red-team-tactics

Explain red team tactics aligned with the MITRE ATT&CK framework.

1|Updated Jan 26, 2026
One-click install
npx skills add https://github.com/simoabid/ABID.Dev-Portfolio --skill red-team-tactics-simoabid
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: red-team-tactics
Source: https://github.com/simoabid/ABID.Dev-Portfolio/tree/main/.agent/skills/red-team-tactics
Command: npx skills add https://github.com/simoabid/ABID.Dev-Portfolio --skill red-team-tactics-simoabid

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill provides a structured understanding of red team tactics and principles, enabling users to simulate adversarial behavior for security testing and defense improvement.

Core Features & Use Cases

  • MITRE ATT&CK Framework: Details attack phases from reconnaissance to impact.
  • Tactical Principles: Explains key techniques for privilege escalation, defense evasion, and lateral movement.
  • Reporting & Ethics: Guides on documenting findings and adhering to ethical boundaries.
  • Use Case: A security analyst can use this Skill to plan and execute a more effective red team engagement, ensuring all critical attack vectors are considered and that the engagement remains within ethical and operational limits.

Quick Start

Explain the key techniques for defense evasion in red team tactics.

Frequently Asked Questions about red-team-tactics

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I simulate adversary behavior using the MITRE ATT&CK framework?

Adversary simulation using the MITRE ATT&CK framework involves mapping attack lifecycle phases from reconnaissance to impact. You structure offensive assessments by applying techniques for initial access, privilege escalation, defense evasion, and lateral movement to test security postures.

What are the key techniques for defense evasion in red team operations?

Key defense evasion techniques in red team operations involve tactics to bypass security monitoring and controls during an engagement. This Skill details these principles to help operators avoid detection while moving through the attack lifecycle.

How do I plan a red team engagement from initial access to reporting?

Planning a red team engagement requires structuring the attack lifecycle from reconnaissance to final reporting. This includes executing initial access, privilege escalation, and lateral movement, followed by documenting findings and adhering to ethical boundaries and operational limits.

Does adversary simulation require specific prerequisite knowledge for security analysts?

Adversary simulation requires understanding penetration testing principles and the MITRE ATT&CK framework. Security professionals need knowledge of attack phases like privilege escalation and defense evasion to conduct effective offensive security assessments and improve defensive postures.

What is the difference between penetration testing and adversary simulation?

Penetration testing typically focuses on identifying vulnerabilities, while adversary simulation emulates specific threat behaviors across the entire attack lifecycle. This Skill structures simulations using the MITRE ATT&CK framework to test detection and response capabilities against realistic adversarial tactics.