red-team-tactics

Simulate adversary techniques mapped to MITRE ATT&CK phases for red-team exercises.

Updated Sep 2, 2025
One-click install
npx skills add https://github.com/rafaelminatto1/fisioflow-51658291 --skill red-team-tactics-rafaelminatto1
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/rafaelminatto1/fisioflow-51658291/tree/main/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/rafaelminatto1/fisioflow-51658291 --skill red-team-tactics-rafaelminatto1

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Security teams struggle to validate controls against realistic attacker techniques and to produce actionable remediation reports.

Core Features & Use Cases

  • MITRE ATT&CK phase coverage and mapping for structured testing
  • Adversary emulation principles to guide safe, ethical red-team exercises
  • Comprehensive reporting templates for findings and mitigation steps
  • Use Case: Threat emulation to validate detection, response, and incident handling across enterprise networks

Quick Start

Outline a MITRE ATT&CK-aligned red-team exercise plan for a mid-size enterprise.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan a red-team exercise mapped to MITRE ATT&CK phases?

To plan a red-team exercise, outline adversary emulation techniques aligned with MITRE ATT&CK phases to validate detection controls and incident response readiness across enterprise networks. This structured approach guides safe, ethical threat simulation and risk mitigation.

What is adversary emulation and how does it improve defensive readiness?

Adversary emulation simulates realistic attacker techniques to test and improve defensive readiness and incident response capabilities. By articulating MITRE ATT&CK mappings, security teams validate controls against threats and produce actionable remediation reports.

Can I use threat emulation to validate detection and response for a mid-size enterprise?

Yes, threat emulation is applicable for validating detection, response, and incident handling across mid-size enterprise networks. It provides comprehensive reporting templates for findings and mitigation steps to guide ethical testing and risk mitigation.

How do I structure red-team reporting to include detection evasion considerations?

Structure red-team reporting by articulating MITRE ATT&CK phase mappings, detection evasion considerations, and specific mitigation steps. This validates security controls and produces actionable remediation reports to guide ethical testing and risk mitigation.

What are the limitations of using MITRE ATT&CK for security assessments?

Limitations of MITRE ATT&CK for security assessments involve the need to carefully articulate detection evasion considerations and reporting requirements. Proper adversary emulation requires structured testing to ethically validate controls without disrupting enterprise networks.