Conference Description
Key Takeaways
- Two-day conference in New Delhi covering AI-powered security, threat research, digital forensics, and cyber-physical systems security.
- Technical sessions address post-quantum cryptography, adversarial machine learning, cloud security, and supply chain security.
- Hands-on workshops and training sessions focus on practical skills development for offensive security, OSINT, and incident response.
- Designed for CISOs, security researchers, SOC/CSIRT teams, and professionals from BFSI, energy, government, and technology sectors.
- Features participation from CERT-IN, Punjab National Bank, Siemens Energy India, Microsoft, Red Hat, Tenable, HackerOne, and Maltego.
About CRACCon
CRACCon takes place on October 24 and 25, 2026, at PHDCCI in New Delhi. The conference brings together cybersecurity professionals, researchers, industry leaders, and government officials for technical talks, panel discussions, workshops, and training sessions. The event operates in a hybrid format, with most sessions delivered in person and select speakers participating online.
Technical Focus Areas
The conference programme spans both established and emerging security domains. AI-powered security and adversarial machine learning sessions examine how organisations can defend against threats that exploit or target machine learning systems. Exposure management and threat intelligence tracks address how security teams can identify and prioritise vulnerabilities across complex environments.
Cloud security and identity and access management (IAM) sessions cover the challenges of securing distributed infrastructure and controlling access at scale. Application security (AppSec) and supply chain security discussions focus on protecting software development pipelines and third-party dependencies.
Cyber-physical security receives dedicated attention, with sessions on IoT security and drone security exploring threats to connected devices and autonomous systems. Cryptography sessions include post-quantum cryptography, addressing the need to prepare for quantum computing threats to current encryption standards.
Digital forensics and offensive security (OffSec) workshops provide hands-on experience with investigation techniques and penetration testing methodologies. Additional sessions cover bug bounty programmes and Open Source Intelligence (OSINT) techniques.
Industry Participation
The conference features involvement from government bodies, financial institutions, energy companies, and technology vendors. CERT-IN, India’s national computer emergency response team, is among the participating organisations. Punjab National Bank and Siemens Energy India represent the BFSI and energy sectors respectively. Technology companies including Microsoft, Red Hat, Atlassian, Tenable, ICANN, HackerOne, and Maltego contribute to the programme.
Who Should Attend
CRACCon is structured for security practitioners across experience levels and specialisations. The audience includes CISOs, security researchers, IT managers, SOC and CSIRT team members, cryptography specialists, and cloud and application security professionals. Students and academics with an interest in cybersecurity careers will find dedicated skills development and career-focused sessions. Executives from BFSI, energy, government, academia, and technology organisations seeking current threat intelligence and security strategies are also part of the target audience.

