★ 8 · Updated 2026-09-22
Deploy Breach and Attack Simulation tools to continuously validate security control effectiveness by safely emulating real-world attack techniques.
Browse skills that share this tag.
★ 8 · Updated 2026-09-22
Deploy Breach and Attack Simulation tools to continuously validate security control effectiveness by safely emulating real-world attack techniques.
★ 17 · Updated 2026-09-22
Systematically scans Tor hidden services, paste sites, and ransomware leak sites to identify leaked credentials and threats targeting organizations.
★ 29 · Updated 2026-09-17
Analyze MITRE ATT&CK T1572 Protocol Tunneling for TTP triage, detection engineering, threat hunting, and defensive emulation planning.
★ 1 · Updated 2026-09-17
Defines scope, objectives, rules of engagement, threat models, and timelines before offensive security testing.
★ 29 · Updated 2026-09-16
Analyze MITRE ATT&CK T1218.012 Verclsid technique for TTP triage, detection engineering, threat hunting, and defensive planning.
★ 0 · Updated 2026-09-16
Proactively hunts for adversary abuse of signed system binaries (LOLBins) used to execute payloads, download files, or proxy execution.
★ 0 · Updated 2026-09-16
Proactively hunts for adversary abuse of signed system binaries (LOLBins) used to execute malicious payloads or evade defense controls.
★ 0 · Updated 2026-09-16
Proactively hunts for adversary abuse of signed system binaries to execute payloads, download files, or proxy execution.
★ 1 · Updated 2026-09-14
Provides principles, attack phases, evasion techniques, and reporting guidance for red team adversary simulation based on MITRE ATT&CK.
★ 0 · Updated 2026-09-14
Provides red team adversary simulation principles, attack lifecycle phases, defense evasion, and reporting guidelines.
★ 22 · Updated 2026-09-13
Structures malware analysis reports covering summary, sample identity, capabilities, IOCs, ATT&CK mapping, and detection guidance.
★ 2 · Updated 2026-09-12
Detect insider threat behavioral indicators including unusual data access, off-hours activity, mass file downloads, privilege abuse, and data theft.
★ 4 · Updated 2026-09-12
Detect Mimikatz execution through command-line patterns, LSASS access signatures, binary indicators, and in-memory detection of known modules.
★ 2,684 · Updated 2026-05-28
Use stolen application access tokens to bypass authentication and access restricted accounts, information, or services.
★ 2,684 · Updated 2026-05-09
Send spearphishing emails with malicious attachments to gain system access
★ 3,613 · Updated 2026-03-24
Execute red team engagement from reconnaissance to post-exploitation using MITRE ATT&CK-aligned tactics