> For the complete documentation index, see [llms.txt](https://red.infiltr8.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://red.infiltr8.io/redteam/weapon.md).

# Execution

## Theory

Execution consists of techniques that result in adversary-controlled code running on a local or remote system. Techniques that run malicious code are often paired with techniques from all other tactics to achieve broader goals, like exploring a network or stealing data. For example, an adversary might use a remote access tool to run a PowerShell script that does Remote System Discovery.

![](/files/IPwEmjkwKJ5eXqaJHFMe)

## Resources

{% embed url="<https://www.lockheedmartin.com/en-us/capabilities/cyber/cyber-kill-chain.html>" %}

{% embed url="<https://www.unifiedkillchain.com/>" %}

{% embed url="<https://www.ired.team/>" %}

{% embed url="<https://tryhackme.com/room/weaponization>" %}

{% embed url="<https://github.com/infosecn1nja/Red-Teaming-Toolkit#Initial-Access>" %}
