SPECTRA [SWORD CIPHER COMMAND]
Spectrally-Processing Extraction, Crawling, & Tele-Reconnaissance Archive
SPECTRA is a forensic-grade intelligence framework for Telegram network discovery, criminal market economics, and threat actor attribution. It features a unified NSO-style Cipher Command dashboard for real-time operational control.
π‘οΈ Cipher Command Features
- πΈοΈ Infrastructure Nexus: Map shared technical artifacts (Panel URLs, Bot IDs) to reveal hidden connections between seemingly independent actors.
- π° Economic Market Engine: Track Gross Market Value (GMV) across CaaS sectors (Initial Access, Malware, Logs) with USD-normalized pricing.
- π Narrative Synthesis: Automated LLM-driven intelligence briefings that classify actor archetypes and strategic threat status.
- π³ Wallet-Watch (DIRECTEYE Ready): Forensic extraction of BTC, XMR, and TRX/ETH addresses with built-in hooks for DIRECTEYE blockchain attribution.
- π One-Command Deployment: Production-ready Docker orchestration with automated SSL via Caddy.
- π‘οΈ OPSEC Core: Multi-account/API rotation and proxy support for anti-detection and persistent collection.
- π§ MEMSHADOW Sidecar: Advanced 4096-dimensional semantic memory persistence and cross-LLM context preservation for deep threat analysis.
β‘ Quick Start (Docker)
The fastest way to launch the Cipher Command Deck with automated SSL and secure proxying:
# Clone and enter
git clone https://github.com/SWORDIntel/SPECTRA.git
cd SPECTRA
# Launch the full stack
export SITE_ADDRESS="your-domain.com" # Defaults to localhost
docker-compose up -d
Access the dashboard at https://your-domain.com (or http://localhost).
π₯οΈ Local Execution
Launch the unified web console directly:
./spectra
Operational API Keys
Secure the interface for remote access:
export SPECTRA_GUI_API_KEY="your-secure-key"
./spectra --api-key "$SPECTRA_GUI_API_KEY"
π§ Intelligence Pipeline
Layer 0: Semantic Discovery
Pivot through the criminal network using CaaS-aware scoring to identify high-value targets.
./spectra discover --seed @target_channel
Layer 1: Forensic Profiling
Extract pricing, services, and aliases from canonical archives into structured dossiers.
./spectra process-queue --batch-size 250
Layer 2: Nexus & Wallet Analysis
Automatically map infrastructure links and crypto-financial footprints across the entire repository.
π System Status & Architecture
- β Cipher-Ops Dashboard: High-contrast operational control surface.
- β Economic Intel: USD-normalized GMV tracking and profitability rankings.
- β Forensic Dossiers: Narrative summaries, wallet sightings, and nexus alerts.
- β Production Ready: Docker + Caddy integration for secure remote ops.
π Documentation
Detailed technical reference and guides are available at:
* Dashboard API: /docs (OpenAPI 3.1 / Swagger)
* Full Manual: /readme or GitHub Pages
π License
This project is licensed under the MIT License - see the LICENSE file for details.