tag

adversary-emulation

5 indexed skills · max 10 per page

skills (5)

executing-red-team-exercise

mukul975/Anthropic-Cybersecurity-Skills · executing-red-team-exercise

0

Executes comprehensive red team exercises that simulate real-world adversary operations against an organization's people, processes, and technology. The red team operates with stealth as a primary objective, employing the full attack lifecycle from initial reconnaissance through objective completion while testing the organization's detection and response capabilities. This differs from penetration testing by focusing on adversary emulation rather than vulnerability identification. Activates for requests involving red team exercise, adversary simulation, adversary emulation, or full-scope offensive security assessment.

performing-purple-team-atomic-testing

mukul975/Anthropic-Cybersecurity-Skills · performing-purple-team-atomic-testing

0

Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the ATT&CK matrix, and runs detection validation loops to measure blue team visibility. Covers Invoke-AtomicRedTeam PowerShell execution, ATT&CK Navigator layer generation for heatmaps, Sigma rule correlation, and continuous atomic testing pipelines. Activates for requests involving purple team exercises, atomic test execution, ATT&CK coverage assessment, detection engineering validation, or adversary emulation testing.

conducting-full-scope-red-team-engagement

mukul975/Anthropic-Cybersecurity-Skills · conducting-full-scope-red-team-engagement

0

Plan and execute a comprehensive red team engagement covering reconnaissance through post-exploitation using MITRE ATT&CK-aligned TTPs to evaluate an organization's detection and response capabilities.

performing-purple-team-exercise

mukul975/Anthropic-Cybersecurity-Skills · performing-purple-team-exercise

0

Performs purple team exercises by coordinating red team adversary emulation with blue team detection validation using MITRE ATT&CK-mapped attack scenarios, real-time detection testing, and collaborative gap remediation. Use when SOC teams need to validate detection capabilities, improve analyst skills, and close detection gaps through structured offensive-defensive collaboration.

building-red-team-c2-infrastructure-with-havoc

mukul975/Anthropic-Cybersecurity-Skills · building-red-team-c2-infrastructure-with-havoc

0

Deploy and configure the Havoc C2 framework with teamserver, HTTPS listeners, redirectors, and Demon agents for authorized red team operations.