
Jul 8, 2025
1.0.0
ThreatQ Versions >= 5.12.1
ThreatQ Extract FQDNs Action
Overview
The Extract FQDNs action enables the automatic extraction of FQDNs (or IP Addresses) from URLs within your Threat Library.
The integration provides the following action:
- Extract FQDNs - extracts a URL’s FQDN, or IP Address, add it your Threat Library, and relate it to the URL.
The action is compatible with URL type indicators.
The action returns the following enriched indicator types:
- FQDN
- IP Address
Note: This action is intended for use with ThreatQ TDR Orchestrator (TQO). An active TQO license is required for this feature.