Security/Meetings/SecurityAssurance/2013-03-12: Difference between revisions
< Security | Meetings | SecurityAssurance
Jump to navigation
Jump to search
(Created page with "{{SecAssuranceMeetingInfo}} {{TOC right}}") |
No edit summary |
||
| Line 1: | Line 1: | ||
{{SecAssuranceMeetingInfo}} | {{SecAssuranceMeetingInfo}} | ||
{{TOC right}} | {{TOC right}} | ||
=Agenda= | |||
* Two week warning on quarter end | |||
* Goals - Please keep status up to date - https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AmLct3lOMM6ZdEI4SlE0eGRWdkN5bXBpbV8wcjNzNUE | |||
* Metrics | |||
** https://security-review-statistics.vcap.mozillalabs.com/ | |||
** Review Security Radar Page - https://wiki.mozilla.org/Security/Radar < all quiet on the front, sir. | |||
* [dchan] bounties | |||
* Pwn2own - well done on response | |||
** [gkw] had a write-up on the response at http://garykwong.wordpress.com/2013/03/08/protecting-mozilla-firefox-users-on-the-web/ | |||
*** Thanks go out to the on-site team for providing timely updates for remote folks to keep up | |||
* [psiinon] Zest demo (connection permitting...) | |||
=Upcoming Speaking Engagements= | |||
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks ) | |||
* | |||
* | |||
=Upcoming Speaking Engagements= | |||
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks ) | |||
=Planned Blog Posts= | |||
*[https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AlDw2hHXmVgCdHN3LWZTZ0hjMElPc1g2clRKb2lNN3c Google Doc] | |||
=Security Review Status (curtisk)= | |||
* Completed in Q4 2012: 50 (55 so far this quarter) | |||
https://security-review-statistics.vcap.mozillalabs.com/weekly | |||
* without deadline is suddenly zero, either the query is broken or you all rock! | |||
* we are having a record quarter for requests and completes | |||
=Operations Security Update (Joe Stevensen)= | |||
=Project Updates = | |||
Please add your name to the update so we know who to follow up with | |||
== Firefox Desktop == | |||
== Firefox Mobile == | |||
== Firefox OS == | |||
* [gkw] Wrangling with our panda fuzz cluster via mozpool | |||
== Firefox Core == | |||
[cdiehl] Testing out Fuzz-o-matic by Codenomicon | |||
== MarketPlace == | |||
== Web Apps == | |||
== Services == | |||
== Operation Security == | |||
Latest revision as of 03:24, 13 March 2013
- Time: (Weekly) Tuesday at 13:30 PM PDT / 16:30 PM EDT / 21:30 PM UTC.
- Place: Mozilla HQ, 3A-All Your Base (3rd Floor)
- Phone (US/Intl): 650 903 0800 x92 Conf: 95316#
- Phone (Toronto): 416 848 3114 x92 Conf: 95316#
- Phone (US): 800 707 2533 (pin 369) Conf: 95316#
Agenda
- Two week warning on quarter end
- Goals - Please keep status up to date - https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AmLct3lOMM6ZdEI4SlE0eGRWdkN5bXBpbV8wcjNzNUE
- Metrics
- https://security-review-statistics.vcap.mozillalabs.com/
- Review Security Radar Page - https://wiki.mozilla.org/Security/Radar < all quiet on the front, sir.
- [dchan] bounties
- Pwn2own - well done on response
- [gkw] had a write-up on the response at http://garykwong.wordpress.com/2013/03/08/protecting-mozilla-firefox-users-on-the-web/
- Thanks go out to the on-site team for providing timely updates for remote folks to keep up
- [gkw] had a write-up on the response at http://garykwong.wordpress.com/2013/03/08/protecting-mozilla-firefox-users-on-the-web/
- [psiinon] Zest demo (connection permitting...)
Upcoming Speaking Engagements
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )
Upcoming Speaking Engagements
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )
Planned Blog Posts
Security Review Status (curtisk)
- Completed in Q4 2012: 50 (55 so far this quarter)
https://security-review-statistics.vcap.mozillalabs.com/weekly
- without deadline is suddenly zero, either the query is broken or you all rock!
- we are having a record quarter for requests and completes
Operations Security Update (Joe Stevensen)
Project Updates
Please add your name to the update so we know who to follow up with
Firefox Desktop
Firefox Mobile
Firefox OS
- [gkw] Wrangling with our panda fuzz cluster via mozpool
Firefox Core
[cdiehl] Testing out Fuzz-o-matic by Codenomicon