> For the complete documentation index, see [llms.txt](https://h3ckt0r.gitbook.io/0xsec/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://h3ckt0r.gitbook.io/0xsec/offensive-security/red-teaming/red-team-fundamentals/red-team-threat-intelred-team-threat-intel.md).

# Red Team Threat IntelRed Team Threat Intel

### Learning Objectives

* Understand the basics of threat intelligence and how it can be applied to red team engagements.
* Learn how to create a threat-intel-driven campaign.
* Use frameworks to understand concepts and leverage threat intelligence.

### Applying Threat Intel to the Red Team

As previously mentioned, the red team will leverage CTI to aid in adversary emulation and support evidence of an adversary's behaviours.

To aid in consuming CTI and collecting TTPs, red teams will often use threat intelligence platforms and frameworks such as **MITRE ATT\&CK**, **TIBER-EU**, and **OST Map**.

#### **TIBER-EU** (**T**hreat **I**ntelligence-**b**ased **E**thical **R**ed Teaming)

<figure><img src="https://4250388013-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcgRjLSWS0JF8FXrQAeJd%2Fuploads%2FiX2BJrI5zpBreyp60E9a%2Fimage.png?alt=media&amp;token=3d50c0ae-c308-4a7c-8e53-4d6c67c96499" alt=""><figcaption></figcaption></figure>
