Skip to content
 
 

Repository files navigation

MICROSOC-Command-Centre

📌 Project Overview

MICROSOC-Command-Centre is a real-time cybersecurity monitoring platform that integrates:

  • Next.js Web Dashboard
  • Node.js + Redis + Socket.IO Backend
  • Python Rule-Engine for Threat Detection

The system monitors 10 cyber-attacks, processes logs in real time, generates incidents, and streams them live to Admin and Analyst dashboards — designed like a modern Security Operations Centre (SOC).


🧩 Technology Stack

Frontend

  • Next.js
  • React
  • TypeScript
  • Tailwind CSS
  • Framer Motion
  • Chart.js
  • Three.js + React-Three-Fiber

Backend

  • Node.js
  • Express / Koa
  • MongoDB
  • Redis (Pub/Sub)
  • Socket.IO

Python Threat Engine

  • Python
  • FastAPI
  • Pydantic
  • Custom rule engine
  • 10 attack simulation scripts

🎛 Features by Role

🔹 Landing & Authentication

  • Landing Page
  • Admin + Analyst Login
  • Analyst Signup + Approval Flow

🔹 Analyst Dashboard

  • Assigned Tasks
  • Real-Time Incident Timeline
  • Attack Cards for 10 Threat Types

🔹 Admin Dashboard

  • Severity Graphs
  • Attack Distribution
  • 3D Globe (Attack Origin Map)
  • System Stats (Total Attacks, Analysts, LSTM Accuracy)

🛡 Python Cybersecurity Engine

Attack Simulation

  • 10 Python scripts generating cyber-attack logs
  • Master orchestrator for controlling all attacks

Rule Engine

  • rules.py → Snort/YARA-style logic
  • apply_rules.py → converts logs into incidents

Incident Format

{
  "title": "",
  "severity": "",
  "source_ip": "",
  "timestamp": "",
  "related_logs": []
}
📁 Folder Structure
1️⃣ Python Attack Scripts
attacks/
│   __init__.py
├── bot_traffic/
│     bot_attack.py
│     __pycache__/
├── brute_force/
│     bruteforce_attack.py
│     __pycache__/
├── common/
│     config.py
│     log_utils.py
│     __pycache__/
├── dirscan/
│     dirscan_attack.py
│     __pycache__/
├── dos/
│     dos_attack.py
│     __pycache__/
├── gobuster_scan/
│     gobuster_attack.py
│     __pycache__/
├── master/
│     run_all_attacks.py
│     __pycache__/
├── nikto_scan/
│     nikto_attack.py
│     __pycache__/
├── nmap_scan/
│     parse_nmap.py
│     nmap_output.xml
│     __pycache__/
├── sensitive_paths/
│     sensitive_attack.py
│     __pycache__/
├── sqli/
│     sqli_attack.py
│     __pycache__/
├── xss/
│     xss_attack.py
│     __pycache__/


2️⃣ Threat Engine (Python)
microsoc-command-centre/
│   app.py
│   AI_predict.py
│   log_reciver.py
│   blocker.py
│   blocklist.py
│   rate_limiter.py
│   SQL_injection.py
│   XSS_attack.py
│   threat_intel.py
│   normal_request.py
│   decisions.log
├── ml/
│     dataset.csv
│     dataset_making.py
│     Hybrid_recommend.py
│     train.py
│     predict.py
│     scaler.pkl
│     tokenizer.pkl
│     threat_lstm.h5
│     protocol_encoder.pkl
│     label_encoder.pkl
│     lstm_threat_dataset.csv

3️⃣ Frontend (Next.js)
public/
│   logo.jpg
│   landing_background.jpg
│   power-ranger3.png
├── attack_images/
│     bot_traffic.jpg
│     brute_force.jpg
│     dir_scan.jpg
│     dos.jpg
│     gobuster.jpg
│     nikto.jpg
│     nmap.jpg
│     sensitive.jpg
│     sqli.jpg
│     xss.jpg

src/
├── app/
│   layout.tsx
│   page.tsx
│
│   ├── admin/
│   │     dashboard/page.tsx
│   │     dashboard/location/page.tsx
│   │     notifications/page.tsx
│   │     pending-analysts/page.tsx
│
│   ├── analyst/
│   │     dashboard/page.tsx
│   │     incidents/page.tsx
│
│   ├── login/page.tsx
│   ├── signup/page.tsx
│
├── components/
│   AboutSection.tsx
│   FeaturesSection.tsx
│   FooterSection.tsx
│   HeroSection.tsx
│   NavBar.tsx
│
├── dashboard_admin/
│     AdminDashboard.tsx
│     Globe.tsx
│     Sidebar.tsx
│     Topbar.tsx
│
├── dashboard_analyst/
│     AttackCards.tsx
│     AttackModal.tsx
│     AttackTypeStats.tsx
│     Topbar.tsx
│     AttackerIPTable.tsx

4️⃣ Backend (Node.js)
microsoc-command-centre/
├── package.json
├── tsconfig.json
├── next.config.ts
├── src/
│   ├── app/
│   │   ├── (auth)/login/page.tsx
│   │   ├── (auth)/signup/page.tsx
│   │   ├── admin/
│   │   ├── analyst/
│   │   ├── api/
│   │   ├── dashboard/
│   │   ├── incidents/
│   │   ├── logs/
│   │   ├── socket/
│   │   └── users/
│
│   ├── components/
│   ├── context/
│   ├── lib/
│   ├── models/
│   ├── schema/
│   ├── services/
│   ├── socket/
│   ├── types/
│   └── utils/

📦 Packages to Install

Python pip install fastapi uvicorn redis python-dotenv pydantic aiofiles websockets python-multipart requests aiohttp python-socketio fastapi-socketio aioredis sqlalchemy psycopg2-binary regex black isort pytest

Node.js / Frontend npm install react react-dom next socket.io-client axios zustand recharts lucide-react

npm install -D tailwindcss postcss autoprefixer

UI Overview

=> Landing Page

image

=> About Section

image

=> Locations on Globe

image

=> Attacks

image

=> Future Admin and Analyst Dashboard

image image

About

The Morphin Grid is continuously targeted by fast-mutating cyber intrusions where existing defense modules fail to detect shifting attack signatures. There is no unified system to ingest logs, classify threats, generate incidents, or visualize attacks in real time, resulting in delayed response and unmonitored threats.

Resources

Stars

1 star

Watchers

0 watching

Forks

Releases

Packages

Contributors

Languages