Wikimedia Security Team/AppSec Clinic Minutes/2022-09-06

From mediawiki.org

Date: 2022-09-06

Attending: MMartorana_(WMF), MStyles_(WMF), SBassett_(WMF)

Phabricator Tasks In Progress[edit]

  1. MMartorana_(WMF)
    1. T312820 - Tgr patch to be tested locally by Manfredi.
    2. T314245 - Patch ready to be deployed.
    3. T315407 - Potential incident follow-up/investigation?
    4. T306018 - Needs follow-up.
    5. T316414 - Needs follow-up.
  2. MStyles_(WMF)
    1. T311337 - CR received, patch ready to be deployed.
    2. T312951 - Ready to grant access.
    3. [phab:T313241|T313241]] - Niklas added maint script, Maryum to follow up on actionables.
    4. T314425 - Scott needs to update 'user' issue in hardening patch, then can probably merge.
    5. T315123 - Assigned to AHT, follow up in another week.
    6. T316360 - Assigned to MStyles_(WMF) for follow-up.
  3. Reedy_(WMF)
    1. T315366 - Inform Legal of results?
    2. T316304 - Assigned to Reedy_(WMF) for follow-up (as they created it).
    3. T306516 - Open, lowest.
    4. T306211 - Open, untriaged.
    5. T310393 - Open, untriaged.
    6. T311368 - Open, untriaged.
  4. SBassett_(WMF)
    1. T315570 - Scott to ping Brendan again on arch setup, review diagram.
    2. T313898 - Triaged as low, ongoing discussion for solution, wait another week?
    3. T314884 - Awaiting response from legoktm.
    4. T315820 - To triage.
    5. T316029 - Review comments/follow-up.

New Phabricator Tasks Reviewed[edit]

  1. T316722 - Assigned to SBassett_(WMF) for follow-up.
  2. T316998 - Assigned to MMartorana_(WMF) for follow-up.