THREAT INTELLIGENCE BRIEFING
Target: 159.223.132.79/32
Classification: Low Risk β Cloud Infrastructure
Ownership & Infrastructure
The IP address is assigned to DigitalOcean, LLC (ASN 14061, DO-13 network block: 159.223.0.0/16). Geolocation data places the asset in New Jersey, North Bergen, US. The infrastructure is classified as cloud compute with firewalled/no services exposure.
Risk Assessment
The current risk score is 0. No threat indicators, abuse campaigns, or blacklistings were detected. The IP is not identified as a Tor exit node, proxy, VPN, CDN, or mobile/residential endpoint. No open ports or active services were observed during the scan.
Observation History
Twelve signal observations recorded. Consistent cloud infrastructure classification observed across all time points. No ownership changes or persistent malicious activity detected. The operator score remains at minimal (0.1304) with stable routing characteristics.
Network Relationships
Three relationships identified, all pointing to the DO-13 network block (159.223.0.0/16). No certificate matches or correlated IPs found in the relationship graph.
Subnet Neighborhood Analysis
The /24 subnet (159.223.132.0/24) shows zero abuse density with low-risk classification. Two neighboring IPs observed: 159.223.132.21 (risk score 25) and 159.223.132.86 (risk score 25). Both neighbors maintain low-risk profiles with elevated authority scores.
Recommended Actions
No immediate firewall or blocking actions required. The IP represents a legitimate cloud infrastructure endpoint with no evidence of malicious activity. Routine monitoring is appropriate.
Analyst Notes
This IP should be treated as a benign cloud resource. No correlation to known threat actor infrastructure or malware distribution channels observed.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DO-13 |
| CIDR Block | 159.223.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 35% | 2 | 2 |
| Overall | 22% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-08 01:25:42 UTC |
| Last Seen | 2026-09-02 03:50:20 UTC |
| Profile Built | 2026-08-30 20:54:40 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 21 |
Full dossier details are available via our API.