Cloudflare/Security-Audit-Skill
Cloudflare's security audit skill repository provides tools for assessing and improving security measures. It is hosted on GitHub and includes code, documentation, and community support. (github.com)
Automattic’s board put CEO Matt Mullenweg on paid leave on September 9 and he was restored to the role about 33 hours later; three directors who voted to remove him have since left. During that interim window, CFO Mark Davies, who served as interim CEO, and Chief Legal Officer Andy Missan executed reciprocal severance agreements for each other effective September 10. The pacts promise a lump-sum payment of 12 months’ base salary, accelerated equity vesting, the right to exercise vested options, and a year of health coverage. After Mullenweg’s return he fired Davies and Missan, leaving Automattic potentially on the hook for about $8.15 million in combined accelerated equity and salary payments. Automattic replaced outside counsel with Susman Godfrey and is evaluating whether to pay or legally contest the deals; attempts to reach Davies and Missan were unsuccessful.
The agreements require signed releases and impose confidentiality, nonsolicitation and other post-employment restrictions, and define “cause” narrowly - limited to gross negligence causing material harm, knowing fraud, certain legal violations, material confidentiality/IP breaches, or felonies involving moral turpitude - with a 60‑day notice and 30‑day cure process and majority‑board determination. Davies’ contract also bars claiming “Good Reason” over removal from the interim CEO role so long as he remains CFO, a provision that appears tailored to his temporary promotion. Observers frame the events either as board protections amid a governance crisis (and the company’s WP Engine litigation and spoliation allegations) or as a maneuver to create a brief window of control; Automattic is now assessing legal options.
Summary generated by AI from the linked article. hn.today is not affiliated with Hacker News or Y Combinator.
Cloudflare's security audit skill repository provides tools for assessing and improving security measures. It is hosted on GitHub and includes code, documentation, and community support. (github.com)
Signing keys used to verify US driver's license barcodes can be recovered, which may undermine their security. The process of retrieving these cryptographic keys raises concerns about the integrity of license verification systems. (ryan.science)
An ex-Microsoft engineer explained the origin of the 'FCKGW' Windows XP product key, which became notorious among software pirates. The key was originally a placeholder or internal code before being widely used illegally by users. (pcgamer.com)
Pangram offers an AI detection tool that accurately identifies AI-generated text and images, trusted by universities and global brands. It uses natural language processing and pattern analysis to distinguish between human and AI content with over 99.9% accuracy, verified by third-party researchers. (pangram.com)
A cartel of tech CEOs is attempting to control AI development through safety measures and regulations, potentially hindering competition and innovation. Critics argue that such efforts could give established companies an unfair advantage while slowing progress on beneficial AI applications. (fractalsofchange.substack.com)
Flock cameras run outdated Android and Linux versions, leaving them vulnerable to numerous security flaws. Researchers found hard-coded credentials and unpatched vulnerabilities that could allow hackers to take control of the devices. (micahflee.com)
Today's best Hacker News stories, summarized and screenshotted, one email a day.