# IP Intelligence Briefing: 14.32.226.144/32
Classification: Low Risk | Risk Score: 25/100
Report Date: Based on latest available intelligence
Data Sources: IPDebrief Intelligence Platform
---
## Executive Summary
The IP address 14.32.226.144/32 presents a low-risk profile (risk score: 25) with no active threat indicators. The address is classified as a mobile device assignment from KT Corporation (South Korea) operating within the Korea Telecom network infrastructure. No malicious activity or abuse patterns were detected in the most recent observation period.
---
## Network Ownership & Attribution
- ASN: AS4766 (IP Manager / Korea Telecom)
- Organization: IP Manager / KORNET-KR
- RIR: APNIC (Asia Pacific)
- CIDR Block: 14.32.0.0/11
- Abuse Contact: Available via RDAP
- Mobile Carrier: KT Corporation (MCC: 450, MNC: 08)
- Connection Technology: LTE/5G Mobile Network
---
## Geolocation Analysis
Primary Location: New York, US (profile consensus)
Observed Location: South Korea (KR) — Songpa-dong / KT Head Office
Geographic Discrepancy: Multiple signals indicate South Korean origin (coordinates: 35-37°N, 127-128°E), conflicting with profile's US designation. This discrepancy is attributed to mobile routing and NAT behaviors common in mobile carrier allocations.
Control Plane:
- BGP Prefix: 14.32.0.0/13
- Route Stability: Unstable (not route-stable)
- RPKI State: Not validated
- IRR Consistency: Not validated
---
## Network Behavior & Services
- Service Status: Firewalled / No Services Detected
- Open Ports: None
- TLS Certificates: None
- DNS Resolution: No PTR records, no forward resolution
- Email Authentication: No SPF, DMARC, or TXT records configured
---
## Threat Intelligence Indicators
- Blacklist Status: 0/8 lists
- Threat Feeds: No active indicators
- Known Campaigns: None detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Abuse Confidence Score: Not available
Historical Signals (16 observations):
- Recent observation (2026-07-28): Threat indicators present (6 pulse events detected)
- Ownership changes: 0
- Threat persistence: Not persistently malicious
---
## Neighborhood Analysis
- Subnet: 14.32.226.0/24
- Total Siblings: 0
- Active Siblings: 0
- Abuse Density: 0%
- High Risk Neighbors: 0
- Medium Risk Neighbors: 0
- Low Risk Neighbors: 0
No neighboring IPs show elevated risk indicators or abuse patterns.
---
## Relationship Mapping
Direct Relationships: 2
- KORNET-KR (Same Network)
- KORNET-KR (Same Network)
No associated hostnames, organizations, or certificates detected beyond network-level associations.
---
## Security Recommendations
Current Risk Assessment: Low Risk — No immediate action required
Recommended Actions:
1. Monitor: Continue standard monitoring given mobile carrier classification and observed threat indicators in history
2. Allow List Consideration: Legitimate mobile subscriber traffic from KT Corporation may be expected
3. Firewall Rules: No specific blocking rules recommended at this time
4. Threat Persistence: Not classified as persistently malicious; historical threat activity was transient
---
## Key Intelligence Notes
1. Mobile Allocation: This IP is assigned to mobile subscribers via KT Corporation's LTE/5G network. Mobile IPs often show geographic inconsistencies due to roaming and network routing.
2. Threat History: One observation period (2026-07-28) flagged threat indicators with 6 pulse events, but subsequent analysis shows no persistent malicious behavior.
3. No Active Services: The absence of open ports, DNS records, or email authentication suggests this IP is not currently being used for active reconnaissance or command-and-control operations.
4. Geographic Discrepancy: The profile's US designation conflicts with multiple KR-origin signals. Analysts should treat geolocation data with caution for mobile carrier allocations.
---
Analyst Notes: This IP presents a low-risk profile consistent with legitimate mobile subscriber activity. No immediate blocking or investigation actions are warranted. Continue standard network monitoring practices.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IP Manager |
| ASN | AS4766 |
| Network Name | KORNET-KR |
| CIDR Block | 14.32.0.0/11 |
| RIR | APNIC |
| Country | KR |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| Closed Ports | 22, 25, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | Web server detected |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS4766 |
| Network Prefix | 14.32.0.0/13 |
| Route mapping | Found |
| HSTS | Not detected |
| CSP | Not detected |
| HTTP/2 | Not detected |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 21% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 17% | 2 | 3 |
| ownership | 17% | 2 | 3 |
| reputation | 14% | 1 | 3 |
| geolocation | 17% | 2 | 3 |
| Overall | 16% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-17 04:59:56 UTC |
| Last Seen | 2026-09-02 22:57:25 UTC |
| Profile Built | 2026-09-02 22:59:55 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 25 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 14.32.226.144
Who owns the IP address 14.32.226.144?
14.32.226.144 is registered to IP Manager. The address falls within the 14.32.0.0/11 network block. Registration is held at APNIC.
Where is 14.32.226.144 located?
Geolocation data places 14.32.226.144 in Songpa-gu, Seoul, South Korea. The local time zone is Asia/Seoul. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 14.32.226.144 malicious or safe?
14.32.226.144 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.
What ports are open on 14.32.226.144?
Responsive ports observed on 14.32.226.144 include 80. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.
Is 14.32.226.144 a VPN, proxy, or data center address?
14.32.226.144 is classified as a mobile network based on network ownership and behavioural analysis.