TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Bishop Fox

What Does “Good” Look Like in Red Teaming

2025-09-22 · Read original ↗

ATT&CK techniques detected

2 predictions
T1526Cloud Service Discovery
80%
“group could traverse cloud and on - prem infrastructure undetected, which then drives focused investment in segmentation and telemetry. - “ bad : ” the red team delivers a 90 - page vulnerability list with no context, paralyzing the security team. - “ ugly : ” the red team report…”
T1595Active Scanning
38%
“group could traverse cloud and on - prem infrastructure undetected, which then drives focused investment in segmentation and telemetry. - “ bad : ” the red team delivers a 90 - page vulnerability list with no context, paralyzing the security team. - “ ugly : ” the red team report…”

Summary

Most red team exercises fail to deliver real value. They check compliance boxes but don't address actual business risks. Learn the difference between good and bad offensive security, plus the strategic framework that transforms red teaming from expense into ROI.