Full adversarial simulation. With a business goal.
While pentest seeks finding density, Red Team seeks an objective — usually business — and tests the entire defense chain along the way. We measure the blue team in a scenario as close to real as ethically possible.
What's included
The scope below is the default for a typical engagement. Everything is adjustable during scoping, at no cost.
- Targeted phishing (spear / whaling)
- OSINT against key employees
- Voice and messaging pretexting
- Controlled USB drop
- Assisted physical access (optional)
- Leaked credential exploitation
- EDR and AV evasion
- C2 with controlled persistence
- Local and AD privilege escalation
- Lateral movement and cloud pivot
- Credential dump and kerberoasting
- Defined objective capture (flag)
Modalities
adjustable to scopeClassic Red Team
Pure opposition. Blue team is not notified. We measure detection, containment and real response time.
Purple Team
Red and Blue cooperate in real time. Ideal to calibrate SIEM, EDR and SOC runbooks.
Assume Breach
We start already inside (simulated compromised host). Focus on containment, lateral movement and escalation.
How we conduct it
[pipeline]Objective & rules
We define the flag (e.g.: access to customer data). Written rules of engagement. Communication window with focal point.
OSINT & preparation
Surface mapping, key targets and pretexting. Own infrastructure setup: C2, domains, certificates, tested payloads.
Entry & persistence
Initial vector execution. Access with techniques aligned to MITRE ATT&CK. Logs maintained for operation audit.
Objective & debrief
Flag capture under supervision. Full report + debrief with blue team: what they detected, what went through, what to prioritize.
Deliverables
dual view · NDAFrequently asked
Pentest seeks density: how many flaws can I find. Red Team seeks depth: can I reach this business objective? One measures surface, the other measures defense as a whole.
Yes, social engineering is central if in scope. We never use sensitive personal info and all material is discarded after engagement. Employees are never punished.
In classic Red Team, no. In Purple Team, yes. The decision is yours and depends on what you want to measure — we recommend choosing during scoping.
Rules of engagement include 24/7 emergency focal point and halt keyword. Any anomaly immediately suspends the operation.
Ready to uncover your flaws?
First scoping call is free and covered by NDA. Within 48 hours you receive technical proposal, scope and timeline. No bureaucratic forms.