videos we see online anymore. Recent generative AI improvements support the creation and modification of convincing digital media in quasi real time. …

  • May 14 2026 1130 — 1200(EDT)

    Sold to the highest bidder : the escalation of ADINT from geolocation tracking to intrusion vector

    Is ADINT, Advertising-based Intelligence, the new trend for Computer Network Exploitation (CNE) initial access and commercial surveillance solutions? ADINT defines the exploitation…

  • May 14 2026 1330 — 1400(EDT)

    Hacking 5G: From Radio Security to the APIs

    5G networks are being opened up at every layer and attackers are paying attention. On the radio interface, we assess what operators actually deploy: is encryption enabled? Is integ…

  • May 14 2026 1330 — 1400(EDT)

    Living Off The Pipeline: Defensive Research, Weaponized

    For years, we wrote the defensive manuals. We built the "Living Off The Pipeline" (LOTP) inventory and released poutine to help you find the vulns. We even spoke at NorthSec about …

  • May 14 2026 1415 — 1445(EDT)

    Hacking Browsers: The Easy Way

    When you think of hacking browsers, you perhaps think of V8 heap exploitation, deep-dive fuzzing, crazy sandbox escapes, and so on. But what if I told you that you can still find v…

Intermission
Part the Second · For the Buyer

What does it mean when 55 companies show up, and 3 bet on three roles at once?

55 companies. three are betting more than once.

The numbers below are derived from the speakers, sponsors, and exhibitors on this page, cross-referenced into one ledger. They are the only thing here that 10times.com cannot tell you.

Who's in the room
3All threespeak · spons · exh
29Sponsoringsponsor only
23Companies Speakingspeaker only

The Triple-Threat

Corsek·Desjardins·SpecterOps

Speakers by seniority

14% of the speakers carry senior titles: C-suite, Founder, VP, or Director-level.

  • C-suite13%
  • Founder / Owner13%
  • VP-level26%
  • Director / Head of13%
  • Manager / Lead39%
  • Engineer · IC926%
  • Research / Science823%
  • Other roles1029%

Of 35 on the bill · classified by free-text title

Most-represented companies
  1. 01CorsekSp·S1V
  2. 02DesjardinsSp·S1V
  3. 03SpecterOpsSp·S1V
  4. 04ArmorCodeSp·S
  5. 05CaidoSp·S
  6. 06CensysSp·S
  7. 07CobaltSp·S
  8. 08Commissionnaires du QuébecSp·S
  9. 09CorelliumSp·S
  10. 10CyberEcoSp·G
  11. 11DevolutionsSp·S
  12. 12EspressifSp·S
  13. 13FlareSp·G
  14. 14GoogleSp·G
Sponsors by tier
gold5
16% of 32
silver14
44% of 32
associations2
6% of 32
startup3
9% of 32
supporters6
19% of 32
sustaining2
6% of 32
At peer events but not here

These companies sponsored two or more peer events recently, but aren't on this program. For an organizer, that's a list of warm prospects.

Related events · by shared sponsors