red-team-tactics

Simulate attacker tactics mapped to MITRE ATT&CK framework phases.

1|Updated Mar 14, 2026
One-click install
npx skills add https://github.com/R2W1cs/Mustacademy --skill red-team-tactics-r2w1cs
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/R2W1cs/Mustacademy/tree/main/a/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/R2W1cs/Mustacademy --skill red-team-tactics-r2w1cs

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill provides a framework for simulating red team tactics based on the MITRE ATT&CK framework, helping to improve security defenses.

Core Features & Use Cases

  • Attack Phases: Offers a comprehensive guide to the attack lifecycle, from reconnaissance to exfiltration.
  • Evasion Techniques: Details defense evasion strategies to help avoid detection.
  • Privilege Escalation: Explains methods for escalating privileges on both Windows and Linux systems.
  • Active Directory Attacks: Special focus on targeted attacks within Active Directory environments.
  • Reporting Principles: Provides guidelines for documenting and reporting on red team activities.

Quick Start

Use the red-team-tactics skill to review the MITRE ATT&CK phases and understand how to map red team tactics to each phase.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I simulate attacker tactics using the MITRE ATT&CK framework for security improvement?

To simulate attacker tactics using the MITRE ATT&CK framework, you map red team activities across the attack lifecycle from reconnaissance to exfiltration. This helps identify vulnerabilities and improve security defenses against privilege escalation and evasion techniques.

What are the best evasion techniques to avoid detection during a security simulation?

The best evasion techniques for a security simulation involve applying defense evasion strategies mapped to the MITRE ATT&CK framework. These strategies help red teams avoid detection while simulating privilege escalation and active directory attacks to test security preparedness.

How do I escalate privileges on Windows and Linux during a red team exercise?

To escalate privileges on Windows and Linux during a red team exercise, you apply specific methods detailed within the MITRE ATT&CK framework. This simulation helps security professionals understand attack vectors and validate defense mechanisms against unauthorized privilege escalation.

What guidelines should I follow for documenting and reporting on red team activities?

For documenting and reporting red team activities, you should follow established reporting principles that map simulated tactics to MITRE ATT&CK phases. This provides a comprehensive record of attack vectors, evasion techniques, and privilege escalation attempts for security improvement.

Do I need prior knowledge of the MITRE ATT&CK framework to use these red team tactics?

Yes, you need prior knowledge of the MITRE ATT&CK framework and security principles to effectively use these red team tactics. Understanding the framework is required to map attack phases, evasion techniques, and privilege escalation methods accurately during security simulations.