# IP INTELLIGENCE BRIEFING
Target: 216.151.130.168/32
Date: 2026-06-24
Classification: Low Risk / Infrastructure
## Executive Summary
IP 216.151.130.168 is an infrastructure address belonging to Cisco Webex LLC (ASN 13445) with an overall risk score of 25/100. The address is firewalled with no active services detected. While the IP itself shows minimal direct threat indicators, it resides in a subnet with moderate abuse density and has been associated with one high-severity DNSBL listing in recent observations.
## Ownership and Geolocation
- Organization: Cisco Webex LLC
- ASN: 13445
- Network Block: 216.151.128.0/20
- Location: San Jose, California, United States
- Geolocation Confidence: Consensus verified (geoPlausible: true)
- Geolocation Accuracy: 2500 km radius (limited probe data)
## Threat Assessment
Current Risk Profile:
- Risk Score: 25 (Low Risk)
- Blacklist Status: Listed on 1 of 8 threat feeds
- Threat Category: None identified directly
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Key Findings:
- No open ports or services detected (firewalled/no services)
- No TLS certificates or HTTP signatures
- DNSSEC validation: Valid
- Operator classification: Minimal (0.1304)
## Neighborhood Analysis (216.151.130.0/24)
- Abuse Density: 0.3906 (moderate)
- Subnet Classification: Mixed
- Active Siblings: 184 of 256 addresses
- Threat Siblings: 100 addresses flagged with threat indicators
- Inherited Risk Score: 15
The subnet exhibits mixed usage patterns with approximately 39% abuse density. The target IP shares this network segment with 100 other addresses showing threat indicators, suggesting the broader infrastructure may have varying security postures.
## Historical Observations
Observation Count: 45 signals tracked
Latest Activity: 2026-06-24
Recent signal history indicates:
- Subnet abuse density maintained at 0.3906
- One high-severity DNSBL listing detected
- Operator score remained minimal (0)
- No persistent malicious activity patterns observed
## Network Relationships
- Relationships Identified: 151
- Relationship Type: Same Network (CS-1711)
- Network Classification: CS-1711 (Cisco infrastructure)
All identified relationships are within the same network segment, indicating this IP is part of a larger Cisco Webex infrastructure deployment.
## Recommended Actions
No specific firewall rules or mitigation actions are currently recommended based on the IP's risk profile. The address is classified as low risk with no active threat indicators.
Monitoring Recommendations:
- Monitor DNSBL listing changes
- Track subnet abuse density trends
- Watch for any service activation on this IP
## Conclusion
IP 216.151.130.168 presents minimal threat to organizational security. The address is properly maintained Cisco Webex infrastructure with no active services or direct threat indicators. While the parent subnet shows moderate abuse density, the target IP itself maintains a clean reputation. Continue routine monitoring but no immediate defensive actions required.
---
*Intelligence generated by IPDebrief. Data sourced from real-time network observation and reputation feeds.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Cisco Webex LLC |
| ASN | AS13445 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 20% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 28% | 2 | 3 |
| Overall | 23% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:05:14 UTC |
| Last Seen | 2026-06-26 18:12:10 UTC |
| Profile Built | 2026-06-27 07:16:23 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 46 |
Full dossier details are available via our API.