frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Cold Start DNS

https://blog.apnic.net/2026/06/02/cold-start-dns/
1•SVI•58s ago•0 comments

Technical Interviews Reject the Wrong Engineers

https://fagnerbrack.com/technical-interviews-reject-the-wrong-engineers-a8e78ca04b2e
1•buffer_overlord•7m ago•0 comments

Save money on A/C costs with handy tool

https://mnqprimo.com/nowcast/
1•chooklay•7m ago•0 comments

World models need exponentially less data than LLMs

https://twitter.com/MatthieuWyart/status/2061317203857739846
2•MrBuddyCasino•8m ago•0 comments

OpsGrid: Cloud Stack at a Glance

https://opsgrid.hirawat.in/dashboard
1•hirawat•9m ago•1 comments

Steph Curry: NBA star signs shoe deal with Chinese brand Li-Ning

https://www.bbc.com/news/articles/cj9pky3ldddo
1•doppp•11m ago•0 comments

Adding my blog and book to my Obsidian vault via symlinks

https://www.ssp.sh/brain/add-external-folders-git-blog-book-to-my-obsidian-vault-via-symlink/
2•zazuke•12m ago•1 comments

Hey London Making a list of X accounts worth following in the AI scene here

https://x.com/i/lists/2032117580790468859
1•hellodarknessmy•13m ago•0 comments

EU is set to join US-led chip alliance 'Pax Silica' to counter China's AI race

https://www.euronews.com/my-europe/2026/06/01/the-eu-is-set-to-join-us-led-chip-alliance-pax-sili...
2•doener•14m ago•0 comments

Researchers able to spy on your browsing by measuring SSD activity

https://www.tomshardware.com/tech-industry/cyber-security/researchers-say-they-can-spy-on-your-br...
1•My_Name•18m ago•0 comments

The Messy Reality of Building an Empire in Space

https://www.wsj.com/tech/blue-origin-spacex-rivalry-cebe1bc0
2•ironyman•28m ago•1 comments

ChatGPhish: The Page Is the Payload

https://permiso.io/blog/chatgpt-markdown-rendering-vulnerability
1•hereticles•29m ago•1 comments

Florida sues OpenAI and Sam Altman over alleged safety lapses

https://www.npr.org/2026/06/01/nx-s1-5843132/openai-florida-lawsuit-safety-chatgpt
2•isaacfrond•29m ago•0 comments

A Resonant Hierarchy of Everything – one recursive formula across all scales

https://hierarchyofeverything.com
1•DementD•31m ago•0 comments

OpenAIRE AI Hackathon

https://www.openaire.eu/announcement-openaire-ai-hackathon
1•T-A•31m ago•0 comments

VW cuts owners' access to their own vehicle data with API change

https://www.heise.de/en/news/VW-cuts-owners-access-to-their-own-vehicle-data-with-API-change-1131...
3•doener•36m ago•0 comments

Dear USA: When You Were Awesome

https://ifloz.substack.com/p/dear-usa-when-you-were-awesome
1•testrun•37m ago•0 comments

Side-Channel Information Disclosure (Error Oracle). Maravel/Lumen Users Beware

https://marius-ciclistu.medium.com/maravel-framework-version-10-73-1-60505eb7d644
1•marius-ciclistu•38m ago•0 comments

Safe, LeSS and Nexus don't work

https://www.leadinginproduct.com/p/scaling-product-teams
1•benkan•47m ago•0 comments

Show HN: Assist Debug Card for Home Assistant

1•Vibecoder_•47m ago•0 comments

New Evidence for Early Pleistocene Use of Fire at Wonderwerk Cave (South Africa)

https://journals.plos.org/plosone/article?id=10.1371/journal.pone.0347480
1•fodmap•48m ago•0 comments

Why Merge Conflicts Became the New Agentic Bottleneck

https://adamtornhill.substack.com/p/why-merge-conflicts-became-the-new
2•nephrenka•49m ago•0 comments

Hackers trick Meta AI support bot to infiltrate Obama White House Instagram

https://www.theguardian.com/technology/2026/jun/01/meta-ai-hack-obama-sephora-instagram
2•beardyw•49m ago•0 comments

Brazil Banned Addictive Design. The Crucial Regulatory Choices Are Still Ahead

https://www.techpolicy.press/brazil-banned-addictive-design-the-crucial-regulatory-choices-are-st...
4•rbanffy•52m ago•0 comments

Version 2.0 of AI laser mosquito defense system is here

https://twitter.com/stevencheng/status/2059950811954692451
3•throwaway2037•53m ago•1 comments

I built a shirt brand for developers who are tired of bad conference swag

https://codeculture.store/
1•emcycruz•53m ago•0 comments

Reducing Instagram's basic video compute time by 94 percent (2022)

https://engineering.fb.com/2022/11/04/video-engineering/instagram-video-processing-encoding-reduc...
2•tzury•54m ago•0 comments

Fast Food's Digital Revolution: Why Fast Food Got So Expensive [video]

https://www.youtube.com/watch?v=hIOW2HKgzPk
2•nomilk•55m ago•0 comments

A University System Went All in on A.I. Now It's Tearing Itself Apart

https://www.nytimes.com/2026/06/01/magazine/ai-university-college-california.html
2•jeffwass•58m ago•0 comments

Tracing Rays with Jank

https://jank-lang.org/blog/2026-06-01-optimization/
1•pjmlp•1h ago•0 comments