Wikimedia Security Team/AppSec Clinic Minutes/2023-05-15

From mediawiki.org

Date: 2023-05-15

Attending: CLemoisson-WMF, MStyles_(WMF), SBassett_(WMF)

Phabricator Tasks In Progress[edit]

  1. MMartorana_(WMF)
    1. T144097 - Investigating potential patches.
    2. T332889 - Working on a patch. (ready to be made public)
    3. T334437 - Triaged, try to find likely maintainers..
    4. T335612 - Deployed.
    5. T336113 - To triage, maybe write patch.
  2. MStyles_(WMF)
    1. T323651 - Prep for security deploy, work on comms.
    2. T335164 - Analysis work assigned to Maryum.
    3. T335556 - Possibly mark invalid pending status of T323651.
    4. T250720#8830971 - MStyles_(WMF) to review.
    5. T336027 - To triage, somewhat dependent upon T333140.
  3. Reedy_(WMF)
    1. T333722 - Decom channel soon.
    2. T318825 - Assigned for follow-up.
    3. T321092 - Assigned for follow-up.
    4. T330086 - Done, add reporter to secteam HoF.
    5. T335204 - Assigned to Reedy_(WMF) for review.
    6. T335288 - Assigned to Reedy_(WMF) for review.
  4. SBassett_(WMF)
    1. T326871 - Waiting on AHT/Thalia response.
    2. T333140 - To sec-deploy update this week.

Sent to Kelton
Sent to Privacy Engineering

New Phabricator Tasks Reviewed[edit]

  1. T336310 - SBassett_(WMF) to analyze.
  2. T336536 - MStyles_(WMF) to add access.