red-team-tactics

Guide offensive security testing through reconnaissance, exploitation, and OWASP-based reporting.

10|2|Updated Mar 10, 2026
One-click install
npx skills add https://github.com/bugrabilge/bilge-development-kit --skill red-team-tactics-bugrabilge
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/bugrabilge/bilge-development-kit/tree/main/skills/red-team-tactics
Command: npx skills add https://github.com/bugrabilge/bilge-development-kit --skill red-team-tactics-bugrabilge

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides a comprehensive framework for understanding and executing offensive security operations, enabling users to identify and exploit vulnerabilities effectively.

Core Features & Use Cases

  • Penetration Testing Methodology: Guides users through the phases of a security engagement, from reconnaissance to reporting.
  • OWASP Testing Guide: Details specific vulnerabilities and testing techniques based on the OWASP Top 10.
  • Exploitation Techniques: Offers practical methods for exploiting web applications and APIs.
  • Reporting Standards: Outlines best practices for documenting findings and providing remediation.
  • Use Case: A security analyst can use this Skill to plan and execute a penetration test against a web application, ensuring all critical vulnerabilities are identified and reported professionally.

Quick Start

Use the red-team-tactics skill to perform reconnaissance on the target domain example.com.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I conduct penetration testing based on the OWASP guidelines?

Penetration testing based on OWASP guidelines requires a methodology covering reconnaissance, vulnerability analysis, exploitation, and professional reporting to identify and document security weaknesses in applications.

What is the standard methodology for offensive security and vulnerability assessment?

Offensive security methodology progresses through reconnaissance, vulnerability analysis, exploitation, and reporting to simulate real-world attack scenarios and identify security weaknesses in web applications and APIs.

Do I need prior knowledge of network protocols to perform vulnerability exploitation?

Yes, performing vulnerability exploitation requires an understanding of network protocols, web application architecture, and common exploitation techniques to effectively simulate real-world attack scenarios.

How do I report vulnerabilities found during a security engagement?

Reporting vulnerabilities involves following best practices for documenting findings and providing remediation steps based on OWASP guidelines, ensuring all critical security weaknesses are reported professionally.

Can I use this methodology to test web applications and APIs for security weaknesses?

Yes, this methodology supports testing web applications and APIs by offering practical methods for exploiting vulnerabilities and identifying security weaknesses during a penetration testing engagement.