RECON
- Record the source of every fact.
- Resolve before you scan.
- Version hints are hypotheses, not findings.
- Note what you deliberately did not touch.
Artifacts over vibes. Learn the model. Enter the range. Prove the finding.
DaemonCore Academy replaces passive training with 127 practical lessons, sealed training ranges, evidence collection, and real mastery gating. Every number is earned. Every range proves what it is.
127 PRACTICAL LESSONS // 70 LAB CONDITIONS // 8 PATHWAYS // 8 DRILL SETS // 7 FIELD MISSIONS
DAEMONCORE ACADEMY
OPERATOR SESSION // 5.1 ACTIVE
> verifying trust chain 5.1...
> validating pack digest...
> containment verified
> evidence artifact sealed
> mastery gate satisfied
>
THE LOOP
Most platforms teach security like a spectator sport.
DaemonCore Academy was built around a different loop.
MENTAL MODEL
KNOWLEDGE CHECK
DISPOSABLE RANGE
ARTIFACT CAPTURE
GATE SATISFIED
If you can't explain the signal, reproduce it, document it, and prove what happened—you haven't finished the lesson.
FULL-SPECTRUM TRAINING
127 COMPLETE LESSONS // ~120 HOURS GUIDED PRACTICAL WORK
DaemonCore Academy contains 120 hours and 45 minutes of guided practical work across 8 complete pathways. Every node depends on the one before it: you don't skip ahead by clicking, you advance by producing the required artifact and satisfying the mastery gate.
RANGE FABRIC 5.0
DaemonCore ships with nine bundled range packs through a content-addressed pack registry. Every launch fails closed when pack integrity does not match SHA-256 signatures. Runtime containment verification is performed before you ever get a shell.
Identity Citadel is the first protocol-native enterprise identity range. Unlike simulated web wrappers, it runs a full Samba Active Directory environment using live DNS, Kerberos, LDAP, and SMB.
TRUST CHAIN 5.1
Trust Chain 5.1 ensures that the environment you are testing is exactly what it claims to be. Full-tree fingerprints cover Dockerfiles, scripts, fixtures, cases, scenario contracts, and Compose definitions.
{
"receipt_id": "rcpt_7f3b9...",
"timestamp": "2026-08-26T20:01:00Z",
"version": "5.1",
"pack_digest": "sha256:8a1f...",
"containment_state": "verified",
"tree_fingerprint": {
"dockerfiles": "match",
"scripts": "match",
"fixtures": "match"
},
"network": "isolated",
"signature": "sig_4d9a..."
}MASTERY SYSTEM
The Mastery System evaluates your capability across six measured domains through fifteen evidence-driven professional decisions. We use practical scores, decision history, and adaptive remediation based on actual performance—no fake rankings, invented readiness scores, or imaginary community statistics.
0
PROFESSIONAL DECISIONS
0
PRINCIPAL CAPSTONES
0
MASTERY DOMAINS
0
LAB CONDITIONS
OBSERVED
GET /api/accounts/8841
200 OKOPERATOR HYPOTHESIS
EVIDENCE REQUIRED
AWAITING INTERPRETATION — NO COMMAND WILL PASS THIS GATE FOR YOU
DISPOSABLE RANGE
A REAL RANGE. A REAL SHELL. A HARD BOUNDARY.
When Docker Desktop is available, The Ghost Port provisions a disposable operator container and purpose-built target.
Nmap and curl return live results. Arbitrary shell commands work inside the operator container. When the run ends, the target disappears.
THE SHELL IS UNRESTRICTED.
THE BOUNDARY IS NOT.
INTERNAL RANGE
OPERATOR
UNRESTRICTED SHELL
TARGET
DISPOSABLE // EPHEMERAL
PROFESSIONAL TIER
REAL DIAGNOSTICS. AUTHORIZATION BOUND.
FieldOps Pro performs authorization-bound diagnostics against exact public targets. Every action is scoped to a declared engagement, a declared window, and a pinned destination.
A paid license unlocks the tool. It does not authorize a target. The Academy is accessible without purchasing FieldOps.
