A number of ransomware malware samples, containing EDR/AV bypass features, have been discovered. EDR/AV bypass is also often required for red teaming engagements so red teams can compromise endpoints without being detected by blue teams. Many malware developers and security researchers in the world have been exploring the EDR/AV bypass area. New EDR/AV evasion techniques are constantly reported. This session will discuss some notable techniques that have been used in the wild.