Query IPv6 Address Information and Risk Scores

Prev Next

We provide powerful tools to retrieve granular information and risk scores for IPv6 addresses, leveraging a proprietary scanning engine to deliver actionable cyber intelligence. Users can access detailed data points, including Autonomous System Number (ASN), ASN reputation scores, certificate information, Tor and IPFS nodes, geographic location, subnet data, and the Risk Score, which assesses the potential threat level of an IPv6 address based on its DNS records and other factors.

Retrieve Basic Information for an IPv6 Address

To obtain detailed information about a specific IPv6 address:

  1. From the left navigation menu, select Advanced Query Builder > IPv6 Queries > Information.

  2. Specify an IPv6 address.

  3. (Optional) Click Explain to view details of the data used to calculate scores in the response.

  4. (Optional) Select a category under Sparse to retrieve specific information:

    1. asn: Returns the Autonomous System Number for the IPv6 address.

    2. asname: Returns the AS Name for the IPv6 address.

    3. sp_risk_score: Returns the Silent Push Risk Score for the IPv6 address.

  5. Click Search.

For querying multiple IPv6 addresses, use Advanced Query Builder > IPv6 Queries > Information - Bulk query to retrieve the same data points for a group of IPs.

Retrieve the Risk Score for an IPv6 Address

Our proprietary algorithm assigns risk scores to IPv6 addresses with associated DNS records, helping security teams identify potential threats.

  1. From the left navigation menu, select Advanced Query Builder > IPv6 Queries > Risk Score.

  2. Specify an IPv6 address.

  3. Click Search.

For risk scores on multiple IPs, use Advanced Query Builder > IPv6 Queries > Risk Score - Bulk query.

Save Queries

Organizational users can save queries for future use or sharing.

  1. Specify query parameters.

  2. Click Save Query.

  3. Provide a Name and Description for context.

  4. Click Save. The query appears in Private Queries.

This consolidated approach allows security teams, threat hunters, and researchers to efficiently gather critical IPv6 data and assess risks.