Drupal Security BOF at Drupalcon Los Angeles

We encourage users to post events happening in the community to the community events group on https://www.drupal.org.
greggles's picture

Hello,

There will be a birds-of-a-feather (BOF) gathering at Drupalcon Los Angeles on Tuesday, May 12th at lunchtime (11:45am-1:00pm) in room 410. There's no specific agenda, we'll talk about things that people in the room want to talk about. It should be fine to get lunch first and bring it to the room (if someone says no, surely it will be possible to engage in a little social engineering to convince them it's OK!).

It seems useful to talk about just about anything. Some things that I can imagine we might cover:

  • SA-CORE-2014-005 and PSA-2014-003
  • Any problems with our reporting process
  • Any problems with our processes for coordinating with maintainers
  • General "how could we make Drupal more secure" discussions
  • How to join the security team

The BOF is focused on making the Drupal project more secure, rather than tips or advice on specific code or specific sites. If you have questions about a specific module/code/site, please post them to https://groups.drupal.org/security :)

Comments

Present were basically

greggles's picture

Present were basically current security team members, some potential members going through our onboarding process, and 2 people not on the team.

I apologize for not having more specific details on the things we discussed.

We talked a bit about the proposed private information guidelines for the security team (those will be posted for public feedback in the next few weeks). They are still being reviewed inside the security team.

Sad that I missed this. :(

opdavies's picture

Sad that I missed this. :(