# IP Intelligence Briefing: 140.245.49.25/32
Classification: Low Risk β Oracle Cloud Infrastructure
Intel Date: 2026-06-22
---
## Executive Summary
IP address 140.245.49.25 is an Oracle Corporation cloud compute endpoint located in Singapore. The asset presents minimal threat indicators with a risk score of 25/100. No active malicious campaigns or known attacker associations were identified. The IP operates within a clean cloud infrastructure environment with no open services or public-facing applications detected.
---
## Network Ownership & Classification
| Attribute | Value |
|---|---|
| **Organization** | Oracle Corporation |
| **ASN** | 31898 |
| **BGP Prefix** | 140.245.32.0/19 |
| **Geolocation** | Singapore (Jurong East), SG |
| **Network Role** | Oracle Cloud (CloudCompute) |
| **Infrastructure Type** | Cloud Hosting |
| **Services** | Firewalled / No Services Detected |
The IP belongs to Oracle's enterprise cloud infrastructure network (ORACLE-4). All 24 relationship graph entries link to this same network designation, confirming consistent network attribution.
---
## Risk Assessment
| Metric | Value | Assessment |
|---|---|---|
| **Risk Score** | 25 | Low Risk |
| **Provider Score** | 0 | Clean |
| **Authority Score** | 0 | Clean |
| **Abuse Confidence** | Null | No Evidence |
| **Blacklist Count** | 0 | Not Listed |
| **DNSBL Lists** | 1/8 | Minimal Presence |
| **Operator Score** | 0.1304 | Minimal Risk |
Threat Indicators: None detected. Not a Tor exit node, known attacker, or spam source. No known campaign associations.
---
## Network Neighborhood (140.245.49.0/24)
| Attribute | Value |
|---|---|
| **Subnet Classification** | mostly_clean |
| **Abuse Density** | 0.5 |
| **Total Siblings** | 2 |
| **Active Siblings** | 0 |
| **Threat Siblings** | 1 |
Notable Neighbor: 140.245.49.200 (Risk: 25, Authority: 50)
The /24 subnet shows minimal abuse density with one threat sibling identified elsewhere. The target IP (140.245.49.25) demonstrates no inherited threat characteristics.
---
## Service & Port Analysis
| Category | Status |
|---|---|
| **Open Ports** | None |
| **TLS Certificate** | Not Present |
| **HTTP Title** | None |
| **Server Banner** | None |
| **Hosted Domains** | 0 |
| **Email Auth** | SPF: N/A, DMARC: N/A |
The IP shows no publicly accessible services, consistent with backend cloud infrastructure or internal service endpoints. DNSSEC validation is enabled.
---
## Temporal Analysis (Signal History)
Observation Count: 21 historical observations
Recent Activity: June 17β22, 2026
- Operator score remained stable at 0.1304 (Minimal)
- No escalation in threat signals
- No ownership changes recorded
- Threat persistence duration: 0 days
- Not persistently malicious
---
## Geolocation Validation
| Metric | Value |
|---|---|
| **Distance from Origin** | 10,372.3 km |
| **Minimum RTT** | 251 ms |
| **Average RTT** | 252.2 ms |
| **Probe Count** | 5 |
| **Geo Plausible** | Yes |
Geolocation data is consistent and plausible across multiple sources with geo consensus enabled.
---
## Recommended Security Actions
Classification: No action required
The IP address presents a low-risk profile with no active threats detected. Standard cloud infrastructure egress/ingress policies apply. No specific firewall rules or blocking recommendations generated based on current threat profile.
Note: This IP belongs to Oracle Cloud infrastructure. Legitimate traffic from this network should be allowed per established cloud connectivity policies. Any suspicious activity should be evaluated against local network behavior rather than IP reputation alone.
---
Analyst Notes: This is a legitimate Oracle Cloud endpoint with no malicious indicators. The absence of open services and low risk score is consistent with cloud hosting infrastructure. Monitor only if unusual behavior patterns emerge from this IP at your organization's endpoints.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Oracle Corporation |
| ASN | AS31898 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 20% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:41 UTC |
| Last Seen | 2026-06-26 22:37:08 UTC |
| Profile Built | 2026-06-27 18:51:01 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 24 |
Full dossier details are available via our API.