frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

BPF support in GCC 16 and beyond

https://lwn.net/Articles/1071973/
1•signa11•3m ago•0 comments

Claude finds critical vulnerability in privacy blockchain Zcash

https://twitter.com/zooko/status/2062644925590900980
1•hbbio•3m ago•0 comments

RAG Without Persona Modeling Fails Patient Clinical Relevance

https://www.riddhimohan.com/blog/hppie-rag-without-persona-modeling-fails-patient-clinical-relevance
1•riddhimohan•6m ago•0 comments

What happens if Japan takes in zero immigrants?

https://www.konichivalue.com/p/what-happens-if-japan-takes-in-zero
1•Konichivalue•9m ago•0 comments

Dirk and Linus discuss AI and kernel development

https://lwn.net/Articles/1073761/
1•signa11•11m ago•0 comments

Mathematicians warn of AI threats to profession as industry encroaches

https://arstechnica.com/tech-policy/2026/06/mathematicians-warn-of-ai-threats-to-profession-as-in...
1•SegfaultSeagull•13m ago•1 comments

AI should earn its keep: Introducing the AI Productivity Guarantee

https://cognition.ai/blog/ai-guarantee
2•nadis•14m ago•1 comments

Why I'm Joining the Board of Dreamdata

https://www.kellblog.com/why-im-joining-the-board-of-dreamdata/
1•doppp•19m ago•0 comments

SpaceX IPO available to Fidelity customers with as little as $2k

https://www.fidelity.com/learning-center/trading-investing/spacex-ipo-explained
1•dnw•20m ago•2 comments

The Weather Machine (2008)

https://events.foresight.org/the-weather-machine/
1•zetalyrae•20m ago•0 comments

Agentic systems for what comes next

https://kenn.io/
1•pbd•25m ago•0 comments

Validity of the EJamar Game Controller for Tracking Hand Rehabilitation

https://www.mdpi.com/2673-4117/7/5/197
1•PaulHoule•31m ago•0 comments

Boeing and Air India Escaped Scrutiny After the AI171 Crash

https://caravanmagazine.in/crime/air-india-crash-aaib-boeing-pilot
1•ms7892•31m ago•0 comments

AI assistant shouldn't have your passwords

https://bitwarden.com/blog/how-bitwarden-helps-secure-agentic-ai-access-to-your-credentials/
1•adm4•36m ago•0 comments

Basecamp CLI and Agent Skill: Agent first, agent native

https://basecamp.com/agents
1•doppp•36m ago•0 comments

Proposal would block solar storms with orbital 'airbag'

https://www.science.org/content/article/radical-proposal-would-block-solar-storms-orbital-airbag
1•gmays•41m ago•0 comments

Anthropic calls for global pause in AI development before humans lose control

https://siliconangle.com/2026/06/04/anthropic-calls-global-pause-ai-development-humans-lose-control/
3•patrickdavey•42m ago•1 comments

"News Man Bad": A Personnel Memo from Animal, Your Editor-in-Chief

https://www.mcsweeneys.net/articles/news-man-bad-a-personnel-memo-from-animal-your-editor-in-chief
1•Geekette•42m ago•0 comments

Scala: An Experiment That Changed Programming – Martin Odersky – The Marco Show

https://www.youtube.com/watch?v=Xn_YpUtXWT4
2•birdculture•43m ago•0 comments

My competitors have flawed products but I can't get traction

2•saveitincork•49m ago•0 comments

LLM AI Chatbots are letting me down every single day

https://umrashrf.github.io/llm-ai-chatbots-are-letting-me-down-every-single-day/
2•postbase•52m ago•0 comments

Bumblebees spontaneously solve problems – Science News [video]

https://www.youtube.com/watch?v=B77Hb2SKJZo
2•hheikinh•59m ago•0 comments

Cloudflare: bots have passed human traffic online, a year faster than expected

https://www.tomshardware.com/tech-industry/artificial-intelligence/bots-have-now-passed-human-tra...
3•spenvo•59m ago•1 comments

Bumblebees show advanced problem-solving skills in new experiment

https://www.cnn.com/2026/06/04/science/bumble-bees-insight-problem-solving
4•hheikinh•1h ago•0 comments

The Kyle Kingsbury Podcast Podcast – Episode 1 – Alex Dripchak

https://aphyr.com/posts/422-the-kyle-kingsbury-podcast-podcast-episode-1-alex-dripchak
3•yurivish•1h ago•0 comments

'Aren't the Organs a Silver Lining?'

https://longreads.com/2026/05/19/fentanyl-opioids-organ-donation-arizona-oneill/
2•gmays•1h ago•0 comments

Is LinkedIn Entering Its Post-Cringe Era?

https://www.nytimes.com/2026/06/04/business/linkedin-social-media-influencers.html
3•1vuio0pswjnm7•1h ago•1 comments

Show HN: Laravel Octane Benchmark (Swoole, RoadRunner, FrankenPHP)

https://terrylinooo.github.io/laravel-octane-benchmark/
2•terrylinooo•1h ago•0 comments

Unicode Fonts and Tools for X11

https://www.cl.cam.ac.uk/~mgk25/ucs-fonts.html
3•kristianp•1h ago•0 comments

Jo – Secure Programming for the AI Era

https://jo-lang.org/blog/2026-06-04-introducing-jo.html
3•rguiscard•1h ago•0 comments