The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (154.6.0.0/16) exhibits coordinated behavior with multiple IPs generating repetitive, low-interaction traffic primarily targeting a specific site. The use of identical user agents and proxy configurations suggests potential automation or scraping activities, although the lack of consistent RDNS and forward DNS matches raises suspicions about the legitimacy of the traffic.
The following signals are generated automatically and do not override the overall risk score shown above.