Facebook Threat Exchange

Updated 1 year ago by TruSTAR

This document describes how to set up the Facebook Threat Exchange premium intelligence source in the TruSTAR platform.

ThreatExchange is an API platform for security professionals to share threat intelligence more easily, learn from each other's discoveries, and make their own systems safer. ThreatExchange provides a set of APIs for pulling data into your existing clients and workflows. The platform supports easy-to-use privacy controls so you can specify who sees the information you publish and how it can be used.

  • Source Type: Premium Intel
  • Update Type: Query-based
  • Parser: Yes
  • Time to Install: 10 minutes

Observables Supported

  • Email Address
  • IP
  • MD5
  • SHA1
  • SHA256
  • URL


  • A subscription to Facebook Threat Exchange
  • Facebook Threat Exchange API ID
  • Facebook Threat Exchange API Secret
TruSTAR Admin rights are required to activate this Premium Intelligence feed.

Getting Started

  1. Log into the TruSTAR Web App.
  2. Click the Marketplace icon on the left side navigation bar.
  3. Choose Premium intel.
  4. Click Subscribe on the Facebook Threat Exchange box.
  5. Enter your Facebook Threat Exchange information and click Save Credentials & Request Subscription.

TruSTAR will validate the integration within 48 hours and send an email when the integration has been enabled.

Known Issues

No reported issues.

Please contact support@trustar.co if you have issues with this integration.

How Did We Do?