// inaugural meetup · [ 001 ]
Vilnius Offensive
Security Meetup
hosted by Offensive360
Vilnius has a serious security industry and no room where the people who break things get together on purpose. So we are making one.
Two evenings of talks and live stand-up (Grant Gallacher + Jack Holmes), plus a live CTF with €2,000 in cash prizes on the Wednesday. Free to attend, vendor-pitch free, beginners genuinely welcome. First edition: Tuesday 17 & Wednesday 18 November 2026, from 18:00, in Vilnius.
// confirmed: Artis Centrum Hotels, Totorių g. 23, Vilnius — the Aida room, both evenings. Seven minutes' walk from Cathedral Square, tables you can work at, and wifi that takes a room full of laptops.
// CTF prize pool · €2,000
- €1,000
- 1st place
- €650
- 2nd place
- €350
- 3rd place
Cash prizes on the Wednesday CTF night. Solo or in teams — bring a laptop.
- Where
- Artis, Old Town
- When
- 17–18 Nov 2026
- Price
- Free
- Language
- English
Why this, why now
Lithuania runs a dense, technically strong security scene — a national CERT, a fintech sector that gets attacked constantly, and some of the best-known privacy and infrastructure companies in Europe. There are excellent local events for the industry, and a conference once a year. What there isn't is a regular, informal room specifically for the offensive side of the craft: exploitation, red teaming, bug hunting, tooling, and the awkward findings you can only talk about among people who have written the same report.
This meetup is that room. Small, technical, recurring, and free. The format stays deliberately simple so it can survive: a couple of talks, a CTF you can actually finish in an hour, and enough time to talk to strangers. If it works, it happens every quarter and grows into something Vilnius keeps.
Hosted and funded by Offensive360. The company pays for the room and the food; it does not get the stage. Talks are chosen on technical merit by the community, and sales pitches are not talks.
Two evenings
talks + comedy both nights · CTF on the Wednesday · come to one or both
- TUE 1718:00
Doors, food, welcome drink
Come straight from work. Food and a drink on us while people arrive.
- TUE 1718:45
Talks
Technical talks and 10-minute lightning slots reserved for first-time speakers — research, exploitation, red teaming, bug bounty, tooling.
- TUE 1720:30
Stand-up: Jack Holmes + Grant Gallacher
Two live sets in English to close the night — Jack Holmes opening, Grant Gallacher (Scottish Comedian of the Year finalist) closing — then drinks and the open floor where the community actually forms.
- WED 1818:00
Doors, food, more talks
The same welcome and another round of talks — so there is plenty here even if capture-the-flag is not your thing.
- WED 1819:15
Live CTF · €2,000 prizes
A beginner-friendly capture-the-flag you can finish in an evening, solo or in teams, on your own laptop. €1,000 / €650 / €350 for the top three.
- WED 1820:45
Walkthrough, prizes + stand-up
We solve every challenge on screen and hand out the prize money, then Grant Gallacher and Jack Holmes close the festival — swapped order, all-new material — with drinks to finish.
Register — it's free
RSVP on Luma and you're on the list. Pick the Tuesday, the Wednesday, or both — you'll get the agenda and any changes by email, and Luma asks whether you want to stay for the comedy set so we can size it.
Free, both nights. No ticket, nothing to pay at the door. Bring a laptop for the Wednesday.
Submit a talk
Talks run on both evenings, with 10-minute lightning slots reserved for first-time speakers — say so below and we will help you prepare.
Questions
Who is this meetup for?
Anyone who breaks, defends, or builds software in Lithuania: penetration testers, red and blue teamers, bug bounty hunters, appsec and DevSecOps engineers, SOC analysts, CTF players, students, and developers who want to understand how their code gets attacked. No certifications required, no gatekeeping. Curiosity is the entry ticket.
What does it cost?
Nothing. Attendance is free. Offensive360 covers the venue, the pizza, and the drinks — no ticket, no upsell pitch from the stage, no vendor booth. Sponsorship exists to pay for the room, not to buy the microphone.
What language are the talks in?
English by default, so newcomers to Lithuania and international speakers can take part. Lithuanian talks are welcome — indicate your preference when you submit and we will label it clearly on the schedule.
Are the CTF prizes real?
Yes, and they are cash. €1,000 for first place, €650 for second, €350 for third — a €2,000 pool, paid by Offensive360. You can play solo or in a team; if a team wins, you split it however you agreed beforehand. The challenges are built so a first-timer can score, and we walk through every solution at the end regardless of where you finish.
Can I speak if I have never given a talk before?
Yes, and we actively want you. Every meetup keeps slots for first-time speakers and 10-minute lightning talks. A CVE you found, a box you rooted, a bypass you built, a failure you learned from — that is a talk. We will help you rehearse and shape the deck if you want the help.
What can I not talk about?
No live attacks on systems you do not own or have written permission to test, no dumping other people's data, no unpatched zero-days in products where the vendor has not been given a fair disclosure window, and no vendor sales pitches. Responsible disclosure stories are very welcome — the responsible part is the interesting part.
When and where exactly?
Artis Centrum Hotels, Totorių g. 23, Vilnius — the Aida room. Tuesday 17 and Wednesday 18 November 2026, from 18:00 both evenings. It is a seven-minute walk from Cathedral Square, so you can come straight from work. Two evenings rather than two full days, deliberately — come to one night or both.
Is there a code of conduct?
Yes. Be decent to people. Harassment, discrimination, and unsolicited recording of other attendees get you removed, with no debate. The community is meant to be the kind of room where a student can ask a basic question next to a principal engineer and nobody smirks.
Got a question we haven't answered? Email [email protected].