BanklessDAO InfoSec Meeting 55

BanklessDAO InfoSec Meeting 55

Created
May 3, 2023
Tags
Meeting Date
Attendees
Dysan, d0wnlore, bogdrakonov.eth, Droste.eth
Current InfoSec Discussion
  • Droste coordinating with D0wnlore and bog to make podcasts (first episode next couple of weeks, followup in july)
  • Making web3 education more visible
  • Proposal to admins on how to fix the discord gating process against gaming
  • Discord role audit and rumination proposal as Season 8 priority
  • Discord mod education.
  • to discuss rate limit for MadHatter with the rest of the MadHatter team
 
Stackthat.eth
  • To discuss with James Montgomery about governator discourse integration.
DAO Wide Discussion
Latest Sybil Attack
  • InfoSec to coordinate with the rest of the DAO on the next b-DIP to include statement about sybil resistance and conditions re: whitehat testing.
Weekly Review
 
    Work log
    • Partial Audits in progress, but we need a more thorough audit.
      • Role audits - completed
      • Channel audits - in-progress
      • Weekly Infosec
        • Moderator Role
          • If you don’t use it in X days, you will lose it.
        • Onboarding educational gate (opt in)
          • For the first half of the season, you can opt in for discord moderation.
          • After this this, we will have a cap on the maximum number of people in this group.
          • You will have to apply and potentially be on a waitlist.
          • If you don’t perform any moderation activities in 90 days, you will automatically be removed from the list.
        • What should the moderators have access to?
          • Ban/Kick
          • Channel Modification/Thread Modification
          • list of available commands
          • notion image
        • We ideally want channel/thread modifications to go through Ops
      • Wick documentation
      Action Items
      Adding Stackthat.eth to multisig instead of Montgomery
      to work on connecting a BigQuery DB to crawler
      to configure TerraForm for this
      to continue working on InfoSec bot
      to reach out to Ops to create a list discord members with administrator access.
      @Dysan report on last activity for L2 roles (monthly, maybe on aws)
      to work an article for Phishing campaign for next week.
      Bog Drakonov to monitor funding issue w/ GC
       
      Partnerships
       
      Bankless Consulting
      Marketing materials needs improvement.
       
      StackThat & Tony working w/ Bankless Card to work fix their hosting issues.
      BanklessDAO InfoSec Meeting 55

      BanklessDAO InfoSec Meeting 55

      Created
      May 3, 2023
      Tags
      Meeting Date
      Attendees
      Dysan, d0wnlore, bogdrakonov.eth, Droste.eth
      Current InfoSec Discussion
      • Droste coordinating with D0wnlore and bog to make podcasts (first episode next couple of weeks, followup in july)
      • Making web3 education more visible
      • Proposal to admins on how to fix the discord gating process against gaming
      • Discord role audit and rumination proposal as Season 8 priority
      • Discord mod education.
      • to discuss rate limit for MadHatter with the rest of the MadHatter team
       
      Stackthat.eth
      • To discuss with James Montgomery about governator discourse integration.
      DAO Wide Discussion
      Latest Sybil Attack
      • InfoSec to coordinate with the rest of the DAO on the next b-DIP to include statement about sybil resistance and conditions re: whitehat testing.
      Weekly Review
       
        Work log
        • Partial Audits in progress, but we need a more thorough audit.
          • Role audits - completed
          • Channel audits - in-progress
          • Weekly Infosec
            • Moderator Role
              • If you don’t use it in X days, you will lose it.
            • Onboarding educational gate (opt in)
              • For the first half of the season, you can opt in for discord moderation.
              • After this this, we will have a cap on the maximum number of people in this group.
              • You will have to apply and potentially be on a waitlist.
              • If you don’t perform any moderation activities in 90 days, you will automatically be removed from the list.
            • What should the moderators have access to?
              • Ban/Kick
              • Channel Modification/Thread Modification
              • list of available commands
              • notion image
            • We ideally want channel/thread modifications to go through Ops
          • Wick documentation
          Action Items
          Adding Stackthat.eth to multisig instead of Montgomery
          to work on connecting a BigQuery DB to crawler
          to configure TerraForm for this
          to continue working on InfoSec bot
          to reach out to Ops to create a list discord members with administrator access.
          @Dysan report on last activity for L2 roles (monthly, maybe on aws)
          to work an article for Phishing campaign for next week.
          Bog Drakonov to monitor funding issue w/ GC
           
          Partnerships
           
          Bankless Consulting
          Marketing materials needs improvement.
           
          StackThat & Tony working w/ Bankless Card to work fix their hosting issues.