frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•12mo ago

Comments

kemotep•12mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Parental Controls

https://www.tumblr.com/luminousalicorn/814990078758830080/parental-controls
1•dado3212•41s ago•0 comments

The biggest insect ever was a "dragonfly"

https://eartharchives.org/index.html
1•anjel•59s ago•0 comments

Coding agents ignore their own budgets

https://twitter.com/RampLabs/status/2046624992956146158
1•gmays•1m ago•0 comments

Software engineering may no longer be a lifetime career

https://www.seangoedecke.com/software-engineering-may-no-longer-be-a-lifetime-career/
1•milkglass•7m ago•0 comments

After three months on Linux, I don't miss Windows at all

https://www.theverge.com/tech/918797/switched-to-linux-dont-miss-windows
3•Brajeshwar•8m ago•0 comments

The reporters at this news site are AI bots. OpenAI appears to be funding it

https://modelrepublic.substack.com/p/the-reporters-at-this-news-site-are
1•Teever•12m ago•0 comments

Liebherr delivers electric excavator to Bulgarian copper mine

https://electrek.co/2026/04/26/liebherr-delivers-330-ton-electric-excavator-to-bulgarian-copper-m...
2•y1n0•16m ago•0 comments

ChatGPT solves Erdos Problem 1176 in 80 minutes

https://chatgpt.com/share/69dd1c83-b164-8385-bf2e-8533e9baba9c
2•voisin•19m ago•0 comments

Blood vessels found in T. rex bones are rewriting dinosaur science

https://www.sciencedaily.com/releases/2026/04/260426012259.htm
4•y1n0•21m ago•0 comments

RTX 4090 sent for repair is a sophisticated fake with laser-etched VRAM and core

https://www.tomshardware.com/pc-components/gpus/rtx-4090-sent-for-repair-is-a-sophisticated-fake-...
1•y1n0•23m ago•0 comments

$292M Lost, Zero Bugs Found: Lessons from the RsETH Bridge Exploit

https://www.openzeppelin.com/news/lessons-from-kelpdao-hack
2•wslh•23m ago•0 comments

Google controls ~25% of global AI compute, with ~3.8M TPUs and 1.3M GPUs

https://www.ft.com/content/2429f0f0-b685-4747-b425-bf8001a2e94c
33•donsupreme•29m ago•8 comments

The Hottest Phone for Kids Right Now Is a $100 Landline

https://www.bloomberg.com/news/articles/2026-04-24/viral-tin-can-phone-brings-landline-nostalgia-...
6•Amorymeltzer•34m ago•1 comments

Claude Feature Request: Persona Profiles – switchable bundles

https://github.com/anthropics/claude-code/issues/53458
1•xpe•34m ago•0 comments

OGMA – persistent memory and dual-brain AI, newcomer seeks pro feedback

https://github.com/kidshadow79/Ogma
1•Kidshadow79•35m ago•0 comments

Inside Job – Supermicro

https://www.thewirechina.com/2026/04/26/inside-job/
1•latchkey•39m ago•0 comments

Hello, World (2006)

https://berndhopfengaertner.net/projects/hello-world/index.html
1•roggenbuck•46m ago•0 comments

Oil jumps, stock futures slip as US-Iran talks stall

https://www.reuters.com/business/energy/global-markets-global-markets-2026-04-26/
2•onemoresoop•46m ago•0 comments

Show HN: Run coding agents in a sandbox locally

https://github.com/CelestoAI/SmolVM
2•theaniketmaurya•46m ago•1 comments

Dash – A self-learning data agent that grounds answers in 6 layers of context

https://github.com/agno-agi/dash
3•ashpreet-bedi•51m ago•0 comments

Per-Image BT.601 Decorrelation Gap Measured Against KLT Across the Kodak Suite

https://github.com/PearsonZero/kodak-pcd0992-bt601-decorrelation-gap
1•PearsonZero•56m ago•0 comments

Under Trump, Green Card Seekers Face New Scrutiny for Views on Israel

https://www.nytimes.com/2026/04/25/us/politics/trump-green-cards-scrutiny.html
3•vrganj•1h ago•0 comments

Show HN: CrabPDF – privacy-first PDF editor that edits real text

https://crabpdf.com/
1•rabbithols•1h ago•0 comments

Zero-Cost Transparent Semiotic Awareness for Frozen Language Models SRT-Adapter

https://sublius.substack.com/p/srt-adapter-transparent-semiotic
1•spacebacon•1h ago•0 comments

Former MIT president says the US is losing the innovation race to China

https://www.npr.org/2026/04/25/nx-s1-5772703/former-mit-president-says-the-us-is-losing-the-innov...
7•Brajeshwar•1h ago•0 comments

Voice Modems

https://computer.rip/2026-04-26-voice-modems.html
3•K7PJP•1h ago•0 comments

Human AI Collaboration in LIterature

https://indignified.com/history-of-human-ai-collaboration-in-literature/
1•ZguideZ•1h ago•0 comments

Generative design of novel bacteriophages with genome language models [pdf]

https://www.biorxiv.org/content/10.1101/2025.09.12.675911v1.full.pdf
2•thunderbong•1h ago•0 comments

Built a safety-first options automation tool for covered calls

1•jansonlau•1h ago•0 comments

Why cars charge 5x faster in China when the research is shared?

https://cyrusradfar.com/thoughts/why-cars-charge-5x-faster-in-china/
7•cyrusradfar•1h ago•1 comments