frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•11mo ago

Comments

kemotep•11mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Nuclear Batteries Could Change Everything, and China Is Ahead

https://www.bgr.com/2132390/china-nuclear-batteries/
1•thunderbong•2m ago•0 comments

Inside the Claude Code source

https://gist.github.com/Haseeb-Qureshi/d0dc36844c19d26303ce09b42e7188c1
1•gaws•3m ago•0 comments

The Algorithm: Idiom of Modern Science (2006)

https://www.cs.princeton.edu/~chazelle/pubs/algorithm.html
1•kerim-ca•4m ago•0 comments

OnlyOffice just pulled its 8-year partnership with Nextcloud

https://www.xda-developers.com/onlyoffice-pulled-its-8-year-partnership-with-nextcloud-licensing-...
2•TechTechTech•4m ago•0 comments

YC-backed AI startup can now prescribe psychiatric drugs, first in world

https://nypost.com/2026/03/27/business/artificial-intelligence-can-now-prescribe-mental-health-dr...
1•sizzle•5m ago•0 comments

Unbiased Guide to the Smartest AIs

https://helloai.com/
1•HelloAi•6m ago•0 comments

Show HN: Mycellm – BitTorrent for LLMs, pool GPUs into federated networks

https://mycellm.ai
1•mijkal•7m ago•0 comments

Sycophantic Chatbots Cause Delusional Spiraling, Even in Ideal Bayesians

https://arxiv.org/abs/2602.19141
1•Anon84•11m ago•0 comments

State of DLES 2026

https://dles.gg/blog/state-of-dles-2026
1•trizoza•12m ago•0 comments

Show HN: Local RAG on 25 Years of Teletext News

https://github.com/r-follador/TeletextSignals/
2•folli•13m ago•0 comments

Rick Dangerous

https://www.simonphipps.com/games/rickdangerous/
2•tie-in•16m ago•1 comments

Show HN: Happy Passover – Passover Game

https://ben.cates.fm/happy-passover/
1•benja123•16m ago•0 comments

You're still signing data structures the wrong way

https://blog.foks.pub/posts/domain-separation-in-idl/
9•malgorithms•16m ago•1 comments

Dario Amodei – Machines of Loving Grace

https://darioamodei.com/essay/machines-of-loving-grace
2•Anon84•19m ago•0 comments

I built the best PGP toolset on Chrome

https://chromewebstore.google.com/detail/pgp-tools-encrypt-decrypt/pgpcdgggohpbombhkffjoiiafdlfcpgp
1•acorn221•21m ago•1 comments

Finetuning Activates Verbatim Recall of Copyrighted Books in LLMs

https://arxiv.org/abs/2603.20957
1•wesammikhail•21m ago•0 comments

Show HN: Roadie – An open-source KVM that lets AI control your phone

https://github.com/VibiumDev/roadie
2•hugs•21m ago•0 comments

Assaulted, robbed: Refugees abused on Bosnia-Croatia border

https://www.aljazeera.com/features/2026/4/1/on-bosnian-croatian-border-migrants-face-untold
2•tacheiordache•22m ago•0 comments

Jonathan, the oldest living land animal, has passed away

https://twitter.com/joehollinsvet/status/2039377310839624069
4•telotortium•23m ago•2 comments

Fujitsu One Compression (LLM Quantization)

https://FujitsuResearch.github.io/OneCompression/
2•measurablefunc•23m ago•0 comments

Real Python: Quiz: Hands-On Python 3 Concurrency with the Asyncio Module

https://realpython.com/quizzes/python-3-concurrency-asyncio-module/
1•PaulHoule•24m ago•0 comments

What Retail AI and Compute Infrastructure Looks Like in 2026

https://www.servethehome.com/what-retail-ai-and-compute-infrastructure-actually-looks-like-in-2026/
1•speckx•24m ago•0 comments

Show HN: 4D business analysis with parallel AI agents (AofA-inspired)

https://wasaconf.org/
1•marctossip•25m ago•0 comments

Artemis II astronauts arrive at launch pad 39B in an astrovan

https://techfixated.com/artemis-ii-astronauts-arrive-at-launch-pad-39b-in-an-astrovan/
3•benlarweh•25m ago•0 comments

Lilly's weight-loss pill wins US approval, sets up next battle with Novo Nordisk

https://www.reuters.com/business/healthcare-pharmaceuticals/lillys-weight-loss-pill-wins-us-appro...
2•onemoresoop•26m ago•0 comments

Why did Harvey choose a top-down enterprise GTM while Cursor went bottom-up?

2•iiTsEddy•28m ago•2 comments

The WebAIM Million report 2026

https://webaim.org/projects/million/
1•pier25•28m ago•0 comments

Product-led growth best practices and guidance

https://www.revturbine.com/resources
1•millereffect•28m ago•0 comments

Paperweight, an April Fool's Prank from 40 years ago

https://www.goto10retro.com/p/paperweight-an-april-fools-prank
2•rbanffy•29m ago•0 comments

ReactOS to reverse engineer Linux Kernel A.I. Pull Requests, helping Linux-Libre

2•pqlfvn•30m ago•0 comments