MICROSOC-Command-Centre is a real-time cybersecurity monitoring platform that integrates:
- Next.js Web Dashboard
- Node.js + Redis + Socket.IO Backend
- Python Rule-Engine for Threat Detection
The system monitors 10 cyber-attacks, processes logs in real time, generates incidents, and streams them live to Admin and Analyst dashboards — designed like a modern Security Operations Centre (SOC).
- Next.js
- React
- TypeScript
- Tailwind CSS
- Framer Motion
- Chart.js
- Three.js + React-Three-Fiber
- Node.js
- Express / Koa
- MongoDB
- Redis (Pub/Sub)
- Socket.IO
- Python
- FastAPI
- Pydantic
- Custom rule engine
- 10 attack simulation scripts
- Landing Page
- Admin + Analyst Login
- Analyst Signup + Approval Flow
- Assigned Tasks
- Real-Time Incident Timeline
- Attack Cards for 10 Threat Types
- Severity Graphs
- Attack Distribution
- 3D Globe (Attack Origin Map)
- System Stats (Total Attacks, Analysts, LSTM Accuracy)
- 10 Python scripts generating cyber-attack logs
- Master orchestrator for controlling all attacks
rules.py→ Snort/YARA-style logicapply_rules.py→ converts logs into incidents
{
"title": "",
"severity": "",
"source_ip": "",
"timestamp": "",
"related_logs": []
}📁 Folder Structure
1️⃣ Python Attack Scripts
attacks/
│ __init__.py
├── bot_traffic/
│ bot_attack.py
│ __pycache__/
├── brute_force/
│ bruteforce_attack.py
│ __pycache__/
├── common/
│ config.py
│ log_utils.py
│ __pycache__/
├── dirscan/
│ dirscan_attack.py
│ __pycache__/
├── dos/
│ dos_attack.py
│ __pycache__/
├── gobuster_scan/
│ gobuster_attack.py
│ __pycache__/
├── master/
│ run_all_attacks.py
│ __pycache__/
├── nikto_scan/
│ nikto_attack.py
│ __pycache__/
├── nmap_scan/
│ parse_nmap.py
│ nmap_output.xml
│ __pycache__/
├── sensitive_paths/
│ sensitive_attack.py
│ __pycache__/
├── sqli/
│ sqli_attack.py
│ __pycache__/
├── xss/
│ xss_attack.py
│ __pycache__/
2️⃣ Threat Engine (Python)
microsoc-command-centre/
│ app.py
│ AI_predict.py
│ log_reciver.py
│ blocker.py
│ blocklist.py
│ rate_limiter.py
│ SQL_injection.py
│ XSS_attack.py
│ threat_intel.py
│ normal_request.py
│ decisions.log
├── ml/
│ dataset.csv
│ dataset_making.py
│ Hybrid_recommend.py
│ train.py
│ predict.py
│ scaler.pkl
│ tokenizer.pkl
│ threat_lstm.h5
│ protocol_encoder.pkl
│ label_encoder.pkl
│ lstm_threat_dataset.csv
3️⃣ Frontend (Next.js)
public/
│ logo.jpg
│ landing_background.jpg
│ power-ranger3.png
├── attack_images/
│ bot_traffic.jpg
│ brute_force.jpg
│ dir_scan.jpg
│ dos.jpg
│ gobuster.jpg
│ nikto.jpg
│ nmap.jpg
│ sensitive.jpg
│ sqli.jpg
│ xss.jpg
src/
├── app/
│ layout.tsx
│ page.tsx
│
│ ├── admin/
│ │ dashboard/page.tsx
│ │ dashboard/location/page.tsx
│ │ notifications/page.tsx
│ │ pending-analysts/page.tsx
│
│ ├── analyst/
│ │ dashboard/page.tsx
│ │ incidents/page.tsx
│
│ ├── login/page.tsx
│ ├── signup/page.tsx
│
├── components/
│ AboutSection.tsx
│ FeaturesSection.tsx
│ FooterSection.tsx
│ HeroSection.tsx
│ NavBar.tsx
│
├── dashboard_admin/
│ AdminDashboard.tsx
│ Globe.tsx
│ Sidebar.tsx
│ Topbar.tsx
│
├── dashboard_analyst/
│ AttackCards.tsx
│ AttackModal.tsx
│ AttackTypeStats.tsx
│ Topbar.tsx
│ AttackerIPTable.tsx
4️⃣ Backend (Node.js)
microsoc-command-centre/
├── package.json
├── tsconfig.json
├── next.config.ts
├── src/
│ ├── app/
│ │ ├── (auth)/login/page.tsx
│ │ ├── (auth)/signup/page.tsx
│ │ ├── admin/
│ │ ├── analyst/
│ │ ├── api/
│ │ ├── dashboard/
│ │ ├── incidents/
│ │ ├── logs/
│ │ ├── socket/
│ │ └── users/
│
│ ├── components/
│ ├── context/
│ ├── lib/
│ ├── models/
│ ├── schema/
│ ├── services/
│ ├── socket/
│ ├── types/
│ └── utils/
📦 Packages to Install
Python pip install fastapi uvicorn redis python-dotenv pydantic aiofiles websockets python-multipart requests aiohttp python-socketio fastapi-socketio aioredis sqlalchemy psycopg2-binary regex black isort pytest
Node.js / Frontend npm install react react-dom next socket.io-client axios zustand recharts lucide-react
npm install -D tailwindcss postcss autoprefixer
=> Landing Page
=> About Section
=> Locations on Globe
=> Attacks
=> Future Admin and Analyst Dashboard