## Intelligence Briefing: 152.59.187.249/32
Classification: Low Risk / Clean
Date of Analysis: Current session
---
**Executive Summary**
IP address 152.59.187.249 is identified as a legitimate mobile network endpoint belonging to Reliance Jio Infocomm Ltd. The IP presents minimal security risk with a risk score of 0, no threat indicators, and belongs to a clean subnet with no observed malicious activity. No immediate blocking action is recommended.
---
**Ownership and Network Classification**
| Attribute | Value |
|---|---|
| **Organization** | IRT-RELIANCEJIO-IN |
| **ASN** | 55836 |
| **CIDR Block** | 152.56.0.0/14 |
| **Country** | India (IN) |
| **Region/City** | Uttar Pradesh, Kanpur |
| **Mobile Carrier** | Jio (Reliance Jio Infocomm Ltd.) |
| **Connection Type** | Mobile (LTE/5G) |
The IP is classified as mobile infrastructure with no services exposed. Network role shows as "Firewalled / No Services" with no open ports or active web services detected.
---
**Threat Indicators**
Current Status: No threat indicators detected
- Risk Score: 0
- Abuse Confidence Score: Null
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Campaign Association: None
---
**Observation History**
The IP has been observed 15 times with the following patterns:
- Recent Activity: Signals observed from 2026-07-29
- Geolocation: Consistent India (IN) attribution with 1500km accuracy radius
- Network Stability: 0 ownership changes, not persistently malicious
- Threat Persistence: 0 threat observation days
- Traceroute: 30 hops to target, indicating standard routing through Indian backbone
The history shows stable mobile network behavior with no escalation in threat signals.
---
**Neighborhood Analysis (152.59.187.249/24)**
| Metric | Value |
|---|---|
| **Subnet Classification** | Clean |
| **Abuse Density** | 0 |
| **Total Siblings** | 7 |
| **Active Siblings** | 5 |
| **Threat Siblings** | 0 |
Neighbor Risk Distribution:
- High Risk: 0
- Medium Risk: 0
- Low Risk: 6
All neighboring IPs (152.59.187.29, 32, 111, 142, 158, 188) show risk scores of 0 or 25, with no high-risk neighbors. The subnet demonstrates legitimate mobile network traffic patterns.
---
**Relationship Graph**
The IP's relationship graph contains 5 entries, all categorized as "Same Network" to RELIANCEJIO-IN. No external relationships to hostnames, domains, organizations, or certificates beyond the network scope are detected.
---
**Recommended Actions**
Action Priority: Monitor / No Immediate Action
- Risk Score: 0
- Recommendations: None generated
- Firewall Rules: Not required
The IP shows characteristics of legitimate mobile infrastructure:
- No open ports or services
- No blacklist associations
- Clean subnet neighborhood
- Stable ownership and routing
---
**Intelligence Assessment**
IP 152.59.187.249 is a low-risk mobile endpoint associated with Reliance Jio's Indian infrastructure. The IP shows no malicious indicators, belongs to a clean subnet, and exhibits normal mobile network behavior. No blocking, rate-limiting, or monitoring actions are required at this time.
Recommended SOC Action: Allow traffic with standard logging for baseline monitoring. No firewall rules or mitigation controls necessary.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-RELIANCEJIO-IN |
| ASN | AS55836 |
| Network Name | RELIANCEJIO-IN |
| CIDR Block | 152.56.0.0/14 |
| RIR | ARIN |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 4% | 1 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 14:25:56 UTC |
| Last Seen | 2026-07-29 23:34:26 UTC |
| Profile Built | 2026-07-29 23:52:23 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.