test-attack-technique

Execute and validate cloud attack techniques with Stratus Red Team and generate HTML reports.

Updated Feb 18, 2026
One-click install
npx skills add https://github.com/vanhoangkha/cloud-security-audit --skill test-attack-technique
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: test-attack-technique
Source: https://github.com/vanhoangkha/cloud-security-audit/tree/main/aws/stratus-red-team/.claude/skills/test-attack-technique
Command: npx skills add https://github.com/vanhoangkha/cloud-security-audit --skill test-attack-technique

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill automates the testing and validation of cloud attack techniques, ensuring that security tools and methodologies function as expected in a controlled environment.

Core Features & Use Cases

  • Automated Attack Lifecycle: Executes warmup, detonation, and cleanup phases for cloud attack techniques.
  • Credential Validation: Verifies cloud credentials before execution and seeks user confirmation.
  • Outcome Validation: Parses command output, checks expected results, and generates detailed HTML reports.
  • Use Case: A security engineer needs to validate a new Stratus Red Team technique against their AWS environment. They use this Skill to run the technique, confirm its behavior, and receive a report detailing the execution and any discrepancies.

Quick Start

Use the test-attack-technique skill to test the aws.credential-access.secretsmanager-retrieve-secrets technique.

Frequently Asked Questions about test-attack-technique

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate cloud attack technique testing with Stratus Red Team?

Cloud attack simulation automates warmup, detonation, and cleanup phases using Stratus Red Team to validate TTPs across AWS, Azure, GCP, Kubernetes, and Entra ID environments.

What is the process for validating cloud credentials before running an attack simulation?

Credential validation verifies cloud credentials before execution and seeks user confirmation. This ensures cloud attack techniques execute safely against the intended AWS, Azure, GCP, Kubernetes, or Entra ID environments.

Can I use this to test AWS, Azure, GCP, and Kubernetes attack techniques?

Yes, attack simulation validates cloud techniques across AWS, Azure, GCP, Kubernetes, and Entra ID. It parses command outputs and verifies expected outcomes against actual results for security testing.

How do I generate HTML reports for penetration testing validation?

HTML reports for penetration testing are generated automatically after validating expected outcomes against actual results. These comprehensive reports detail execution and discrepancies found during TTP validation.

What is the best way to validate Stratus Red Team techniques in a controlled environment?

The best way to validate Stratus Red Team techniques is by executing the attack lifecycle and parsing command outputs. This approach verifies expected behaviors and generates detailed reports for security testing.