The Academy is free // the war room is optional
DAEMONCORE // ACADEMY
DAEMONCORE // RELEASE ARCHITECTURE v7.1.1

WHAT SHIPS.

Complete engineering changelog, architectural specifications, and operational capabilities across active DaemonCore Academy and FieldOps releases.

LATEST RELEASE // v7.1.1 PRODUCTION (FIELDOPS 7)

STABLE PRODUCTION RELEASE // SEPT 6, 2026 GitHub v7.1.1 Release
FIELDOPS 7 // THE EXECUTION DECK IS LIVE

THE EXECUTION DECK IS LIVE.

FieldOps 7 brings real assessment engines into one professional operations console. Run service discovery, template validation, passive web assessment, TLS auditing, and verified resilience workflows while retaining live output and structured evidence inside the active operation.

Cross-Platform Scope: DaemonCore Academy 7.1.1 and FieldOps 7 are stable production releases for Windows 10/11 x64 and Linux x64 (AppImage and Debian/Ubuntu .deb package). All operator records and licenses persist.
DaemonCore FieldOps 7 Execution Deck Promotional Flyer

PROFESSIONAL OPERATIONS SOFTWARE

FieldOps coordinates real third-party assessment engines. Use it only on systems you own or are explicitly authorized to assess. Managed execution is attributable, target-bound, cancellable, and recorded.

WHAT'S NEW IN 7.1.1

  • Unified Execution Deck: Operate Nmap, Nuclei, OWASP ZAP Baseline, testssl.sh, and k6 from one FieldOps surface.
  • Real Scanner Findings: Normalize Nuclei JSONL, ZAP alerts, and testssl results into structured engagement evidence.
  • Exact-Target Execution: Bind managed activity to the approved destination, resolved address, declared port, and transport.
  • Live Operator Control: Stream process output, show engine status, enforce timeouts, and provide immediate cancellation.
  • Digest-Pinned Adapters: Use immutable Docker image digests instead of mutable “latest” tags for supported container adapters.
  • Sealed Operation Records: Retain tool identity, engine version, target, timing, result summary, and normalized findings with the operation.
  • Cross-Platform Production: Stable 7.1.1 production builds for Windows (.exe) and Linux (.AppImage and .deb) with published checksums.

PREVIOUS RELEASE // v6.5.1 PRODUCTION

PRODUCTION STATUS GitHub v6.5.1 Release

Platform Scope: DaemonCore Academy 6.5.1 is officially designated as Production across Windows 10/11 x64, universal Linux x64 AppImage, and Ubuntu/Debian-family native packages (.deb). All operator records, Mission OS state, and licenses persist across upgrades.

Professional Resilience & Scope Policy

Professional infrastructure resilience testing under verified authorization. DaemonCore does not provide anonymous traffic generation or indiscriminate denial-of-service functionality. Managed workloads require a signed permit and a capacity grant issued by the tested infrastructure.

WHAT'S NEW IN 6.5.1

  • Managed k6 execution: FieldOps executes Grafana k6 resilience runs within validated scope and boundary constraints.
  • Verified Load Authority: Tests require a target-hosted, challenge-bound capacity grant declaring authorized limits.
  • 5 resilience profiles: Built-in Ramp, Spike, Soak, Breakpoint, and Recovery execution models.
  • Live operational telemetry: Real-time RPS, latency percentiles (p50/p90/p95/p99), error rate, dropped iterations, max VUs, and SLO evaluations.
  • Two-sided emergency stops: Local operator kill switch coupled with a run-specific target-published abort signal.
  • Signed and sealed evidence: Generates signed receipts, permit/grant digests, execution plans, and run comparisons.
  • Improved Docker terminals: Auto-focus, responsive scrollbars, and bounded views across Mission OS, Web Forge, and Enterprise Forge.
  • Linux production release: Ships universal Linux x64 AppImage, native Debian package, and SHA-256 verified release assets.

Managed k6 Execution

FieldOps handles script compilation, environment variables, target constraints, and live process output without unrestricted shell exposure.

Verified Load Authority

Dual-key governance ensures both the operator's signed permit and the target's cryptographically sealed grant agree before traffic initiates.

5 Resilience Profiles

Supports Ramp, Spike, Soak, Breakpoint, and Recovery testing to detect saturation thresholds, pool exhaustion, and MTTR safely.

Linux Production Release

Promoted out of beta into full Production status. Ships standalone AppImage and Debian package (.deb) with verified checksums.

HISTORICAL RELEASE // 6.0

PREVIOUS RELEASE View Release

Upgrade Note: Install beta.3 over your existing Windows installation. Your operator profile, progress, settings, FieldOps records, and license data are retained. As a precaution during the beta period, operators may also export their record from Settings before upgrading.

WHAT'S NEW IN BETA.3

  • Operator identity now persists after restarting the app
  • Academy progress, Mission OS state, settings, FieldOps records, and licensing survive application upgrades
  • Stable version-independent application-data storage
  • Automatic recovery migration for users affected by the earlier storage issue
  • Windows installer preserves user data while replacing program files
  • Persistence is verified across completely separate application processes
  • Includes Mission OS, six professional routes, improved Academy guidance, guided first missions, and lesson-to-range handoffs

> New 12-Scenario Entry Diagnostic

Measures practical operational judgment before pathway assignment.

> Capability Scoring

Comprehensive capability scoring across Scope & Safety, Network Analysis, Web & API, Identity, Cloud & Supply Chain, and Evidence & Detection.

> Six Selectable Professional Pathways

Choose from Penetration Tester, Web & API Specialist, Identity Security, Cloud Security, Detection & Response, and Security Engineer.

