# IP Intelligence Briefing: 8.230.13.153/32
## Executive Summary
IP address 8.230.13.153 is a Google Cloud infrastructure endpoint with low-risk profile (risk score: 25). The IP resolves to Google's cloud computing network and shows minimal threat indicators. No active malicious services detected on the endpoint.
## Risk Assessment
- Overall Risk Score: 25 (Low Risk)
- Risk Classification: Low Risk
- Abuse Confidence Score: Not available
- Threat Indicators: None detected
- Blacklist Status: Listed on 1 of 8 DNSBLs
## Ownership and Infrastructure
- Organization: Google LLC (GOOGL-2)
- ASN: AS396982
- CIDR Block: 8.228.0.0/14
- Infrastructure Type: CloudCompute
- Network Role: Provider/Hosting
- Provider: Google Cloud
## Geolocation Data
- Country: South Korea (KR)
- City: Seoul
- Region: 11
- Coordinates: 37.57°N, 126.98°E
- Timezone: Asia/Seoul
- Geolocation Confidence: 0.56 (multi-signal inference)
## DNS and Network Services
- PTR Hostname: 153.13.230.8.bc.googleusercontent.com
- Forward Resolution: Confirmed (1 hostname)
- Open Ports: None detected
- Services: No active services
- TLS Certificate: Not present
- HTTP Banner: Not present
## Network Behavior
- Connection Type: Cloud-based
- BGP Prefix: 8.230.0.0/19
- Route Stability: Unstable (isRouteStable: false)
- Route Changes (30d): 0
- Traceroute: 10 hops, last hop RTT: 204.8ms
- Transit Network: Comcast
## Historical Signal Analysis
Observation history from June 2026 shows:
- Recent Signals (2026-06-21): Cloud provider identification confirmed with 0.85 confidence; geolocation signals consistent with Seoul, KR
- Earlier Signal (2026-06-11): Single threat-related signal from AlienVault OTX (US source)
- Threat Persistence: 0 days; not persistently malicious
- Threat Observation Count: 1
## Network Relationships
- DNS Associations: Multiple associations to 153.13.230.8.bc.googleusercontent.com
- Network Associations: Multiple references to GOOGL-2 network
- External Relationships: None beyond Google Cloud infrastructure
## Neighborhood Analysis (8.230.13.0.0/24)
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 1
- Abuse Density: 1
- Classification: Mostly clean
- Inherited Risk: 2
## Threat Indicators
- Is Tor Exit: No
- Is Known Attacker: No
- Is Spam Source: No
- Campaign Likelihood: None identified
- Cert Matches: 0
- Correlated IPs: 0
## Recommended Actions
Based on the low-risk profile and legitimate cloud infrastructure classification:
- Monitoring: Continue standard monitoring
- Blocking: Not recommended; legitimate Google Cloud endpoint
- Investigation: No immediate investigation required
- Firewall Rules: No specific rules recommended
## SOC Analyst Notes
This IP represents Google Cloud infrastructure with standard cloud computing characteristics. The single threat sibling in the neighborhood warrants awareness but does not indicate immediate threat. Route instability is typical for cloud provider prefixes. No blocking or escalation required at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 8.228.0.0/14 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 153.13.230.8.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 153.13.230.8.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 20% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-27 01:08:15 UTC |
| Last Seen | 2026-06-29 03:50:31 UTC |
| Profile Built | 2026-06-29 09:53:22 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.