## Intelligence Briefing: IP Address 155.248.171.34/32
Classification: Low Risk Cloud Infrastructure
Date: 2026-06-20
Analyst: IPDebrief Threat Intelligence
---
Executive Summary
IP address 155.248.171.34 belongs to Oracle Public Cloud (ASN 31898) and is classified as low-risk infrastructure. The IP shows no active malicious indicators, operates as cloud compute infrastructure, and demonstrates stable operational patterns. No immediate blocking or filtering actions are recommended.
---
Risk Assessment
- Overall Risk Score: 25/100 (Low)
- Reputation: Low Risk
- Threat Indicators: None detected
- Blacklist Status: 0/8 DNSBL listings
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
Network Classification
- Infrastructure Type: Cloud Compute
- Provider: Oracle Public Cloud
- Network Role: Firewalled / No Services
- Cloud Provider: Yes
- Hosting: Yes
- BGP Prefix: 155.248.160.0/19
- Route Stability: Unstable (flagged as false)
Geographic Location
- Country: United States (US)
- Region: Chiba
- City: Inzai
- Geographic Validation: Plausible (distance: 9,216.9 km)
---
Threat Intelligence Indicators
Current Threat Profile:
- No active threat indicators identified
- No known campaigns or threat feed matches
- No honeypot strikes recorded
- Zero enumeration strikes
- No WAF violations detected
Control Plane Analysis:
- RPKI State: Not reported
- IRR Consistency: Not reported
- Route Changes (30d): 0
- MOAS Status: False
- DNSSEC Valid: True
---
Historical Observation Analysis
The IP has been observed 16 times across recent monitoring cycles. Historical signals indicate:
- Observation Count: 16 total signals
- Threat Persistence: 0 days
- Ownership Changes: 0
- Subnet Classification: Mostly clean (abuse density: 1)
- Most Recent Signal: 2026-06-20T05:21:11 (Operator score: 0.1304 - Minimal)
The IP demonstrates stable operational characteristics with no escalation in threat signals over the observation period.
---
Network Neighborhood Analysis
- Subnet: 155.248.171.34/24
- Abuse Density: 1 (mostly clean)
- Threat Siblings: 1
- Active Siblings: 0
- Inherited Risk: 2
- Total Siblings: 1
The /24 subnet maintains a clean classification with minimal abuse activity.
---
Network Relationships
The IP maintains relationships with network identifier OC-260 across all 12 relationship records, confirming consistent association with Oracle Cloud infrastructure.
---
Recommended Actions
Status: No action required
Rationale: The IP address exhibits characteristics consistent with legitimate cloud infrastructure. No malicious indicators, no blacklist presence, and no threat signals detected. Standard logging and monitoring practices are sufficient.
Firewall Rules: None recommended (risk score 25)
---
Intelligence Narrative
155.248.171.34 is a low-risk IP address belonging to Oracle Public Cloud infrastructure. The address operates as cloud compute resources with no open services exposed and no active threat indicators. Historical analysis confirms stable operational patterns with no escalation in risk signals. The surrounding /24 subnet maintains a clean classification with minimal abuse density. SOC analysts may treat this as legitimate infrastructure requiring only standard logging. No blocking or filtering actions are warranted.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Oracle Public Cloud |
| ASN | AS31898 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-18 15:25:36 UTC |
| Last Seen | 2026-06-28 07:27:36 UTC |
| Profile Built | 2026-06-29 01:31:14 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 22 |
Full dossier details are available via our API.