IP Intelligence Briefing: 152.70.134.120
*Generated using IPDebrief tools: profile, history, relationships, and neighbors analysis.*
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership: Oracle Corporation (ASN 31898)
- Geolocation: Phoenix, Arizona, US (geoplus plausible, 2500km accuracy radius)
- Network Role: Oracle Cloud infrastructure (firewalled, no active services)
- Threat Indicators: No direct malicious activity detected.
---
**2. Observation History**
- Recent Activity (June 8, 2026):
- Minimal risk score (0.13) with DNSSEC validation.
- ICMP blocked, preventing full geo-validation (8765.7km distance estimated).
- No persistent malicious behavior or threat persistence.
- Historical Trends:
- Single threat observation recorded (no trends).
- No changes in ownership or network role.
---
**3. Relationships**
- Linked Networks:
- Repeatedly associated with Oracleβs internal network (`ORACLE-SCA-CORP-SPACE`), suggesting internal cloud infrastructure.
- No External Connections:
- No subnets, domains, or organizations linked to external threats.
---
**4. Neighborhood Analysis**
- Subnet: 152.70.134.120/24
- Neighbor Count: 0 (no active siblings or risk indicators)
- Abuse Density: 0 (subnet classified as "mostly clean").
---
**5. Key Findings & Recommendations**
- Oracle Cloud Infrastructure: The IP is part of Oracleβs cloud network, likely a private or internal endpoint.
- Geo-Validation Limitations: ICMP blocking prevents accurate RTT/latency validation, but geolocation aligns with Phoenix, AZ.
- No Active Threats: No malicious indicators, but high risk score may reflect network classification or false positives.
- SOC Actions:
- Monitor for unexpected service openings or network changes.
- Verify segmentation between internal Oracle networks and external traffic.
- Investigate ICMP blocking if critical for network validation.
Note: This IP appears to be a low-risk cloud asset, but its high score may stem from Oracleβs infrastructure classification. Further context from internal security teams is recommended.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Oracle Corporation |
| ASN | AS31898 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-19 09:36:33 UTC |
| Last Seen | 2026-06-28 08:42:11 UTC |
| Profile Built | 2026-06-29 02:46:32 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.