red-team-tactics

Organize adversary simulation knowledge for security assessment planning and reporting.

1|Updated May 6, 2026
One-click install
npx skills add https://github.com/ag47-pt/Website --skill red-team-tactics-ag47-pt
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/ag47-pt/Website/tree/main/.claude/skills/red-team-tactics
Command: npx skills add https://github.com/ag47-pt/Website --skill red-team-tactics-ag47-pt

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps security teams understand adversary behavior and organize red team activities using structured attack lifecycle principles.

Core Features & Use Cases

  • Attack Framework Guidance: Provides MITRE ATT&CK-aligned concepts covering reconnaissance, access, execution, persistence, and other adversary phases.
  • Security Assessment Support: Helps practitioners analyze attack paths, detection gaps, and reporting practices during authorized security exercises.
  • Use Case: A security analyst can use this Skill to structure a penetration testing report by mapping observed techniques to attack phases and identifying defensive improvements.

Quick Start

Use the red-team-tactics skill to help me map a security assessment finding to relevant attack phases and detection recommendations.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I map security assessment findings to MITRE ATT&CK phases?

Mapping security assessment findings to MITRE ATT&CK phases involves categorizing observed adversary techniques into structured attack lifecycle stages like reconnaissance and persistence, which helps identify detection gaps and plan defensive improvements for authorized red team exercises.

What is red team threat modeling and how does it improve detection?

Red team threat modeling is the process of simulating adversary behavior using structured attack lifecycle principles. It improves detection by mapping simulated techniques to security assessment phases, revealing gaps in defensive coverage and reporting practices.

Can I use this approach for authorized penetration testing report generation?

Yes, you can use this approach for authorized penetration testing report generation. It organizes adversary simulation knowledge to help security analysts map observed techniques to attack paths and structure defensive improvement recommendations.

What's the best way to structure an adversary simulation exercise?

The best way to structure an adversary simulation exercise is by applying MITRE ATT&CK-aligned concepts. This involves organizing activities across reconnaissance, access, execution, and persistence phases to ensure comprehensive security assessment and ethical testing practices.

Do I need prior penetration testing experience to apply these red team tactics?

Applying these red team tactics requires understanding of ethical security assessment principles and adversary simulation concepts. It is designed for security practitioners organizing threat modeling and detection improvement scenarios during authorized exercises.