frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Is datacentre sovereignty that important?

https://martinalderson.com/posts/is-datacentre-sovereignty-really-that-important/
1•martinald•1m ago•0 comments

Lippmann Plate

https://en.wikipedia.org/wiki/Lippmann_plate
1•yladiz•2m ago•0 comments

'Happiness is not just about GDP': ambitious plan or utopia?

https://www.theguardian.com/environment/2026/jun/04/happiness-is-not-just-about-gdp-ambitious-pla...
1•f_allwein•4m ago•1 comments

The Costco Theory of the Internet

https://www.joanwestenberg.com/the-costco-theory-of-the-internet/
1•mhb•4m ago•0 comments

Nvidia Nemotron 3 Ultra 550B-A55B BF16

https://huggingface.co/nvidia/NVIDIA-Nemotron-3-Ultra-550B-A55B-BF16
1•theanonymousone•6m ago•0 comments

Benin's creators revive national history through video games [video]

https://www.france24.com/en/benin-s-creators-revive-national-history-through-video-games
1•mooreds•7m ago•0 comments

Show HN: I built an AI tool that turns Search Console data into SEO wins

https://seobeatsai.com
1•karakhanyans•9m ago•0 comments

The G7 on Open Source vs. Open Weights

https://redmonk.com/sogrady/2026/06/02/g7-open-weights/
1•mooreds•10m ago•0 comments

Do Containers Still Contain?

https://raesene.github.io/blog/2026/06/03/do-containers-still-contain/
1•hasheddan•10m ago•0 comments

Oil industry warning Trump admin drained inventories threaten to spike gas price

https://www.politico.com/news/2026/06/04/oil-price-spike-white-house-hormuz-00949435
2•mooreds•11m ago•0 comments

Simulation Theology: A Testable Framework for AI Alignment

https://arxiv.org/abs/2602.16987
1•allangrant•11m ago•0 comments

Crown 0.63 – Our Biggest Feature Release Yet

https://www.crownengine.org/news/crown-0-63/
1•dbartolini•13m ago•0 comments

Castles of Burgundy Score Calculator

https://toddcooke.github.io/castles-of-burgundy-scorer/
1•toddcooke•13m ago•0 comments

BillScan – REST API for Parsing Swiss QR-Bill PDFs

https://billscan.ch
1•bper•14m ago•0 comments

Posteo's Privacy Architecture

https://posteo.de/en/site/encryption
1•vishnukvmd•16m ago•0 comments

I forked pgweb after my Vim mode PR sat unmerged for 2 years

https://github.com/mohamedelhefni/pgport
1•hefni101•17m ago•0 comments

Show HN: I built Karve – a native Windows alternatve to Postman

https://karve.dev/
2•xakpc•18m ago•0 comments

AMD Submits Its Long-Awaited HDMI 2.1 FRL Support for Linux 7.2 Amdgpu

https://www.phoronix.com/news/HDMI-FRL-2.1-Submitted-DRM
3•doener•21m ago•0 comments

Half of Belgium sees the US as a bigger adversary than China

https://www.euronews.com/2026/06/02/half-of-belgium-sees-us-as-a-rival-survey-reveals
2•vrganj•21m ago•0 comments

Vivaldi (Chrome) ruining website colors

https://yeechie.nl/vivaldi-chrome-ruining-website-colors
2•lylo•22m ago•0 comments

Costco and UPS pledge to pass tariff refunds on to customers

https://www.msn.com/en-us/news/other/costco-and-ups-pledge-to-pass-tariff-refunds-on-to-customers...
1•petethomas•24m ago•0 comments

The design principles of the Elixir type system

https://arxiv.org/abs/2306.06391
3•fanf2•25m ago•0 comments

Erin Brockovich is taking on AI

https://www.cbc.ca/news/world/erin-brockovich-ai-data-centres-website-9.7221109
2•geox•27m ago•0 comments

The Map Hidden in America's Birth Certificates

https://nobodynamed.com/blog/your-states-signature-name/
2•michaelcolenso•28m ago•1 comments

French-Iranian author Marjane Satrapi, author of 'Persepolis', dies at 56

https://www.france24.com/en/culture/20260604-french-iranian-author-marjane-satrapi-author-of-pers...
5•fidotron•28m ago•0 comments

Show HN: Meditate-CLI – breathe with your terminal

https://github.com/walktalkmeditate/meditate-cli
1•momentmaker•29m ago•0 comments

Zorv-Self-hosted autonomous AI that fixes CVEs

https://zorv.openyf.dev
1•youelfedr•29m ago•0 comments

Network Scanner Script NWSS 3.2.0

https://github.com/ryanbr/network-scanner
1•mp3geek•29m ago•1 comments

Knox – Govern AI agent tool calls before they execute

https://github.com/qoris-ai/knox
1•Qoris_AI2026•31m ago•0 comments

When su replaced login for becoming another Unix login

https://utcc.utoronto.ca/~cks/space/blog/unix/SuAsLoginReplacement
7•ankitg12•31m ago•0 comments