ENTRY 001
pending
ENTRY 002
pending
ENTRY 003
pending
ENTRY 004
pending
Engagement records are append-only. Completed and blocked actions are both written to the evidence ledger, so a refusal is as auditable as a result.
RESILIENCE
BREAK ASSUMPTIONS. MEASURE RECOVERY.
Four resilience profiles let operators apply pressure deliberately, watch the SLO boundary, and measure how a system actually recovers — not how its documentation claims it does.
Establish normal latency and error behavior.
Increase pressure gradually while watching SLO boundaries.
Measure behavior under a sudden controlled load increase.
Observe stability under sustained, capped pressure.
SLO LIMIT
P95 < 850ms
ERROR RATE
< 3.0%
AUTO ABORT
ARMED
SLO BREACH DETECTED
LOAD PHASE TERMINATED
RECOVERY VALIDATION
RESULT SEALED
CONTAINED LABORATORY POWER
Inside the sealed Academy range, operators can study saturation, breakpoint discovery, guardrail design, and recovery engineering against a disposable black-box target. None of this capability is pointed at a public network.
0RPS
SUSTAINED CEILING
0WORKERS
CONCURRENCY CAP
0REQUESTS
TOTAL BUDGET
SEALED CONTAINMENT BOX
CHAOS WORKER
DISPOSABLE TARGET
BLACK BOX
POWER WITHOUT CONTAINMENT
IS A LIABILITY.
The same pressure profiles that teach breakpoint discovery inside the range are deliberately unavailable against public infrastructure. FieldOps handles public targets under authorization and fixed rates; the sealed domain handles force.
OPERATOR RECORD
XP, streaks, weekly minutes, lessons completed, workbench scores, validation checks, drill performance, field missions, achievements and activity history — all of it derived from work you actually finished.
Records are local-first with atomic writes, backup recovery, JSON export and reset controls.
ACTIVITY HISTORY
FIELD NOTES
COMPACT OPERATOR CARDS // NOT BLOG POSTS
LOCAL FIRST
The Academy keeps your operator record on your machine. Nothing about your training work, evidence, or engagement data is shipped off to DaemonCore.
PERSISTENCE PATH
NO UPLOAD PATH // NO REMOTE TRAINING STORE
SYSTEM REQUIREMENTS
Docker Desktop with Linux containers is required for the live Ghost Port range. Without it, the Academy still runs the lessons, workbenches, validations and record — the range simply reports simulation mode instead of pretending to be live.
WINDOWS //
SUPPORTED
DOCKER RANGE //
AVAILABLE
BROWSER PREVIEW //
SIMULATION MODE
COMPARISON
| DAEMONCORE ACADEMY | FIELDOPS PRO |
|---|---|
| 127 Practical Lessons | Authorization-bound diagnostics |
| Sealed Training Ranges | Exact target allowlists |
| Identity Citadel | Testing-window enforcement |
| Mastery System | Public-destination validation |
| No target authorization needed | Controlled resilience testing |
| Included for free | $29.99 Lifetime (3 PCs) |
FAQ
No. DaemonCore 5.1 is built exclusively for Windows 10 and Windows 11.
Yes. Docker Desktop with Linux containers is required to run the sealed Ghost Port ranges and Identity Citadel locally. Without it, the Academy functions in a limited simulation mode.
FieldOps Pro is a one-time purchase of $29.99 for a lifetime membership, which includes activation on up to 3 PCs. It unlocks authorization-bound external diagnostics. The Academy, including all 127 lessons and ranges, is completely free.
Absolutely not. Training software is not authorization. FieldOps Pro requires you to input your explicit scope, window, and authorization reference before conducting any diagnostics against public targets.
No. The application is completely offline-first and does not silently update itself or phone home. You download updates manually when they are ready.
Locally on your machine. DaemonCore 5.1 has no cloud database, no tracking pixels, and no telemetry.
DAEMONCORE ACADEMY // v5.1
TRAINING SOFTWARE IS NOT AUTHORIZATION.
USE ONLY ON SYSTEMS YOU OWN OR HAVE EXPLICIT PERMISSION TO TEST.

Since this is a hands-on session, attendance will be strictly limited to ensure every participant receives direct feedback and has their questions answered in real-time.