red-team-tactics

Outline red team attack phases aligned with MITRE ATT&CK.

3|1|Updated Feb 20, 2026
One-click install
npx skills add https://github.com/Harmitx7/tribunal-kit --skill red-team-tactics-harmitx7
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/Harmitx7/tribunal-kit/tree/main/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/Harmitx7/tribunal-kit --skill red-team-tactics-harmitx7

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides a comprehensive guide to red teaming and penetration testing principles, helping users understand attack phases, common vulnerabilities, and ethical considerations for authorized security assessments.

Core Features & Use Cases

  • Attack Phase Breakdown: Details reconnaissance, initial access, persistence, lateral movement, and exfiltration based on MITRE ATT&CK.
  • Vulnerability Targets: Lists common areas to test in web applications, APIs, and infrastructure.
  • Ethical Guidelines: Emphasizes the importance of scope, authorization, and responsible disclosure.
  • Use Case: A security analyst can use this Skill to quickly reference the steps involved in a red team engagement or to understand the typical vectors an attacker might use to compromise a system.

Quick Start

Explain the reconnaissance phase of a red team engagement.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What are the standard attack phases in a red team engagement?

Standard red team attack phases include reconnaissance, initial access, persistence, lateral movement, and exfiltration. These phases align with the MITRE ATT&CK framework to provide a structured methodology for authorized penetration testing and offensive security assessments.

How do I perform reconnaissance for penetration testing?

Reconnaissance in penetration testing involves gathering target information during the initial attack phase. This red team engagement step focuses on identifying common vulnerability targets across web applications, APIs, and infrastructure before attempting initial access.

What common vulnerability targets should I assess during offensive security testing?

Common vulnerability targets to assess during offensive security testing include web applications, APIs, and infrastructure. Red team tactics focus on these areas to identify attack vectors and potential system compromises based on ethical hacking best practices.

Can I use red team tactics for unauthorized cybersecurity attack simulations?

Red team tactics must only be used for authorized security assessments. Ethical guidelines require strict adherence to engagement scoping, proper authorization, and responsible disclosure to ensure penetration testing remains legal and compliant.

How does the MITRE ATT&CK framework align with red team operations?

The MITRE ATT&CK framework aligns with red team operations by providing a structured taxonomy of attack phases and tactics. It covers reconnaissance, initial access, persistence, lateral movement, and exfiltration to guide comprehensive vulnerability assessment methodologies.

What should be included in reporting formats for authorized security assessments?

Reporting formats for authorized security assessments should document the attack phases executed, vulnerability targets tested, and detection evasion techniques used. These reports align with red team principles to support responsible disclosure and remediation efforts.