frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•9mo ago

Comments

kemotep•9mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Our Modern Mistake

https://www.overcomingbias.com/p/our-modern-mistake
1•jger15•1m ago•0 comments

I Donut believe, third party validation [video]

https://www.youtube.com/watch?v=uiOma6v_EZY
1•Phenomenit•1m ago•0 comments

EVs Coming in 2026

https://www.wired.com/story/the-16-best-evs-coming-in-2026/
1•tromp•2m ago•1 comments

Show HN: Vending Mocha – A lightweight SSG blogging framework

https://vendingmocha.com/
1•kc10•2m ago•0 comments

_ Considered Harmful

https://campedersen.com/183x
1•ecto•3m ago•0 comments

13-hour AWS outage reportedly caused by Amazon's own AI tools

https://www.engadget.com/ai/13-hour-aws-outage-reportedly-caused-by-amazons-own-ai-tools-17093019...
1•rainhacker•3m ago•0 comments

Hallucinations, Zero Discoveries: Forcing an LLM to Invent Math

https://medium.com/@contact.n8n410/550-hallucinations-zero-discoveries-ab796d4257e4
2•solscan_dev•5m ago•0 comments

Better Cooking with Copper [audio]

https://open.spotify.com/episode/4fydZ7JWCAN8UOJzyd6j7e
1•mooreds•6m ago•0 comments

Show HN: Semantic API – Find Any API with Natural Language (LangChain, MCP, CLI)

https://semanticapi.dev
2•IcarusAgent•6m ago•2 comments

Git renames are not renames

https://lornajane.net/posts/2026/git-renames-are-not-renames
1•mooreds•7m ago•0 comments

zclaw: 888 KB Assistant on ESP32

https://zclaw.dev/
1•tosh•7m ago•0 comments

People Loved the Dot-Com Boom. The A.I. Boom, Not So Much

https://www.nytimes.com/2026/02/21/technology/ai-boom-backlash.html
1•zerosizedweasle•7m ago•0 comments

The Strange Case of South American Chickens (2023)

https://www.randyschickenblog.com/home/2019/10/27/chickens-from-outer-space-the-strange-case-of-s...
1•weare138•7m ago•0 comments

The Disintermediation of Databases

https://redmonk.com/rstephens/2026/02/19/database-disintermediation/
1•mooreds•9m ago•0 comments

SF Bike Coalition – Promoting the Bicycle for Everyday Transportation

https://sfbike.org/
1•Austin_Conlon•9m ago•0 comments

Show HN: TeamContext – Git-native shared context for vibe coding teams

https://github.com/hzhou9/TeamContext
2•hzhou9•11m ago•0 comments

Ukraine Paves the Way for Pirate Site Blocking, Despite Ongoing War

https://torrentfreak.com/ukraine-paves-the-way-for-pirate-site-blocking-despite-ongoing-war/
2•gslin•12m ago•0 comments

Show HN: Raypher–eBPF-based runtime security and hardware identity for AI agents

https://github.com/kidigapeet/Raypher-core
2•Kidiga•12m ago•0 comments

Pelorus Jack

https://en.wikipedia.org/wiki/Pelorus_Jack
2•doener•13m ago•0 comments

Show HN: Wiredigg – Real-Time Network Analysis with ML and Ollama Support

1•justvugg•13m ago•0 comments

Execution Containment for Tool-Using AI Agents

1•SpaceCypher•15m ago•0 comments

BetaZero: A free diffusion climb generator for system boards

https://betazero.live
1•EvanMcCormick•18m ago•1 comments

Scientists camouflage heart rate from invasive radar-based surveillance

https://techxplore.com/news/2026-02-scientists-camouflage-heart-invasive-radar.html
2•PaulHoule•18m ago•0 comments

LA.'s mansion tax chokes new construction as permits plunge 40%

https://www.msn.com/en-us/money/realestate/la-s-mansion-tax-chokes-new-construction-as-permits-pl...
2•lxm•20m ago•0 comments

Show HN: Hmem – Persistent hierarchical memory for AI coding agents (MCP)

2•Bumblebiber•20m ago•1 comments

OpenClaw's hidden OTel plugin shows where all your tokens go

https://signoz.io/blog/monitoring-openclaw-with-opentelemetry/
2•pranay01•21m ago•0 comments

Ask HN: What invariants matter most to prevent drift in AI-modified SaaS apps?

1•RobertSerber•21m ago•0 comments

OpenClaw-fueled ordering frenzy creates Apple Mac shortage

https://www.tomshardware.com/tech-industry/artificial-intelligence/openclaw-fueled-ordering-frenz...
2•pretext•21m ago•0 comments

Stardust: Stabilizing Earth's Temperature

https://www.stardustsolutions.com
1•doener•23m ago•0 comments

Permacomputing 101 [video]

https://www.youtube.com/watch?v=BNYxAdjl1f0
1•tosh•24m ago•0 comments