frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•8mo ago

Comments

kemotep•8mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Google confirms 'high-friction' sideloading flow is coming to Android

https://www.androidauthority.com/google-sideloading-android-high-friction-process-3633468/
1•_____k•5m ago•0 comments

Embabled: Agentic Flow from the Creator of Spring

https://github.com/embabel
1•huffer•6m ago•0 comments

You did not vote for Him, but you helped Him win

https://eurodivergent.bearblog.dev/you-didnt-vote-for-him-but-you-helped-him-win/
2•Dansvidania•7m ago•0 comments

Vue Bits is a large collection of animated VueJS UI components

https://vue-bits.dev
1•pratik227•13m ago•1 comments

Show HN: Trackkit – Lightweight email tracking API with signed webhooks

https://trackkit.io
1•Megas_UA•16m ago•1 comments

NYSE to Launch 24/7 Trading Platform for Blockchain-Based Securities

https://www.wsj.com/finance/currencies/nyse-to-launch-24-7-trading-platform-for-blockchain-based-...
1•JumpCrisscross•16m ago•0 comments

It's better not to continue everything

https://www.leadinginproduct.com/p/continue-by-default
1•benkan•17m ago•0 comments

Managing LLM risks: A framework for academic publishing

https://thoughtworks.medium.com/managing-llm-risks-a-framework-for-academic-publishing-eb2dd6be5615
1•saikatsg•18m ago•0 comments

Selfh.st – Self-Hosted Apps Directory

https://selfh.st/apps/
1•kristianpaul•23m ago•0 comments

What's Worrying Jonathan Haidt Now?

https://calnewport.com/whats-worrying-jonathan-haidt-now/
1•bifftastic•27m ago•0 comments

I decided to make a worse UUID for the pettiest of reasons

https://gitpush--force.com/commits/2026/01/meet-smolid/
1•fla•28m ago•0 comments

Anti-Coercion

https://trends.google.com/trends/explore?date=today%203-m&q=anti-coercion&hl=en
3•madspindel•34m ago•0 comments

Postmortem on TreeTracker Join: Simple, Optimal, Fast

https://zhu45.org/posts/2026/Jan/03/postmortem-on-treetracker-join-simple-optimal-fast/
2•remywang•36m ago•0 comments

Algorithmica

https://en.algorithmica.org/
3•Nales•39m ago•1 comments

Trump threatens tariffs on French wines to get Macron to join Board of Peace

https://www.reuters.com/world/europe/trump-threatens-tariffs-french-wines-get-macron-join-board-p...
8•kamaraju•40m ago•2 comments

AI Californication

4•shoman3003•43m ago•0 comments

Is This the Future of Software Development? (2026 Predictions)

https://theexceptioncatcher.com/2026/01/predictions-for-development-practices-in-2026/
2•monksy•43m ago•0 comments

Apple Intelligence Siri is over a year late, but that might be a good thing

https://9to5mac.com/2026/01/18/apple-intelligence-siri-delay-comes-with-one-benefit/
2•fork-bomber•48m ago•0 comments

Scientists spends 20 years studying Japanese tits

https://www.youtube.com/watch?v=doj_wt9ER_Q
3•gsf_emergency_6•50m ago•0 comments

KAOS – The Kubernetes Agent Orchestration System

https://github.com/axsaucedo/kaos
2•axsaucedo•51m ago•1 comments

Open source's new mission: Rebuild the EU tech stack

https://www.theregister.com/2026/01/19/open_sources_new_mission_rebuild/
5•rippeltippel•55m ago•0 comments

Ribs (Recordings)

https://en.wikipedia.org/wiki/Ribs_(recordings)
2•thunderbong•56m ago•0 comments

The Rebirth of Pennsylvania's Infamous Burning Town

https://www.atlasobscura.com/articles/centralia-pennsylvania-rebirth
3•pbshgthm•59m ago•0 comments

Substack of Keir Starmer

https://substack.com/@keirstarmer
2•manlymuppet•1h ago•0 comments

The Longest-Running Lab Experiment Is Almost 100 Years Old

https://www.sciencealert.com/the-worlds-longest-running-lab-experiment-is-almost-100-years-old
2•jnord•1h ago•2 comments

Some C habits I employ for the modern day

https://www.unix.dog/~yosh/blog/c-habits-for-me.html
1•signa11•1h ago•0 comments

Renfrew Christie Dies at 76; Sabotaged Racist Regime's Nuclear Program

https://www.nytimes.com/2026/01/14/world/africa/renfrew-christie-dead.html
2•bryanrasmussen•1h ago•1 comments

AI and jobs: The decline started before ChatGPT

https://engineeringprompts.substack.com/p/ai-and-jobs-the-decline-started-before
4•_delirium•1h ago•1 comments

Twenty-Fifth Amendment

https://constitution.congress.gov/constitution/amendment-25/
3•rolph•1h ago•0 comments

The Era of Spec-Driven Development Has Begun

https://twitter.com/deepwhitman/status/2013423486983905282
1•bilater•1h ago•0 comments