Red Team Operations
Multi-stage adversary emulation mapped to MITRE ATT&CK. Custom C2 infrastructure, evasive payloads, and full-scope assumed-breach scenarios against your AD estate.
Offensive Security · Red Team · TSCM
Red Spectrum delivers full-scope red team operations, penetration testing, and technical surveillance countermeasures for enterprises that need to know what real attackers — and real eavesdroppers — would actually do.
Capabilities
Multi-stage adversary emulation mapped to MITRE ATT&CK. Custom C2 infrastructure, evasive payloads, and full-scope assumed-breach scenarios against your AD estate.
Targeted assessments of internal networks, Active Directory, web applications, and APIs. OWASP-aligned methodology with clear, exploitation-focused reporting.
Technical Surveillance Countermeasures sweeps for executive offices, boardrooms, and sensitive facilities. RF, wired, and digital threat detection.
From the blog
Why this site exists, and what to expect from it.
How to spot overseas dropshipping operations disguised as local small businesses — and why emotional marketing isn't a substitute for transparency.
A radio station's keyword contest API was returning every future codeword in the contest — all at once — to anyone who submitted a correct answer.
Featured
Day-by-day view of Winnipeg Police Service calls for service — volume, call type, hour, and neighbourhood, with every day measured against a seasonal baseline of the same weekday. Built from the WPS public dashboard, with a JSON endpoint for each day.
Real-time map of active Winnipeg Fire Paramedic Service incidents — fire rescue, medical, and other dispatches — refreshed every minute from the City of Winnipeg Open Data portal.
Spectrum lookup across Canadian and US licensing data: ISED TAFL terrestrial and satellite records, 6 GHz AFC stations, cell sites, and amateur operators alongside FCC ASR, ULS, IBFS, and LMS. Radius search from any point, monthly registration diffs, and a TSCM mode that models received level inside a structure to rank nearby emitters.
C#
.NET port of PowerHuntShares for discovering, analyzing, and reporting excessive privileges on SMB shares in Active Directory environments.
Python
Checks SMB share read/write access across many hosts via Impacket and exports a CSV flagging every share reachable with READ or WRITE permission.
Java
Collector behind the live WFPS incident map — pulls and plots City of Winnipeg fire and paramedic calls from the open data feed.
If your organization handles sensitive data, runs critical infrastructure, or simply can't afford to find out the hard way — let's talk.
Start the conversationBased in Winnipeg, Manitoba — working with organizations across Canada, on-site and remote.