Wikimedia Security Team/AppSec Clinic Minutes/2023-05-15

Date: 2023-05-15

Attending: CLemoisson-WMF, ,

Phabricator Tasks In Progress

 * 1) MMartorana_(WMF)
 * 2) T144097 - Investigating potential patches.
 * 3) T332889 - Try to understand if/who owns LogFormatter?
 * 4) T334437 - Triaged, try to find likely maintainers.
 * 5) T335612 - Review and make public this Thursday?
 * 6) MStyles_(WMF)
 * 7) T323651 - Review and CR patches, prep for security deploy, work on comms.
 * 8) T335164 - Analysis work assigned to Maryum.
 * 9) T335556 - Possibly mark invalid pending status of T323651.
 * 10) T335755 - Waiting on manager approval.
 * 11) Reedy_(WMF)
 * 12) T333722 - Decom channel soon.
 * 13) T318825 - Assigned for follow-up.
 * 14) T321092 - Assigned for follow-up.
 * 15) T330086 - Done, add reporter to secteam HoF.
 * 16) T335204 - Assigned to  for review.
 * 17) T335288 - Assigned to  for review.
 * 18) SBassett_(WMF)
 * 19) T326871 - Waiting on AHT/Thalia response.
 * 20) T333140 - Update mitigations for user-rights.
 * 21) T334895 - In-progress.

Sent to Kelton

Sent to Privacy Engineering


 * 1) T336070

New Phabricator Tasks Reviewed

 * 1) T335981 -  to grant access.
 * 2) T250720#8830971 -  to review.
 * 3) T301181 -  to analyze.
 * 4) T336027 -  to analyze.
 * 5) T336113 -  to triage.