Offensive Security · Red Team · TSCM

Adversary emulation that finds what blue teams miss.

Red Spectrum delivers full-scope red team operations, penetration testing, and technical surveillance countermeasures for enterprises that need to know what real attackers — and real eavesdroppers — would actually do.

Capabilities

What we do

Red Team Operations

Multi-stage adversary emulation mapped to MITRE ATT&CK. Custom C2 infrastructure, evasive payloads, and full-scope assumed-breach scenarios against your AD estate.

Penetration Testing

Targeted assessments of internal networks, Active Directory, web applications, and APIs. OWASP-aligned methodology with clear, exploitation-focused reporting.

TSCM

Technical Surveillance Countermeasures sweeps for executive offices, boardrooms, and sensitive facilities. RF, wired, and digital threat detection.

All services →

From the blog

Recent posts

All posts →

Featured

Open-source projects

WPS Calls for Service

● Live

Day-by-day view of Winnipeg Police Service calls for service — volume, call type, hour, and neighbourhood, with every day measured against a seasonal baseline of the same weekday. Built from the WPS public dashboard, with a JSON endpoint for each day.

WFPS Incident Map

● Live

Real-time map of active Winnipeg Fire Paramedic Service incidents — fire rescue, medical, and other dispatches — refreshed every minute from the City of Winnipeg Open Data portal.

TSCM-TAFL

● Live

Spectrum lookup across Canadian and US licensing data: ISED TAFL terrestrial and satellite records, 6 GHz AFC stations, cell sites, and amateur operators alongside FCC ASR, ULS, IBFS, and LMS. Radius search from any point, monthly registration diffs, and a TSCM mode that models received level inside a structure to rank nearby emitters.

PowerHuntShares-dotnet

C#

.NET port of PowerHuntShares for discovering, analyzing, and reporting excessive privileges on SMB shares in Active Directory environments.

SMBAudit

Python

Checks SMB share read/write access across many hosts via Impacket and exports a CSV flagging every share reachable with READ or WRITE permission.

WFPSIncidents

Java

Collector behind the live WFPS incident map — pulls and plots City of Winnipeg fire and paramedic calls from the open data feed.

All projects →

Engage Red Spectrum

If your organization handles sensitive data, runs critical infrastructure, or simply can't afford to find out the hard way — let's talk.

Start the conversation

Based in Winnipeg, Manitoba — working with organizations across Canada, on-site and remote.