How we prevented subdomain takeovers and saved $000s
How we developed Domain Protect, an open source tool for automated scanning of cloud infrastructure for subdomains vulnerable to takeover.

How we developed Domain Protect, an open source tool for automated scanning of cloud infrastructure for subdomains vulnerable to takeover.
By Chongyang Shi [https://scy.email/], Alex Kaskasoli [https://alex.kaskaso.li/] , Ignacio Dominguez [https://twitter.com/congon4tor], and Emily Young [https://twitter.com/Emisaurus_hex] Following our culture of Technical Autonomy [https://tech.ovoenergy.com/ovo-tech-culture/#technicalautonomy], te…
A high level overview of the problems we found with our AWS account architecture and how we solved them
Dave ConnellA Shared Network Connecting cloud projects together and to on-prem services is a standard problem of organisations. At OVO we use the 10.0.0.0/8 CIDR block for our internal network. This range is split into subnets for each office, AWS or GCP project, or on-prem. When a new cloud project wants to j…
Daniel FlookHere at OVO we make use of managed services that allow us to run less software ourselves, and play pivotal roles in achieving CI/CD; services which are firmly placed on our Paved Road [https://conferences.oreilly.com/oscon/oscon-tx/public/schedule/detail/57097]. Two of the most prevalent managed se…