
Jul 8, 2025
1.0.0
ThreatQ Versions >= 5.29.0
ThreatQ Object Action Bundle
Overview
The ThreatQ Object Action for ThreatQ allows a user to interact with ThreatQ objects in complex ways to better manage the Threat Library.
The action can perform the following functions:
- ThreatQ Object Clone - create a new object based on the original.
- ThreatQ Object Inherit From Children - add relationships and other context from child relationships.
The action is compatible with the following system object types:
- Adversary
- Asset
- Attack Pattern
- Campaign
- Course Of Action
- Event
- Exploit Target
- Identity
- Incident
- Indicator
- Intrusion Set
- Malware
- Report
- Signature
- Tool
- TTP
- Vulnerability
Note: This action is intended for use with ThreatQ TDR Orchestrator (TQO). An active TQO license is required for this feature.