Security/Meetings/SecurityAssurance/2013-08-20: Difference between revisions

From MozillaWiki
Jump to navigation Jump to search
(Created page with "{{SecAssuranceMeetingInfo}} {{TOC right}}")
 
No edit summary
 
Line 1: Line 1:
{{SecAssuranceMeetingInfo}}
{{SecAssuranceMeetingInfo}}
{{TOC right}}
{{TOC right}}
=Agenda=
* Goals - Please keep status up to date - https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AmLct3lOMM6ZdGVNXzUxZkJ0WHJPNG0wMDF3ODF6REE
* Metrics
** https://security-review-statistics.vcap.mozillalabs.com/
** https://people.mozilla.com/~sarentz/p/dashboard
* Michael Coates, yvan, freddyb, psiinon are at AppSec EU
* Please continue to add desired agenda items to Paris meetup spreadsheet. It's in 4 weeks!
** yvan will be in charge of turning this into a schedule
* From stability week: Bob Clary's team isn't being allowed to put full effort into BugHunter (a few dozen machines that load URLs from crash-stats to see which ones reliably crash)
** What is the reason?
** Esp. with ASan this should be a very important tool.
*** No reason in particular other than "not allowed" to put in more resources, they're just being tasked with other things   
* Register for the Summit - http://summit.mozilla.org
* Security Reports
Kudos to fuzzers and the stability team:
http://news.techworld.com/security/3464850/internet-explorer-10-lags-chrome-firefox-as-browser-reliability-rises/
=Upcoming Speaking Engagements=
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )
* [st3fan] BSides Toronto - Likely a Minion talk October 5th (Yes, during the summit!)
=Planned Blog Posts=
* https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AlDw2hHXmVgCdHN3LWZTZ0hjMElPc1g2clRKb2lNN3c
=Security Review Status (curtisk)=
* Completed in Q1:64 / Q2: 72
https://security-review-statistics.vcap.mozillalabs.com/weekly (23)
=Operations Security Update (Joe Stevensen)=
Hacker claimed to have compromised Twitter. Twitter says not true. Per mcoates, Joe will send email to all@ to clarify and advise on Twitter account security.
=Project Updates =
Please add your name to the update so we know who to follow up with
== Firefox Desktop ==
== Firefox Mobile ==
== Firefox OS ==
== Firefox Core ==
== MarketPlace ==
== Web Apps ==
== Services ==
== Operation Security ==

Latest revision as of 20:18, 22 August 2013


« previous week | index | next week »
  • Time: (Weekly) Tuesday at 13:30 PM PDT / 16:30 PM EDT / 21:30 PM UTC.
  • Place: Mozilla HQ, 3A-All Your Base (3rd Floor)
  • Phone (US/Intl): 650 903 0800 x92 Conf: 95316#
  • Phone (Toronto): 416 848 3114 x92 Conf: 95316#
  • Phone (US): 800 707 2533 (pin 369) Conf: 95316#

Agenda

Kudos to fuzzers and the stability team: http://news.techworld.com/security/3464850/internet-explorer-10-lags-chrome-firefox-as-browser-reliability-rises/

Upcoming Speaking Engagements

(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )

  • [st3fan] BSides Toronto - Likely a Minion talk October 5th (Yes, during the summit!)

Planned Blog Posts

Security Review Status (curtisk)

  • Completed in Q1:64 / Q2: 72

https://security-review-statistics.vcap.mozillalabs.com/weekly (23)

Operations Security Update (Joe Stevensen)

Hacker claimed to have compromised Twitter. Twitter says not true. Per mcoates, Joe will send email to all@ to clarify and advise on Twitter account security.

Project Updates

Please add your name to the update so we know who to follow up with

Firefox Desktop

Firefox Mobile

Firefox OS

Firefox Core

MarketPlace

Web Apps

Services

Operation Security