<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Red Team Operations on UncleSp1d3r Blog</title><link>https://unclesp1d3r.github.io/series/red-team-operations/</link><description>Recent content in Red Team Operations on UncleSp1d3r Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026 UncleSp1d3r</copyright><lastBuildDate>Fri, 14 Aug 2026 13:16:18 -0400</lastBuildDate><atom:link href="https://unclesp1d3r.github.io/series/red-team-operations/index.xml" rel="self" type="application/rss+xml"/><item><title>Red Teaming: Scenario-Based Testing</title><link>https://unclesp1d3r.github.io/posts/2023-05-22-red-teaming-scenario-based-testing/</link><pubDate>Mon, 22 May 2023 00:00:00 +0000</pubDate><guid>https://unclesp1d3r.github.io/posts/2023-05-22-red-teaming-scenario-based-testing/</guid><description>This article explains Scenario-Based Testing (SBT) in detail, its benefits, tools and techniques used, and provides examples of how SBT can be used in Red Team Exercises to identify vulnerabilities and weaknesses in an organization&amp;rsquo;s security defenses.</description></item><item><title>Red team supply chain exercises: simulating what actually broke the world</title><link>https://unclesp1d3r.github.io/posts/2023-04-28-advanced-red-team-exercises-supply-chain-attacks/</link><pubDate>Fri, 28 Apr 2023 00:00:00 +0000</pubDate><guid>https://unclesp1d3r.github.io/posts/2023-04-28-advanced-red-team-exercises-supply-chain-attacks/</guid><description>Part three of the Red Team Operations series. How operators simulate supply chain attacks on engagement, the canonical real-world case studies that justify the budget (SolarWinds, NotPetya, CCleaner, Kaseya, Codecov, 3CX, MOVEit, XZ Utils), the engagement-scoping considerations that make supply-chain testing different from regular red team work, and the defender controls (SBOM, signing, build provenance via SLSA, dependency review) that actually move the needle.</description></item><item><title>Red team exercises: the eight engagement shapes and the five-phase playbook</title><link>https://unclesp1d3r.github.io/posts/2023-04-14-red-team-exercises/</link><pubDate>Fri, 14 Apr 2023 00:00:00 +0000</pubDate><guid>https://unclesp1d3r.github.io/posts/2023-04-14-red-team-exercises/</guid><description>An operator&amp;rsquo;s walkthrough of red team engagement types (network pentest, social engineering, physical, red-vs-blue, purple team, multiscenario, full spectrum, tabletop), the five-phase methodology that structures most engagements (recon, scanning, exploitation, post-exploitation, reporting), the actual tooling stack at each phase, and the case studies (DoD Cyber Flag, Verizon DBIR-derived attack-pattern data) worth grounding the work in.</description></item><item><title>The Adversary Mindset: A Working Guide to Red Team Operations</title><link>https://unclesp1d3r.github.io/posts/2023-03-13-red-teaming-basics/</link><pubDate>Mon, 13 Mar 2023 00:00:00 +0000</pubDate><guid>https://unclesp1d3r.github.io/posts/2023-03-13-red-teaming-basics/</guid><description>A working operator&amp;rsquo;s view of red teaming versus pen testing, the Unified Kill Chain as a practical mental model rather than a theoretical framework, how modern C2 infrastructure is actually built (and why domain fronting isn&amp;rsquo;t the answer anymore), purple teaming as collaborative tuning, deconfliction with the white cell, and the operator-side OPSEC habits that decide whether you finish the engagement quietly.</description></item></channel></rss>