Wikimedia Security Team/AppSec Clinic Minutes/2023-05-02

Date: 2023-05-02

Attending: MMartorana_(WMF), MStyles_(WMF), SBassett_(WMF)

Phabricator Tasks In Progress edit

  1. MMartorana_(WMF)
    1. T328393 - ATH tagged, possibly follow up soon.
    2. T144097 - Investigating potential patches.
    3. T332889 - Try to understand if/who owns LogFormatter?
    4. T334437 - Triaged, try to find likely maintainers.
  2. MStyles_(WMF)
    1. T323651 - Review and CR patches, prep for security deploy, work on comms.
    2. T335164 - Analysis work assigned to Maryum.
  3. Reedy_(WMF)
    1. T333722 - Decom channel soon.
    2. T318825 - Assigned for follow-up.
    3. T321092 - Assigned for follow-up.
    4. T330086 - Done, add reporter to secteam HoF.
    5. T335204 - Assigned to Reedy_(WMF) for review.
    6. T335288 - Assigned to Reedy_(WMF) for review.
  4. SBassett_(WMF)
    1. T326871 - Waiting on AHT/Thalia response.
    2. T333140 - Update mitigations for user-rights.
    3. T334895 - In-progress.

Sent to Kelton
Sent to Privacy Engineering

New Phabricator Tasks Reviewed edit

  1. T335556 - Assigned to MStyles_(WMF) for review.
  2. T335612 - Assigned to MMartorana_(WMF) for review.
  3. T335695 - SBassett_(WMF) to watch.
  4. T335696 - SBassett_(WMF) to watch.
  5. T335698 - SBassett_(WMF) to watch.
  6. T335755 - Assigned to MStyles_(WMF) for review.