IPDebrief

216.151.137.111

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 216.151.137.111/32

Date: 2026-06-24

Classification: Defensive Security Assessment

---

## EXECUTIVE SUMMARY

IP 216.151.137.111 is a legitimate infrastructure address owned by Cisco Webex LLC (ASN 13445). The IP presents as Low Risk with no active threat indicators. The address is currently firewalled with no accessible services. Network context indicates this is part of a Cisco-managed /20 block (216.151.128.0/20) with moderate neighborhood activity levels.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
**Organization**Cisco Webex LLC
**ASN**13445
**CIDR Block**216.151.128.0/20
**Geolocation**New York, NY, US
**RIR**ARIN
**Registration**2017-10-03
**Network Type**Corporate/Enterprise

---

## THREAT ASSESSMENT

Risk Score: 0.0 (Low Risk)

Abuse Confidence: Not applicable

Blacklist Status: 0 listings

Tor Exit Node: No

Known Attacker: No

Spam Source: No

Active Campaigns: None detected

The IP shows no evidence of malicious activity. Threat feeds and reputation sources contain no adversarial indicators.

---

## NETWORK SERVICES

Service CategoryStatus
**Open Ports**None detected
**HTTP/HTTPS**No web services
**DNS**No hosted domains
**TLS Certificates**None
**Email Auth**No SPF/DMARC records
**Service Purpose**Firewalled / No Services

---

## NEIGHBORHOOD ANALYSIS (216.151.137.0/24)

MetricValue
**Subnet Classification**Mixed
**Abuse Density**0.2812 (28.12%)
**Total Siblings**256
**Active Siblings**116
**Threat Siblings**72
**Risk Distribution**0 High / 66 Medium / 34 Low

The /24 subnet demonstrates typical enterprise infrastructure characteristics with moderate abuse density. Seveny-two threat sibling IPs detected across the neighborhood, but none correlated with the target IP.

---

## OBSERVATION HISTORY

Total Observations: 42 signals

Threat Persistence Days: 0

Ownership Changes: 0

Recent signal activity includes:

The IP has demonstrated consistent behavior with no threat escalation patterns. Ownership has remained stable since 2017.

---

## RELATIONSHIP GRAPH

Total Relationships: 131

Primary Association: Same Network (CS-1711) β€” 126+ relationships

All relationships map to the same network prefix. No cross-organizational or multi-ASN connections detected.

---

## ROUTING & CONTROL PLANE

AttributeStatus
**BGP Prefix**216.151.128.0/20
**Route Stable**False
**Route Changes (30d)**0
**DNSSEC Valid**Yes
**RPKI State**Not verified
**IRR Consistency**Not verified
**DNSBL Listed**0 of 8 lists
**Operator Score**0.1304 (Minimal)

---

## RECOMMENDATIONS

SOC Actions

1. No immediate blocking required β€” IP presents legitimate enterprise characteristics

2. Monitor for service activation β€” Currently firewalled; alert on port scan activity

3. Correlate with Cisco Webex threat intelligence β€” Cross-reference any Webex-related campaigns

4. Whitelist consideration β€” If this IP appears in threat logs, investigate false positive indicators

Firewall Rules (Reference)

```bash

# No action required β€” IP is not flagged as malicious

# Standard enterprise filtering applies

```

---

## CONCLUSION

IP 216.151.137.111 is a legitimate Cisco Webex infrastructure address with no active threat indicators. The IP is part of a larger /20 block with moderate neighborhood risk levels. No defensive action is required at this time. SOC analysts should maintain standard monitoring protocols and correlate with any Webex-specific threat intelligence campaigns.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionUS-NY
CityNew York
Timezoneβ€”
Latitude37.75
Longitude-97.82

🏒 Ownership & Registration

OrganizationCisco Webex LLC
ASNAS13445
Network Nameβ€”
CIDR Blockβ€”
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
23
routing
20%
11
services
8%
11
ownership
20%
23
reputation
30%
13
geolocation
24%
23
Overall23%914
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-07 23:05:08 UTC
Last Seen2026-06-26 18:12:06 UTC
Profile Built2026-06-27 01:32:41 UTC
Data FreshnessLive
Signal Types19
Total Observations47
πŸ” 19 signal types Β· 47 observations collected
This report is generated from 19+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.