IP Intelligence Briefing: 154.195.7.26/32
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership: Registered to Cloud Innovation Support (ASN 62240, afrinic) in Germany (Berlin).
- Geolocation: Berlin, Germany (lat: 52.53, lon: 13.39).
- Network Role: Firewalled / No Services (no open ports, TLS, or HTTP services detected).
- Threat Indicators: No malicious activity, spam, or known attacker associations.
---
**2. Observation History**
- Stability: No significant changes in risk or network signals over the past 30 days.
- Key Signals:
- DNSSEC validation confirmed.
- Minimal operator risk score (0.13).
- No threats, abuse, or enumeration activity.
- Note: Risk remains stable, with no upward trend in malicious activity.
---
**3. Relationships**
- Linked Entities:
- Subnet: 154.195.7.0/24 (same network).
- No direct links to organizations, domains, or certificates.
---
**4. Neighborhood Analysis**
- Subnet Abuse Density: 0% (no malicious neighbors or high-risk sibling IPs).
- Neighbors: No active or risky IPs in the 154.195.7.0/24 subnet.
---
**5. Recommended Actions**
- Firewall Rules:
- Block the IP using:
- iptables: `iptables -A INPUT -s 154.195.7.26 -j DROP`
- Cloudflare WAF: Block IP with risk score 50.
- AWS WAF: Add `154.195.7.26/32` to a rule with description "IPDebrief risk 50".
- SOC Guidance:
- Monitor for unexpected traffic, as the IP is firewalled and has no active services.
- Verify if the IP belongs to a trusted organization (Cloud Innovation Support) or is a false positive.
---
**6. Summary**
The IP 154.195.7.26 is a legitimate, non-malicious address registered to a German organization. No threat indicators or abuse activity are detected. While the moderate risk score suggests monitoring, the IP shows no signs of malicious behavior. Block it if itβs not required for operations, but no urgent action is needed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Cloud Innovation Support |
| ASN | AS62240 |
| Network Name | 154.195.7.0 - 154.195.7.255 |
| CIDR Block | 154.195.7.0/24 |
| RIR | AFRINIC |
| Country | DE |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 21% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 12% | 6 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-24 06:32:35 UTC |
| Last Seen | 2026-06-10 13:32:46 UTC |
| Profile Built | 2026-06-10 13:36:31 UTC |
| Data Freshness | Live |
| Signal Types | 12 |
| Total Observations | 12 |
Full dossier details are available via our API.