Security/Meetings/SecurityAssurance/2013-03-12
From MozillaWiki
< Security | Meetings | SecurityAssurance
- Time: (Weekly) Tuesday at 13:30 PM PDT / 16:30 PM EDT / 21:30 PM UTC.
- Place: Mozilla HQ, 3A-All Your Base (3rd Floor)
- Phone (US/Intl): 650 903 0800 x92 Conf: 95316#
- Phone (Toronto): 416 848 3114 x92 Conf: 95316#
- Phone (US): 800 707 2533 (pin 369) Conf: 95316#
Agenda
- Two week warning on quarter end
- Goals - Please keep status up to date - https://docs.google.com/a/mozilla.com/spreadsheet/ccc?key=0AmLct3lOMM6ZdEI4SlE0eGRWdkN5bXBpbV8wcjNzNUE
- Metrics
- https://security-review-statistics.vcap.mozillalabs.com/
- Review Security Radar Page - https://wiki.mozilla.org/Security/Radar < all quiet on the front, sir.
- [dchan] bounties
- Pwn2own - well done on response
- [gkw] had a write-up on the response at http://garykwong.wordpress.com/2013/03/08/protecting-mozilla-firefox-users-on-the-web/
- Thanks go out to the on-site team for providing timely updates for remote folks to keep up
- [gkw] had a write-up on the response at http://garykwong.wordpress.com/2013/03/08/protecting-mozilla-firefox-users-on-the-web/
- [psiinon] Zest demo (connection permitting...)
Upcoming Speaking Engagements
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )
Upcoming Speaking Engagements
(List it at these two locations too: https://developer.mozilla.org/en-US/events & https://wiki.mozilla.org/Security/Talks )
Planned Blog Posts
Security Review Status (curtisk)
- Completed in Q4 2012: 50 (55 so far this quarter)
https://security-review-statistics.vcap.mozillalabs.com/weekly
- without deadline is suddenly zero, either the query is broken or you all rock!
- we are having a record quarter for requests and completes
Operations Security Update (Joe Stevensen)
Project Updates
Please add your name to the update so we know who to follow up with
Firefox Desktop
Firefox Mobile
Firefox OS
- [gkw] Wrangling with our panda fuzz cluster via mozpool
Firefox Core
[cdiehl] Testing out Fuzz-o-matic by Codenomicon