Wikimedia Security Team/AppSec Clinic Minutes/2023-09-11

Date: 2023-09-11

Dashboard: https://phabricator.wikimedia.org/portal/view/3/

Attending: CLemoisson-WMF, ,


 * 1) MMartorana_(WMF)
 * 2) T144097 - Requesting staff rights to prod-test, still testing locally.
 * 3) T336113 - Volunteer tagged for review.
 * 4) T343664 - WMF staff tagged for review.
 * 5) MStyles_(WMF)
 * 6) T335164 - Analysis work assigned to Maryum.
 * 7) T338238 - Set up AppSec CI includes for iPoid.
 * 8) T338611 - Waiting Releng to deploy.
 * 9) T344130 - To review, possibly write patch.
 * 10) SBassett_(WMF)
 * 11) T326871 - Waiting on AHT/Thalia response.
 * 12) T336310 - Try to get a steward to add Maryana's SUL to new group.
 * 13) T344359 - Attempt sec deploy today.

Sent to Privacy Engineering

No new tasks from the appsec clinic this week.

New Phabricator Tasks Reviewed

 * 1) T345858 - Assigned to  for review.
 * 2) T345862 - Assigned to  for review.
 * 3) T345910 - Marked invalid for now.
 * 4) T345928 - Triaged during clinic, pinged relevant mitigators.
 * 5) T345989 - Triaged during clinic, set to watching.
 * 6) T346055 - Triaged during clinic, never needed to be a security bug.