daemon-sec-cheatsheet

The cheatsheet vault for operators: AD, enumeration, exploitation, priv-esc, web, DFIR
git clone https://git.daemon-sec.xyz/daemon-sec-cheatsheet.git
Log | Files | Refs | README | LICENSE

credits.astro (12352B)


      1 ---
      2 import Base from '../layouts/Base.astro';
      3 import { payloadsByTopic } from '../lib/payloads';
      4 import { internalBySection, internalRootPages } from '../lib/internal';
      5 import { hackTricksBySection } from '../lib/hacktricks';
      6 import { url } from '../lib/url';
      7 import iredSource from '../data/ired-source.json';
      8 
      9 const groups = await payloadsByTopic();
     10 const totalPages = groups.reduce((n, g) => n + g.count, 0);
     11 const sha = groups[0]?.readme?.data.sha ?? '';
     12 
     13 const sections = await internalBySection();
     14 const internalPages =
     15   sections.reduce((n, g) => n + g.count, 0) + (await internalRootPages()).length;
     16 /* Not every section ships an index upstream, so fall back to a leaf page. */
     17 const internalSha = sections[0]?.index?.data.sha ?? sections[0]?.items[0]?.data.sha ?? '';
     18 
     19 const hackTricksSections = await hackTricksBySection();
     20 const hackTricksPages = hackTricksSections.reduce((n, section) => n + section.count, 0);
     21 const hackTricksSha = hackTricksSections[0]?.items[0]?.data.sha ?? '';
     22 
     23 const LICENSE = `MIT License
     24 
     25 Copyright (c) 2019 Swissky
     26 
     27 Permission is hereby granted, free of charge, to any person obtaining a copy
     28 of this software and associated documentation files (the "Software"), to deal
     29 in the Software without restriction, including without limitation the rights
     30 to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
     31 copies of the Software, and to permit persons to whom the Software is
     32 furnished to do so, subject to the following conditions:
     33 
     34 The above copyright notice and this permission notice shall be included in all
     35 copies or substantial portions of the Software.
     36 
     37 THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
     38 IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
     39 FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
     40 AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
     41 LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
     42 OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
     43 SOFTWARE.`;
     44 ---
     45 <Base title="Credits & Licenses — DÆMON//SEC" description="Attribution and licensing for third-party content mirrored into DÆMON//SEC, including HackTricks, PayloadsAllTheThings, and InternalAllTheThings.">
     46   <div class="wrap prose" style="max-width:56rem;margin-top:2.5rem;">
     47     <p class="eyebrow" style="color: var(--iris)">// Credits</p>
     48     <h1>Credits &amp; Licenses</h1>
     49     <p>
     50       DÆMON//SEC stands on the shoulders of the open-source security community.
     51       This page attributes third-party content that has been mirrored into the site.
     52     </p>
     53 
     54     <h2>PayloadsAllTheThings</h2>
     55     <p>
     56       The entire <a href={url('payloads')}>Payloads</a> section — <strong>{groups.length} topics</strong>,
     57       <strong>{totalPages} pages</strong> — is a verbatim mirror of
     58       <a href="https://github.com/swisskyrepo/PayloadsAllTheThings" target="_blank" rel="noopener">PayloadsAllTheThings</a>,
     59       created and maintained by <strong>Swissky</strong> (<a href="https://github.com/swisskyrepo" target="_blank" rel="noopener">@swisskyrepo</a>)
     60       and hundreds of contributors. It is one of the most valuable payload and bypass references in the field,
     61       and every page here links back to its upstream source.
     62     </p>
     63     <div class="slab corners provenance">
     64       <p class="micro provenance__label">// provenance · payloadsallthethings</p>
     65       <ul>
     66       <li><strong>Upstream:</strong> <a href="https://github.com/swisskyrepo/PayloadsAllTheThings" target="_blank" rel="noopener">github.com/swisskyrepo/PayloadsAllTheThings</a></li>
     67       <li><strong>License:</strong> MIT</li>
     68       {sha && <li><strong>Mirrored at commit:</strong> <code>{sha}</code></li>}
     69       <li><strong>Fidelity:</strong> markdown is mirrored on-site; images and raw payload files (wordlists, scripts) load from, or link to, the upstream repository.</li>
     70       </ul>
     71     </div>
     72     <p class="muted">
     73       This mirror is provided for convenience and offline-friendly search. The upstream repository remains the
     74       canonical source — please star it, contribute back, and consider sponsoring the maintainer.