> Adaptive Training Plans

Generated based on lessons, ranges, Web Forge work, Enterprise Forge cases, and capstones completed by the operator.

> Persistent Operator Records

Persistent pathway selection and diagnostic results stored in the local operator record with automatic data format migration.

> Seeded Professional Case Variations

Seeded professional case variations for Ghost Port, Broken Trust, and Night Shift.

> New After-Action Reviews

Measures evidence coverage, operator independence, method discipline, and time discipline with concrete remediation and next-action recommendations.

> Sealed Results & System Versioning

Mission case variation and debrief data included in sealed mission results. Exact app version and operating system displayed inside the application.

DEPLOYMENT & LICENSING

Available as a beta for Windows, Linux AppImage, and Debian. FieldOps licensing and the free Academy access model remain unchanged.

View Mission OS 6.0 Beta

LINUX BETA // v5.5.0-beta.2

View Linux Downloads

DaemonCore Academy expanded to native Linux environments with universal AppImage and Debian (.deb) packages, bringing live containerized ranges and tactical training to Linux operators.

> Universal AppImage

Single executable file for Ubuntu 22.04+, Debian 12+, and modern Linux distributions with local container runtime support.

> Debian Package (.deb)

Native system integration for Debian and Ubuntu environments with automated desktop menu entries and dependency resolution.

ADAPTIVE RANGE ENGINE // 5.4

LATEST CORE RELEASE

> Four Operator Modes

Guided exposes the full runbook, Assisted provides a tool map and progressive hints, Blind removes prescribed commands, and Professional removes hints entirely while applying the highest score multiplier.

> Outcomes Over Magic Strings

Mission completion no longer depends on typing one exact command string. The desktop backend records each live execution and accepts alternate investigative paths when the resulting signal proves the current objective.

> Ordered Evidence Gates

Discovery, positive control, boundary proof, and finding submission must be established in sequence. A successful process exit is not enough by itself.

> Backend-Owned Run Ledger

Each execution receives a SHA-256 digest. Accepted objective evidence retains that digest, its acceptance time, and the exact outcome it proved.

> Progressive Guidance

Hints are tied to the current unresolved objective, limited by mode, and carry an explicit score penalty. Professional runs cannot request hints.

> Sealed Completion Receipt

Mode, seed, elapsed time, guidance use, score, and the complete evidence chain are bound into a tamper-evident result retained with the operator attempt.

FIELDOPS WORKBENCH // NEXT & PRO

DaemonCore Trust Authority & Signed Permits

A protected Ed25519 operator identity signs every new operation permit and audit receipt with the operator’s name, organization, role, device-key fingerprint, and timestamp. New engagements cryptographically bind the operator, approving authority, client, ROE reference, Observe/Validate/Stress policy, exact targets, ports, network boundary, and validity window. Editing any bound field invalidates execution.

Campaign Engine

Run durable multi-target assessment campaigns across exact systems in a signed engagement. Complete Assessment, Service Inventory, and Change Verification profiles coordinate FieldOps modules in the background with full pause, resume, safe cancellation, and desktop-restart recovery.

Deep Service Inventory

Sends authorized IPs and normalized port lists through a shell-free Nmap bridge (using local Nmap or pinned Docker instrumentisto/nmap image). Normalizes XML output into digest-sealed capture records.

Surface & Change Intelligence

Baseline targets combine resolution, DNS records, allowlists, and web posture. Change intelligence compares resolved addresses, ports, DNS, HTTP headers, server disclosures, and TLS certs against prior sealed captures.

Findings & Professional Reports

Promote evidence into findings with severity, impact, remediation, and disposition. Reverify with evidence-backed retests and export clean JSON case files and printable HTML client reports.

TRUST CHAIN (v5.1) & RANGE FABRIC (v5.0)

Full-Tree Range Fingerprints

Verification covers every Dockerfile, entrypoint, tool, fixture, case file, scenario contract, and Compose definition under a deterministic sha256-tree-v1 root. Added or removed files change the root digest instantly.

Identity Citadel Realm

The first protocol-native enterprise range provisions a disposable Samba Active Directory realm with live DNS, Kerberos, LDAP, and SMB instead of replaying canned results.

Runtime Preflight & Launch Receipts

Range Fabric checks Docker Engine, Docker Compose, all nine pack roots, and containment policy through one diagnostic surface. Successful launches receive tamper-evident digest-sealed receipts.

Seven Field Missions Across Six Tracks

Network, Web + API, Detection, Cloud, Supply Chain, and Enterprise Identity now progress from live evidence with regression-proven tamper rejection.

ENTERPRISE FORGE, WEB FORGE & MASTERY SYSTEM

Enterprise Forge (v4.0)

Six specialist pathways (Windows/AD, Cloud Security, Detection/Incident Analysis, Linux Privilege/Host Security, Containers/Kubernetes, Software Supply Chain) with 72 complete enterprise lessons and 48 sealed enterprise cases. 127 total lessons (120h45m).

Web Forge (v3.0) & Mastery (v2.1)

27 Web + API lessons and 22 live conditions running against purpose-built vulnerable services inside internal-only Docker networks. Three principal capstones (Night Glass, Broken Orbit, Red Ledger) turning synthetic evidence into 15 scored professional decisions.

DaemonCore Chaos Engine & Power Domain

Four real black-box resilience profiles with a non-blocking native worker, live telemetry, SLO aborts, emergency stop, and resilience scoring. A dedicated disposable Chaos Worker drives up to 500 req/s, 100 concurrent workers, and 30,000 requests against the Academy black box.

READY FOR DEPLOYMENT

GET DAEMONCORE ACADEMY.

Download the automated setup for Windows and start your tactical training.