βš›οΈ AtomicShield Server

July 1, 2026 Β· View on GitHub

Advanced Game AntiCheat Master Server β€” The backend powering the AtomicShield anti-cheat ecosystem.

πŸ’° Note: This project has been sold.

Python Django License Client Repo


πŸ“‹ Overview

AtomicShield Server is the central command hub for the AtomicShield anti-cheat platform. It manages real-time WebSocket connections with game servers and client-side agents, processes cheat detections, issues bans, handles HWID fingerprinting, and provides a full-featured Django Admin dashboard plus a React SPA frontend for server owners.

Key capabilities:

  • πŸ›‘οΈ Real-time cheat detection via encrypted WebSocket communication
  • πŸ” Hardware ID (HWID) fingerprinting with historical tracking
  • ⚑ Low-latency AES-encrypted packet protocol between server ↔ agent
  • πŸ“Š Full admin dashboard (Django Unfold + React SPA)
  • πŸ’³ Subscription & payment system
  • πŸ‘₯ Moderator role management with granular permissions
  • πŸ“ Comprehensive audit logging for all actions
  • πŸ”” Discord webhook notifications for detections, bans, and alerts
  • πŸ“¦ Release management & asset distribution
  • πŸ–₯️ Live screen streaming via WebRTC signaling

πŸ—οΈ Architecture

β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
β”‚                   AtomicShield Server               β”‚
β”‚                                                     β”‚
β”‚  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”‚
β”‚  β”‚  Django  β”‚  β”‚  Django  β”‚  β”‚  WebSocket        β”‚  β”‚
β”‚  β”‚  REST APIβ”‚  β”‚  Admin   β”‚  β”‚  (Channels/Daphne)β”‚  β”‚
β”‚  β”‚  (JWT)   β”‚  β”‚ (Unfold) β”‚  β”‚                   β”‚  β”‚
β”‚  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β””β”€β”€β”€β”€β”€β”€β”€β”€β”¬β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β”‚
β”‚       β”‚              β”‚                β”‚             β”‚
β”‚  β”Œβ”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”‚
β”‚  β”‚              MySQL Database                   β”‚  β”‚
β”‚  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β”‚
β”‚                                                     β”‚
β”‚  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”                 β”‚
β”‚  β”‚   Guards     β”‚  β”‚     Core     β”‚                 β”‚
β”‚  β”‚              β”‚  β”‚  (AES Crypto)β”‚                 β”‚
β”‚  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜                 β”‚
β”‚                                                     β”‚
β”‚   β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”          β”‚
β”‚   β”‚ Utils    β”‚  β”‚ Shared   β”‚  β”‚Analytics β”‚          β”‚
β”‚   β”‚(Discord, β”‚  β”‚(Enums,   β”‚  β”‚(Charts,  β”‚          β”‚
β”‚   β”‚ ASE, etc)β”‚  β”‚ Flags)   β”‚  β”‚ Stats)   β”‚          β”‚
β”‚   β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜          β”‚
β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”¬β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜
                                β”‚
        β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”Όβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
        β”‚                       β”‚                     β”‚
  β”Œβ”€β”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”€β”€β”€β”       β”Œβ”€β”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”       β”Œβ”€β”€β”€β”€β”€β”€β”΄β”€β”€β”€β”€β”€β”€β”
  β”‚  Game Server  β”‚       β”‚   Agent    β”‚       β”‚  React SPA  β”‚
  β”‚ (Resource)    β”‚       β”‚  (Engine)  β”‚       β”‚  (Frontend) β”‚
  β”‚  WS Client    β”‚       β”‚  WS Client β”‚       β”‚  HTTP/JWT   β”‚
  β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜       β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜       β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜

πŸš€ Quick Start

Prerequisites

  • Python 3.11+
  • MySQL 8+
  • Node.js 18+ (for frontend)

Installation

# Clone the repository (with submodules)
git clone --recurse-submodules https://github.com/adem-hosni/AtomicShieldServer.git
cd AtomicShieldServer

# Create and activate virtual environment
python -m venv venv
source venv/bin/activate  # Linux/Mac
venv\Scripts\activate     # Windows

# Install Python dependencies
pip install -r requirements.txt

# Configure database (MySQL)
mysql -u root -e "CREATE DATABASE atomicshield CHARACTER SET utf8mb4;"

# Run migrations
python src/manage.py migrate

# Generate AES encryption keys
python scripts/generate_keys.py --target debug/aes_keys --count 8 --key_size 16

# Start development server
python src/manage.py runserver

Frontend (React SPA)