     75     </p>
     76 
     77     <h3>MIT License</h3>
     78     <figure class="code-pane plate corners" style="margin:1.2rem 0;">
     79       <figcaption class="code-pane__bar">
     80         <span class="code-pane__lang">LICENSE · PayloadsAllTheThings</span>
     81       </figcaption>
     82       <pre style="overflow:auto;font-size:13px;line-height:1.7;color:#e0def4;"><code>{LICENSE}</code></pre>
     83       <div class="scanlines" aria-hidden="true"></div>
     84     </figure>
     85 
     86     <h2>InternalAllTheThings</h2>
     87     <p>
     88       The entire <a href={url('internal')}>Internal</a> section — <strong>{sections.length} sections</strong>,
     89       <strong>{internalPages} pages</strong> — is a verbatim mirror of
     90       <a href="https://github.com/swisskyrepo/InternalAllTheThings" target="_blank" rel="noopener">InternalAllTheThings</a>,
     91       also created and maintained by <strong>Swissky</strong> (<a href="https://github.com/swisskyrepo" target="_blank" rel="noopener">@swisskyrepo</a>)
     92       and its contributors. It is the home of the Active Directory, cloud and red-team material that
     93       PayloadsAllTheThings moved out of its own tree, and every page here links back to its upstream source.
     94     </p>
     95     <div class="slab corners provenance">
     96       <p class="micro provenance__label">// provenance · internalallthethings</p>
     97       <ul>
     98       <li><strong>Upstream:</strong> <a href="https://github.com/swisskyrepo/InternalAllTheThings" target="_blank" rel="noopener">github.com/swisskyrepo/InternalAllTheThings</a></li>
     99       <li><strong>License:</strong> the repository publishes no LICENSE file, so no licence is claimed or implied here. Copyright stays with Swissky and the project's contributors.</li>
    100       {internalSha && <li><strong>Mirrored at commit:</strong> <code>{internalSha}</code></li>}
    101       <li><strong>Fidelity:</strong> markdown is mirrored on-site; images and other assets load from, or link to, the upstream repository.</li>
    102       </ul>
    103     </div>
    104     <p class="muted">
    105       This mirror exists for search and offline-friendly reading, with attribution on every page. The upstream
    106       repository is the canonical source — please star it and contribute back. If the author would rather this
    107       mirror were changed or taken down, open an issue on the site repository and it will be honoured.
    108     </p>
    109 
    110     <h2>HackTricks</h2>
    111     <p>
    112       The <a href={url('hacktricks')}>HackTricks Library</a> contains <strong>{hackTricksPages} pages</strong>
    113       across <strong>{hackTricksSections.length} sections</strong>, adapted from
    114       <a href="https://github.com/HackTricks-wiki/hacktricks" target="_blank" rel="noopener">HackTricks</a>
    115       by <strong>Carlos Polop</strong> and its contributors. Every page links to the precise upstream file.
    116     </p>
    117     <div class="slab corners provenance">
    118       <p class="micro provenance__label">// provenance · hacktricks</p>
    119       <ul>
    120         <li><strong>Upstream:</strong> <a href="https://github.com/HackTricks-wiki/hacktricks" target="_blank" rel="noopener">github.com/HackTricks-wiki/hacktricks</a></li>
    121         <li><strong>Creator:</strong> Carlos Polop; additional copyright remains with the relevant upstream contributors and externally attributed authors.</li>
    122         <li><strong>License:</strong> <a href="https://creativecommons.org/licenses/by-nc/4.0/" target="_blank" rel="license noopener">Creative Commons Attribution-NonCommercial 4.0 International</a>.</li>
    123         {hackTricksSha && <li><strong>Imported at commit:</strong> <code>{hackTricksSha}</code></li>}
    124         <li><strong>Changes:</strong> this is an adapted mirror. GitBook wrappers and training banners were removed, frontmatter was added, and repository-relative links were rewritten for the local site or pinned upstream commit.</li>
    125         <li><strong>Use restriction:</strong> HackTricks-derived pages are provided for non-commercial use only. No endorsement by HackTricks or its contributors is implied.</li>
    126       </ul>
    127     </div>
    128     <p class="muted">
    129       The upstream repository remains canonical. Corrections should be contributed there whenever possible;
    130       this site can then regenerate its adapted copy from a newer commit.
