{"id":1702,"date":"2014-05-15T06:14:38","date_gmt":"2014-05-15T13:14:38","guid":{"rendered":"http:\/\/blog.mozilla.org\/security\/?p=1702"},"modified":"2014-05-15T06:14:38","modified_gmt":"2014-05-15T13:14:38","slug":"introducing-mozilla-winter-of-security-2014","status":"publish","type":"post","link":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/","title":{"rendered":"Introducing Mozilla Winter of Security 2014"},"content":{"rendered":"<p>At Mozilla, we have a loosely formed group called <a href=\"https:\/\/wiki.mozilla.org\/Security\/Automation\"><i>Security Automation<\/i><\/a>, where people who build security tools can meet, exchange ideas, and show their work. We build projects around applications and operations security. Some of the things we\u2019ve worked on include <a href=\"https:\/\/code.google.com\/p\/zaproxy\/\">ZAP<\/a>, <a href=\"https:\/\/developer.mozilla.org\/en-US\/docs\/zest\">Zest<\/a>, <a href=\"https:\/\/developer.mozilla.org\/en-US\/docs\/Plug-n-Hack\">Plug\u2019n\u2019Hack<\/a>, <a href=\"https:\/\/wiki.mozilla.org\/Security\/Projects\/Minion\">Minion<\/a>, <a href=\"https:\/\/github.com\/mozilla\/mig\/\">MIG<\/a>, <a href=\"https:\/\/github.com\/jeffbryner\/MozDef\">Mozdef<\/a>, <a href=\"https:\/\/github.com\/mozilla\/scanjs\">ScanJS<\/a> or <a href=\"https:\/\/github.com\/jvehent\/cipherscan\">Cipherscan<\/a>. And, as you would expect from Mozilla, our work is public for all to see, use, and contribute to.<\/p>\n<p>In the past, students requested to work on some of these projects. One trend we\u2019ve seen is that many students are looking for real world projects to sink their teeth into. Something worth their attention, and something people will actually use.<\/p>\n<p>In response we decided to create the <a href=\"https:\/\/wiki.mozilla.org\/Security\/Automation\/WinterOfSecurity2014\">Mozilla Winter of Security<\/a>, or MWoS. MWoS is composed of 11 projects from the Security Automation effort, that directly map the needs at Mozilla. They are designed to solve real world problems in an innovative, and open way. We also made them autonomous, such that students don\u2019t need to learn the inner-working of Mozilla in order to work on these projects.<\/p>\n<p>Winter of Security, so called because we want students to get involved <img decoding=\"async\" loading=\"lazy\" style=\"border: 0pt none; float: right; padding-left: 0px; padding-bottom: 0px;\" src=\"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430-252x167.jpg\" alt=\"800px-Redpandas4430\" width=\"252\" height=\"167\" \/>roughly between September and April. Each project has an advisor from Mozilla who will be dedicating a few hours every week to the students. We also ask that a professor oversees the team from a university point of view, and ensures the projects align with their curriculum.<br \/>\nAnyone can apply, under the condition that the university will give class credits and a grade for the work done in MWoS.<\/p>\n<p>MWoS is a win for all. Students get a chance to work on real-world security projects, under the guidance of an experienced security engineer. Professors get to implement cutting-edge security projects into their programs. Mozilla and the community get better security tools, which that we would not have the resources to build or improve ourselves.<\/p>\n<p>If you are a professor, tell your students about the <a href=\"https:\/\/wiki.mozilla.org\/Security\/Automation\/WinterOfSecurity2014\">Mozilla Winter of Security<\/a> today. If you are a student, start assembling your team, and fill up the <a href=\"https:\/\/docs.google.com\/a\/mozilla.com\/forms\/d\/18T4mpv_cbV3_5Y0Ix4xM5XDKuw-RfuKuq84RDsJT_5c\/viewform\">application form<\/a> before July 15th, 2014. We limited this round to 11 projects, with one team per project, and will be selecting the best applications in August.<\/p>\n<p>If you have questions, and want to discuss MWoS, you can reach us on <a href=\"https:\/\/wiki.mozilla.org\/IRC\">IRC<\/a> in the #security channel, or via the <a href=\"https:\/\/wiki.mozilla.org\/Talk:Security\/Automation\/WinterOfSecurity2014\">discussion<\/a> page on the wiki. If you want details about a specific project, feel free to contact the project advisor directly on IRC.<\/p>\n<p>MWoS is part of the wider Mozilla <a href=\"https:\/\/wiki.mozilla.org\/Security\/Mentorship\">Security Mentorship<\/a> program.<\/p>\n<p><i>Red Panda photograph from <\/i><a href=\"http:\/\/commons.wikimedia.org\/wiki\/File:Redpandas4430.JPG\"><i>WikiMedia Commons<\/i><\/a><i> under the<\/i><a href=\"http:\/\/en.wikipedia.org\/wiki\/en:Creative_Commons\"><i>Creative Commons<\/i><\/a><a href=\"http:\/\/creativecommons.org\/licenses\/by-sa\/3.0\/deed.en\"><i>Attribution-Share Alike 3.0 Unported<\/i><\/a><i> license.<\/i><\/p>\n","protected":false},"excerpt":{"rendered":"<p>At Mozilla, we have a loosely formed group called Security Automation, where people who build security tools can meet, exchange ideas, and show their work. We build projects around applications &hellip; <a class=\"go\" href=\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/\">Read more<\/a><\/p>\n","protected":false},"author":315,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[47,69,610],"tags":[45501],"coauthors":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v22.