cd web
npm install
npm run dev

🧩 Project Structure

AtomicShieldServer/
β”œβ”€β”€ src/                        # Python backend
β”‚   β”œβ”€β”€ AtomicShield/           # Django project configuration
β”‚   β”‚   β”œβ”€β”€ settings.py         # Main settings (DB, apps, channels, etc.)
β”‚   β”‚   β”œβ”€β”€ urls.py             # Root URL routing
β”‚   β”‚   β”œβ”€β”€ asgi.py             # ASGI config (WebSocket + HTTP)
β”‚   β”‚   β”œβ”€β”€ middleware.py       # Custom middleware
β”‚   β”‚   β”œβ”€β”€ hosts.py            # Django-hosts subdomain routing
β”‚   β”‚   └── sitemaps.py         # SEO sitemaps
β”‚   β”œβ”€β”€ anticheat/              # Core anti-cheat app
β”‚   β”‚   β”œβ”€β”€ consumers/          # WebSocket consumers
β”‚   β”‚   β”‚   β”œβ”€β”€ safe_server.py  # FxServer WS consumer
β”‚   β”‚   β”‚   β”œβ”€β”€ safe_engine.py  # Agent/Engine WS consumer
β”‚   β”‚   β”‚   └── streamer.py     # WebRTC signaling consumer
β”‚   β”‚   β”œβ”€β”€ handlers/           # Packet handlers
β”‚   β”‚   β”‚   β”œβ”€β”€ safe_server.py  # Server packet logic
β”‚   β”‚   β”‚   └── safe_engine.py  # Engine packet logic
β”‚   β”‚   β”œβ”€β”€ models.py           # DB models (HWID, Ban, Detection, etc.)
β”‚   β”‚   β”œβ”€β”€ admin.py            # Django admin interfaces
β”‚   β”‚   └── routing.py          # WebSocket URL routing
β”‚   β”œβ”€β”€ dashboard/              # Dashboard & management app
β”‚   β”‚   β”œβ”€β”€ models.py           # GameServer, Subscription, AuditLog, etc.
β”‚   β”‚   β”œβ”€β”€ views.py            # REST API + Jinja views (~3000 lines)
β”‚   β”‚   └── admin.py            # Admin interfaces for dashboard models
β”‚   β”œβ”€β”€ authentication/         # Auth app (JWT, Discord OAuth, Google OAuth)
β”‚   β”œβ”€β”€ api/                    # Payment/Tebex webhook API
β”‚   β”œβ”€β”€ home/                   # Landing page views
β”‚   β”œβ”€β”€ resources/              # Engine binary distribution
β”‚   β”œβ”€β”€ guards/                 # Connection managers
β”‚   β”‚   β”œβ”€β”€ _base.py            # Base guard manager
β”‚   β”‚   β”œβ”€β”€ fivem.py            # FiveM guard (singleton)
β”‚   β”‚   └── multitheftauto.py   # MTA:SA guard (singleton)
β”‚   β”œβ”€β”€ core/                   # Core AES crypto engine
β”‚   β”œβ”€β”€ shared/                 # Shared enums, flags, models
β”‚   └── utils/                  # Utilities (Discord, ASE, analytics)
β”œβ”€β”€ web/                        # React SPA frontend
β”‚   β”œβ”€β”€ client/                 # React app source
β”‚   β”œβ”€β”€ server/                 # Express mock server (deprecated)
β”‚   └── shared/                 # Shared TS types
β”œβ”€β”€ config/                     # Server configuration
β”œβ”€β”€ scripts/                    # Utility scripts
β”œβ”€β”€ tests/                      # Load testing (Locust)
└── bin/                        # Binary resources (AES keys, engines)

πŸ”Œ WebSocket Protocol

The server communicates with game servers and agents via AES-256-CBC encrypted WebSocket packets.

Packet Structure

{
  "type": "<PacketID>",
  "ut": <unix_timestamp>,
  "...": "<payload>"
}

Server Packet IDs (SafeServerPacketID)

IDNameDescription
1NETWORK_JOINServer authentication & join
2SYNC_ANTICHEAT_CONFIGSSync configuration templates
3REQUEST_STATUSServer health check
4REQUEST_PLAYER_JOINPlayer connection validation
5PLAYER_KICKKick a player
6OBFUSCATE_CLIENT_SCRIPTScript obfuscation
7SYNC_ANTICHEAT_COMPONENTSComponent sync
8PLAYER_QUITPlayer disconnect
9MANAGE_ONLINE_PLAYEROnline player management
10ENGINE_CHECKEngine connectivity check

Engine Packet IDs (SafeEnginePacketID)

IDNameDescription
1NETWORK_JOINAgent authentication & HWID registration
2SYNC_SIGNATURESMalicious signature sync
3MALICIOUS_SIGNATURE_DETECTIONSignature match found
4GAME_ANTICHEAT_COMPONENT_STATUSComponent health
5SCANNER_DISCONNECTAgent disconnect
6REQUEST_UPLOADFile upload request
7CHEAT_DETECTIONCheat detection report
8REQUEST_SCREENSHOTScreenshot capture
9RUN_SCANNERSToggle scanner state
10ENGINE_SHUTDOWNEngine shutdown command
11REQUEST_DEBUG_LOGSDebug log retrieval
12REQUEST_FILEHASHFile hash lookup
13REQUEST_FILE_UPLOADFile upload request

πŸ›‘οΈ Detection System

Detection Types

ValueTypeSeverity
0CustomStrict
1Unauthorized ThreadStrict
2Unrecognized IATStrict
3Direct X DLL FoundUnstrict
4Secure Boot DisabledUnstrict
5Debug Mode EnabledUnstrict
6Test Signing EnabledUnstrict
7Injected DLLStrict
8Cheat Signature FoundStrict
9Malicious Process Handle OpenStrict
10Malicious Driver FoundUnstrict
11Thread Shell CodeStrict

Strict detections result in an automatic ban. Unstrict detections are checked against server configuration before action is taken.


πŸ” Security

  • AES-256-CBC encryption for all WebSocket communication
  • Random key selection from 8 key pairs for each packet
  • Timestamp-based anti-replay protection
  • JWT authentication for REST API
  • CORS protection with configurable origins
  • reCAPTCHA integration for public forms
  • IP validation for server subscriptions
  • Comprehensive audit logging for all sensitive actions

AtomicShieldClient

The AtomicShield Agent (game client-side component) is maintained in a separate repository and contains:

  • AtomicShield Agent β€” The client-side anti-cheat engine that connects to this server
  • Game integration libraries for FiveM and other platforms
  • Client-side detection scanners

🀝 Contributing

Internal project. Contributions are managed by the AtomicShield team.


πŸ“¬ Contact


πŸ“„ License

Proprietary. All rights reserved.