    131     </p>
    132 
    133     <h2>ired.team</h2>
    134     <p>
    135       <a href="https://ired.team" target="_blank" rel="noopener">ired.team</a> — the red teaming notes of
    136       <strong>Mantvydas Baranauskas</strong> (<a href={iredSource.authorUrl} target="_blank" rel="noopener">@mantvydasb</a>) —
    137       is the reference behind sheets in Exploitation and DFIR. His write-ups on process injection and on
    138       Windows internals are some of the most careful hands-on documentation of those subjects anywhere.
    139     </p>
    140     <p>
    141       <strong>ired.team publishes no licence.</strong> That grants no right to copy it, so nothing from it is
    142       mirrored here. Sheets that draw on it are written from scratch for this site; commands, API sequences and
    143       technique facts are reproduced as facts; and the screenshots load from the upstream repository at a pinned
    144       commit rather than being copied onto this domain.
    145     </p>
    146     <div class="slab corners provenance">
    147       <p class="micro provenance__label">// provenance · ired.team</p>
    148       <ul>
    149         <li><strong>Upstream:</strong> <a href={`https://github.com/${iredSource.repo}`} target="_blank" rel="noopener">github.com/{iredSource.repo}</a></li>
    150         <li><strong>Author:</strong> {iredSource.author}. Per the upstream README, most techniques documented there were discovered by other researchers and he does not claim their ownership.</li>
    151         <li><strong>License:</strong> <strong>none published</strong> — no <code>LICENSE</code> file, the repository <code>license</code> field is <code>null</code>, and the licence API returns 404.</li>
    152         <li><strong>Pinned at commit:</strong> <code>{iredSource.sha}</code> (read {iredSource.fetched})</li>
    153         <li><strong>Fidelity:</strong> <em>not a mirror.</em> No upstream prose is reproduced. Sheet text is original; each sheet is marked <code>derived</code> and links the guide it draws on.</li>
    154         <li><strong>Images:</strong> screenshots remain the author's. They are hotlinked from the upstream repository at the commit above, credited individually in each caption, and are <strong>not</strong> redistributed from this site.</li>
    155         <li><strong>On request:</strong> if the author would prefer this material not be referenced here, it will be removed — open an issue on the site repository or contact the maintainer.</li>
    156       </ul>
    157     </div>
    158     <p class="muted">
    159       ired.team remains canonical and considerably deeper than any summary of it. Every sheet that draws on it
    160       links the original guide; read it there.
    161     </p>
    162 
    163     <h2>The DÆMON//SEC cheatsheets</h2>
    164     <p>
    165       The hand-curated <a href={url('')}>cheatsheet vault</a> is compiled from public tooling documentation and
    166       community knowledge, normalized and modernized for this site. Individual sheets credit their upstream source
    167       in frontmatter where applicable.
    168     </p>
    169 
    170     <h2>This site</h2>
    171     <p>
    172       Built with <a href="https://astro.build" target="_blank" rel="noopener">Astro</a> and
    173       <a href="https://pagefind.app" target="_blank" rel="noopener">Pagefind</a>, themed with
    174       <a href="https://rosepinetheme.com" target="_blank" rel="noopener">Rosé Pine</a>. Source on
    175       <a href="https://git.daemon-sec.xyz/daemon-sec-cheatsheet/" target="_blank" rel="noopener">git.daemon-sec.xyz</a>
    176       (browse it, or <code>git clone https://git.daemon-sec.xyz/daemon-sec-cheatsheet.git</code>).
    177     </p>
    178 
    179     <p class="muted" style="margin-top:2rem;border-top:1px solid var(--rule);padding-top:1rem;">
    180       For authorized testing, CTFs, and education only. Know your scope.
    181     </p>
    182   </div>
    183 </Base>
    184 
    185 <style>
    186   /* The provenance ledger for each mirror — upstream, licence, mirrored
    187      commit, fidelity — framed as a corner-bracketed slab with a mono micro
    188      label, the same furniture the callouts and code panes wear. */
    189   .provenance { padding: 1rem 1.2rem 1.2rem; margin: 1.2rem 0; }
    190   .provenance__label { color: var(--fg-faint); margin-bottom: 0.6rem; }
    191   .provenance ul { margin: 0; }
    192 </style>