01 LIVE ALERT FEED
HIGH PRIORITY
Brute Force Detected
CRITICAL
Port Scan Activity
HIGH
Anomaly Score Elevated
MEDIUM
Unusual Login Time
LOW
DNS Tunneling Pattern
MEDIUM
02 SYSTEM ARCHITECTURE
ELK STACK
Endpoint Logs
Endpoint
Fleet server
INGEST
Elasticsearch
CORE INDEX
Isolation Forest (ML)
anomaly_detector.pkl
Kibana Dashboard
VISUALIZE
03 TECH STACK
Elasticsearch
LOG INDEXING / QUERY
Kibana
VISUALIZATION / SOC UI
scikit-learn
ISOLATION FOREST ML
Python
ML PIPELINE / API
Suricata
NETWORK IDS
Docker
CONTAINERIZED DEPLOY
04 SYSTEM METRICS
OPERATIONAL
MODEL ACCURACY
94.2%
FALSE POSITIVE RATE
6.8%
THREAT DETECTION
91.5%
LOG THROUGHPUT
12.4K/s
ELASTIC HEAP USAGE
61%
05 PROJECT TEAM
AY
Ayesha Yousuf
CR-22004
SA
Sheheryar Amir
CR-22008
MK
Maryam Khan
CR-22021
AK
Abdullah Khalid
CR-22027
Ms. Saadia Arshad
SUPERVISOR · LECTURER, CSIT
saadia@cloud.neduet.edu.pk
Dr. Muhammad Mubashir Khan
CO-SUPERVISOR · CHAIRMAN, CSIT
mmkhan@cloud.neduet.edu.pk