Wikimedia Security Team/AppSec Clinic Minutes/2022-11-14

From mediawiki.org

Date: 2022-11-14

Attending: CLemoisson-WMF, MMartorana_(WMF), SBassett_(WMF), KHurd-WMF

Phabricator Tasks In Progress[edit]

  1. MMartorana_(WMF)
    1. T315407 - "Passive watching", maybe get Kelton's take?
    2. T316414 - Manfredi will work on a ported patch for this edge case.
    3. T317595 - Assigned to review discussion and new tasks.
    4. T321458 - Assigned for review, possible appsec discussion.
    5. T322465 - Closed as duplicate.
  2. MStyles_(WMF)
    1. T313241 - Maint script merged, determine next steps.
    2. T316360 - Awaiting feedback.
    3. T316998 - Overly-cautious security-protection, possible follow-up.
    4. T318731 - Assigned to MStyles_(WMF) for follow-up.
    5. T318731 - Assigned to MStyles_(WMF) for follow-up.
    6. T319134 - Assigned to MStyles_(WMF) for follow-up.
    7. T320363 - Assigned to MStyles_(WMF) for follow-up.
    8. T320611 - Waiting to grant security access on requester...
    9. T321467 - Assigned for review.
  3. Reedy_(WMF)
    1. T306211 - Open, untriaged.
    2. T310393 - Open, untriaged.
    3. T318825 - Assigned for follow-up.
    4. T321092 - Assigned for follow-up.
  4. SBassett_(WMF)
    1. T314884 - Awaiting further response from legoktm.
    2. T315820 - Triage, await discussion.
    3. T316722 - Await discussion.
    4. T320540 - Assigned for follow-up.
    5. T321318 - Assigned for review.
    6. T321921 - Assigned for review.
  5. Sent to Kelton
    1. T321971
  6. Sent to Privacy Engineering

New Phabricator Tasks Reviewed[edit]

  1. T322637 - Patch proposed. (Manfredi)