red-team-tactics

Codify red-team tactics and MITRE ATT&CK phases for adversary simulations.

4|Updated Jan 23, 2026
One-click install
npx skills add https://github.com/marcusagm/Mundam --skill red-team-tactics-marcusagm
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/marcusagm/Mundam/tree/main/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/marcusagm/Mundam --skill red-team-tactics-marcusagm

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill codifies red-team tactics and MITRE ATT&CK phases to guide ethical adversary simulations.

Core Features & Use Cases

  • MITRE ATT&CK phases mapping
  • Phase-based objectives and checklists
  • Safe, ethical adversary simulation planning and reporting

Quick Start

Draft a compliant red-team exercise plan based on MITRE ATT&CK for a mid-size enterprise.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan a red-team exercise mapped to MITRE ATT&CK phases?

To plan a red-team exercise, use structured phase maps, objectives, and checklists based on MITRE ATT&CK to guide ethical adversary simulations. This provides a compliant framework for planning, executing, and debriefing security testing activities.

What is adversary simulation in cybersecurity and how is it structured?

Adversary simulation is the process of emulating attacker tactics to strengthen defenses, structured around MITRE ATT&CK phases. It uses phase-based objectives and checklists to ensure safe, ethical testing and reporting across enterprise environments.

Can I use this for red-team reporting and debriefing in a mid-size enterprise?

Yes, you can use the provided reporting templates for red-team debriefing in a mid-size enterprise. The structured phase maps and objectives facilitate comprehensive reporting and detection engineering across scalable environments.

How do I map defense evasion techniques during an ethical adversary simulation?

Map defense evasion techniques by aligning red-team tactics with MITRE ATT&CK phase objectives. The skill codifies these tactics to guide ethical simulations, providing checklists to track evasion methods and improve detection engineering.

What is the best way to document threat modeling for red-team activities?

The best way to document threat modeling for red-team activities is by using structured reporting templates. These templates map simulated attacker tactics to MITRE ATT&CK phases, ensuring clear documentation of objectives and detection gaps.

Do I need specific tools to execute detection engineering from these red-team tactics?

No specific external tools are required to apply these red-team tactics for detection engineering. The skill provides the foundational phase maps, objectives, and reporting templates needed to structure your testing and identify detection gaps.