red-team-tactics

Analyze adversary tactics with MITRE ATT&CK to improve detection and response.

34|29|Updated Jul 14, 2025
One-click install
npx skills add https://github.com/adelpro/open-tarteel --skill red-team-tactics-adelpro
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/adelpro/open-tarteel/tree/main/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/adelpro/open-tarteel --skill red-team-tactics-adelpro

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Enables security teams to understand adversary tactics and strengthen defenses by mapping MITRE ATT&CK concepts to practical security activities.

Core Features & Use Cases

  • Threat modeling & training: Supports threat modeling, security assessments, and red-team exercise planning.
  • MITRE ATT&CK mapping: Aligns attack phases with detections, reporting, and remediation workflows.
  • Educational guidance: Provides structured insights into reconnaissance, initial access, execution, persistence, privilege escalation, defense evasion, discovery, lateral movement, collection, C2, exfiltration, and impact.

Quick Start

Start by mapping the MITRE ATT&CK phases to your environment and plan a focused red-team exercise.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I map MITRE ATT&CK phases to improve security detection and response?

MITRE ATT&CK mapping analyzes adversary tactics across the attack lifecycle, from reconnaissance to exfiltration, identifying detection gaps to plan focused red-team exercises and strengthen enterprise and cloud defenses.

Can I use adversary simulation for threat modeling in cloud environments?

Adversary simulation supports threat modeling across enterprise networks and cloud environments by mapping attack phases like lateral movement and defense evasion to practical security activities and remediation workflows.

What is the best way to plan a red-team exercise using adversary tactics?

Planning a red-team exercise involves mapping MITRE ATT&CK phases to your environment, analyzing adversary tactics like persistence and privilege escalation, and identifying detection gaps to guide risk mitigation strategies.

How does defense evasion analysis help improve security reporting?

Defense evasion analysis aligns adversary tactics with detection workflows and reporting, enabling security teams to identify coverage gaps, document remediation steps, and improve overall risk mitigation across attack lifecycle phases.

Does red-team simulation require specific security training prerequisites?

Red-team simulation requires understanding adversary tactics and MITRE ATT&CK concepts to effectively map attack phases, identify detection gaps, and apply threat modeling across enterprise and cloud security environments.

Why should I use MITRE ATT&CK mapping instead of other threat modeling approaches?

MITRE ATT&CK mapping provides structured alignment of attack phases with detections and remediation workflows, offering comprehensive coverage from initial access to impact for effective red-team planning and defense strengthening.