NIST SP 800-115 (Technical Guide to Information Security Testing and Assessment)
Execution Phase

NIST SP 800-115 (Technical Guide to Information Security Testing and Assessment) NISTSP115-6: Execution Phase - Discovery, Attack, and Reporting

Execute Section 7 execution phase including: discovery phase (network mapping + system fingerprinting + vulnerability identification) + attack phase (Gaining Access + Escalating Privileges + System Browsing + Installing Additional Tools + Loss of Confidentiality demonstration + Loss of Integrity demonstration + Loss of Availability test) + reporting phase (factual findings + business impact analysis + risk-based prioritisation + recommendations + remediation guidance + executive summary + technical detail). Maintain audit trail of all activities + chain of custody for evidence.

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.