mirror of
https://github.com/mblanke/ThreatHunt.git
synced 2026-03-01 14:00:20 -05:00
- NetworkMap: hunt-scoped force-directed graph with click-to-inspect popover - NetworkMap: zoom/pan (wheel, drag, buttons), viewport transform - NetworkMap: clickable IP/Host/Domain/URL legend chips to filter node types - NetworkMap: brighter colors, 20% smaller nodes - DatasetViewer: IOC columns highlighted with colored headers + cell tinting - AUPScanner: hunt dropdown replacing dataset checkboxes, auto-select all - Rename 'Social Media (Personal)' theme to 'Social Media' with DB migration - Fix /api/hunts timeout: Dataset.rows lazy='noload' (was selectin cascade) - Add OS column mapping to normalizer - Full backend services, DB models, alembic migrations, new routes - New components: Dashboard, HuntManager, FileUpload, NetworkMap, etc. - Docker Compose deployment with nginx reverse proxy
29 lines
617 B
Markdown
29 lines
617 B
Markdown
# ThreatHunt — Roadmap (Intent-Level)
|
|
|
|
This roadmap reflects analytical evolution only.
|
|
|
|
## Near Term
|
|
- Better CSV ingestion resilience
|
|
- Stronger artifact normalization
|
|
- Improved analyst annotations
|
|
- Expanded VirusTotal usage
|
|
|
|
## Mid Term
|
|
- Additional enrichment sources
|
|
- Pattern and clustering analysis
|
|
- Analyst hypothesis tracking
|
|
- Cross-hunt correlation views
|
|
|
|
## Long Term
|
|
- Assisted analysis suggestions
|
|
- Historical trend analysis
|
|
- Exportable intelligence products
|
|
|
|
---
|
|
|
|
## Explicit Non-Goals
|
|
- Live endpoint interaction
|
|
- Automated remediation
|
|
- Workflow orchestration
|
|
- Acting without analyst review
|