Fu, Bo-Syuan

Onward Security, a DEKRA Company / Senior Red Team Specialist

* Senior Red Team Specialist at DEKRA Group, Onward Security, Offensive CyberSecurity Department.

* Specializing in Adversary Simulation, Tooling, and IoT Security.

* Co-designed the HITCON CyberRange 2023 competition.

SPEECH
4/17 (Thu.) 14:00 - 14:30 7F 701E Offensive Security Forum
Red Team's Stealth Tactics: The Art of Reflective Loading against EDR

As EDR solutions continue to evolve, red teams face growing challenges in evading detection, making Defense Evasion a core priority in modern adversary simulation. Among the many techniques available, Loaders play a critical role in executing malicious payloads—particularly Reflective Loaders, which offer exceptional flexibility and stealth, making them a powerful weapon in the red team arsenal.

This session delves into the concept of Reflective Loaders, mapping them against EDR bypass strategies. We will explore how these loaders evade memory scanning, behavioral analysis, and other detection mechanisms, providing practical insights into their strengths and limitations. By bridging the gap between offensive techniques and defensive strategies, this session equips enterprise security teams with the technical knowledge needed to enhance threat detection and response, fortifying defenses against increasingly sophisticated adversaries.