red-team-tactics

Automate MITRE ATT&CK-aligned adversary simulation guidance for red-team engagements.

1|1|Updated Mar 24, 2026
One-click install
npx skills add https://github.com/guib1/red-team-docker --skill red-team-tactics-guib1
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/guib1/red-team-docker/tree/main/pentest-lab/.agents/skills/red-team-tactics
Command: npx skills add https://github.com/guib1/red-team-docker --skill red-team-tactics-guib1

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill helps security teams understand and apply MITRE ATT&CK-aligned red-team tactics to simulate adversaries, evaluate defenses, and generate actionable reports.

Core Features & Use Cases

  • MITRE ATT&CK phase mapping and tactical guidance for adversary simulations.
  • Structured playbooks covering Reconnaissance, Initial Access, Execution, Persistence, Privilege Escalation, Defense Evasion, Credential Access, Discovery, Lateral Movement, Collection, C2, Exfiltration, and Reporting.
  • Ethical guidelines and reporting templates to document outcomes and improve defenses.

Quick Start

Outline a MITRE ATT&CK-aligned red-team scenario and immediate next steps for a tabletop exercise.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I structure adversary simulation scenarios using MITRE ATT&CK tactics?

Map adversary simulation phases to MITRE ATT&CK tactics across reconnaissance, execution, persistence, and lateral movement to generate structured red-team engagement playbooks.

What is included in MITRE ATT&CK red-team threat modeling?

MITRE ATT&CK red-team threat modeling includes tactical guidance for defense evasion, credential access, C2, and exfiltration, alongside ethical guidelines and reporting templates to document simulation outcomes.

Can I use this for red-team tabletop exercises without actual exploit code?

Yes, you can use this for red-team tabletop exercises as it provides comprehensive knowledge transfer and tactical guidance without requiring actual exploit code or execution tools.

How do I start a red-team engagement playbook for defense evasion and discovery?

Start a red-team engagement playbook by outlining immediate next steps for defense evasion and discovery using MITRE-aligned tactical guidance to structure realistic attack scenarios.

Does this adversary simulation provide reporting templates for security testing?

Yes, this adversary simulation provides structured reporting templates designed to document red-team engagement outcomes, evaluate defenses, and generate actionable security testing reports.

What are the limitations of using MITRE ATT&CK for adversary simulation guidance?

The limitation is that this MITRE ATT&CK adversary simulation guidance provides tactical playbooks and threat modeling without supplying actual exploit code, tools, or automated execution capabilities.