red-team-tactics

Model attacker techniques mapped to MITRE ATT&CK phases for defender simulations.

132|22|Updated Dec 18, 2025
One-click install
npx skills add https://github.com/xenitV1/Antigravity-Workflows --skill red-team-tactics
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/xenitV1/Antigravity-Workflows/tree/main/skills/red-team-tactics
Command: npx skills add https://github.com/xenitV1/Antigravity-Workflows --skill red-team-tactics

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill provides practical, structured guidance to help security teams simulate attacker techniques and evaluate defenses against real-world threats.

Core Features & Use Cases

  • MITRE ATT&CK phase mapping for planning and executing adversary simulations.
  • Adversary simulation planning, evidence-based reporting, and defense-hardening guidance.
  • Use cases include blue-team training, incident response practice, and risk assessment across enterprise networks.

Quick Start

Run a red-team scenario aligned with MITRE ATT&CK to generate a defender-focused exercise plan.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I simulate red-team tactics aligned with MITRE ATT&CK?

Red-team simulation maps attacker techniques to MITRE ATT&CK phases, generating structured exercise plans that help defenders evaluate defenses against realistic threat scenarios using phase-based adversary modeling.

What's the difference between red-team and blue-team security exercises?

Red-team tactics simulate attacker behavior and techniques; blue-team training uses those simulations to practice defense, incident response, and detection. This skill supports both by providing defender-focused adversary scenarios.

Can I use red-team tactics for incident response practice?

Yes. Red-team scenario generation creates realistic attack lifecycle exercises that let security teams practice detection, containment, and response workflows without modifying production systems.

How do I plan an adversary simulation for enterprise networks?

Structure your simulation using MITRE ATT&CK phase mapping to align attacker techniques with your network environment. This skill generates evidence-based exercise plans and defense-hardening guidance tailored to enterprise scale.

What should I do after completing a red-team assessment?

Use structured reporting output to identify defense gaps, prioritize hardening actions, and track remediation. Red-team findings directly inform governance reviews and security posture improvements.