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Introducing Mozilla Winter of Security 2014 - Mozilla Security Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Curtis Koenig\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/\",\"url\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/\",\"name\":\"Introducing Mozilla Winter of Security 2014 - Mozilla Security Blog\",\"isPartOf\":{\"@id\":\"https:\/\/blog.mozilla.org\/security\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430-252x167.jpg\",\"datePublished\":\"2014-05-15T13:14:38+00:00\",\"dateModified\":\"2014-05-15T13:14:38+00:00\",\"author\":{\"@id\":\"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/792ed382fa382861f5deff578b21429c\"},\"breadcrumb\":{\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage\",\"url\":\"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430.jpg\",\"contentUrl\":\"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430.jpg\",\"width\":800,\"height\":533},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/blog.mozilla.org\/security\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Introducing Mozilla Winter of Security 2014\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/#website\",\"url\":\"https:\/\/blog.mozilla.org\/security\/\",\"name\":\"Mozilla Security Blog\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/blog.mozilla.org\/security\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/792ed382fa382861f5deff578b21429c\",\"name\":\"Curtis Koenig\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/image\/f076fe8c668c394e8741f7be518c066a\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/309fb1423f538a1443ceb8c01e33f651?s=96&d=identicon&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/309fb1423f538a1443ceb8c01e33f651?s=96&d=identicon&r=g\",\"caption\":\"Curtis Koenig\"},\"description\":\"Sr. Security Program Manager\",\"sameAs\":[\"https:\/\/spartiates.wordpress.com\/\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Introducing Mozilla Winter of Security 2014 - Mozilla Security Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/","twitter_misc":{"Written by":"Curtis Koenig","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/","url":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/","name":"Introducing Mozilla Winter of Security 2014 - Mozilla Security Blog","isPartOf":{"@id":"https:\/\/blog.mozilla.org\/security\/#website"},"primaryImageOfPage":{"@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage"},"image":{"@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage"},"thumbnailUrl":"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430-252x167.jpg","datePublished":"2014-05-15T13:14:38+00:00","dateModified":"2014-05-15T13:14:38+00:00","author":{"@id":"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/792ed382fa382861f5deff578b21429c"},"breadcrumb":{"@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#primaryimage","url":"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430.jpg","contentUrl":"https:\/\/blog.mozilla.org\/security\/files\/2014\/05\/800px-Redpandas4430.jpg","width":800,"height":533},{"@type":"BreadcrumbList","@id":"https:\/\/blog.mozilla.org\/security\/2014\/05\/15\/introducing-mozilla-winter-of-security-2014\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/blog.mozilla.org\/security\/"},{"@type":"ListItem","position":2,"name":"Introducing Mozilla Winter of Security 2014"}]},{"@type":"WebSite","@id":"https:\/\/blog.mozilla.org\/security\/#website","url":"https:\/\/blog.mozilla.org\/security\/","name":"Mozilla Security Blog","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/blog.mozilla.org\/security\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/792ed382fa382861f5deff578b21429c","name":"Curtis Koenig","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.mozilla.org\/security\/#\/schema\/person\/image\/f076fe8c668c394e8741f7be518c066a","url":"https:\/\/secure.gravatar.com\/avatar\/309fb1423f538a1443ceb8c01e33f651?s=96&d=identicon&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/309fb1423f538a1443ceb8c01e33f651?s=96&d=identicon&r=g","caption":"Curtis Koenig"},"description":"Sr. Security Program Manager","sameAs":["https:\/\/spartiates.wordpress.com\/"]}]}},"_links":{"self":[{"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/posts\/1702"}],"collection":[{"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/users\/315"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/comments?post=1702"}],"version-history":[{"count":0,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/posts\/1702\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/media?parent=1702"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/categories?post=1702"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/tags?post=1702"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/blog.mozilla.org\/security\/wp-json\/wp\/v2\/coauthors?post=1702"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}