frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•8mo ago

Comments

kemotep•8mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

I Used JJ Restore

https://mtende.blog/i-used-jj-restore
1•sonderotis•2m ago•0 comments

Iran Enters a New Age of Digital Isolation

https://filter.watch/english/2026/01/15/iran-enters-a-new-age-of-digital-isolation-2/
1•doener•2m ago•0 comments

Does AI-Assisted Coding Deliver? A Study of Cursor's Impact on Software Projects

https://arxiv.org/abs/2511.04427
1•tanelpoder•3m ago•0 comments

I use AI coding tools (in winter 2025)

https://blog.separateconcerns.com/2025-12-26-ai-tools-winter-2025.html
1•speckx•5m ago•0 comments

GitHub Gemini-CLI block in a loop

https://github.com/google-gemini/gemini-cli/issues/16723
1•mraniki•5m ago•0 comments

I turned my 10 year old tablet into a digital photo frame, showing Google photos

https://www.pankajtanwar.in/blog/i-turned-my-10-year-old-tablet-into-a-digital-photo-frame-displa...
1•thunderbong•7m ago•0 comments

Giving Agents Attention on My Workstation

https://www.potluria.com/blog/giving-agents-attention
1•potluri•8m ago•0 comments

Why moderate voters choose extreme candidates

https://academic.oup.com/sf/advance-article-abstract/doi/10.1093/sf/soaf199/8346070?login=false
1•7777777phil•10m ago•0 comments

Show HN: Using an LLM as a "semantic regularizer" for feature engineering

https://medium.com/@mschavinda/pruning-over-engineered-features-with-help-from-an-llm-90e73e4f22ee
1•mchav•11m ago•0 comments

Engaging healthily with chess: an Acceptance and Commitment therapist's guide

https://lichess.org/@/tackyshrimp/blog/engaging-healthily-with-chess-an-acceptance-and-commitment...
1•hkopp•13m ago•0 comments

Ask HN: Will non-technical users stop using apps and start generating them?

1•arbayi•14m ago•1 comments

How to Teach People SQL

https://dataschool.com/how-to-teach-people-sql/
1•saikatsg•14m ago•0 comments

Faster zlib/DEFLATE decompression on ARM64 and x86

https://dougallj.wordpress.com/2022/08/20/faster-zlib-deflate-decompression-on-the-apple-m1-and-x86/
1•fanf2•14m ago•0 comments

Why Make Websites?

https://techne98.com/blog/why-make-websites/
1•fixedprog•19m ago•0 comments

The Science of Life and Death in Mary Shelley's Frankenstein

https://publicdomainreview.org/essay/the-science-of-life-and-death-in-mary-shelleys-frankenstein/
1•Anon84•20m ago•0 comments

Are people avoiding iOS 26 because of Liquid Glass? It's complicated

https://arstechnica.com/gadgets/2026/01/are-people-avoiding-ios-26-because-of-liquid-glass-its-co...
1•mindracer•20m ago•0 comments

Niccup: Hiccup-Like HTML Generation in ~120 Lines of Pure Nix (2025)

https://embedding-shapes.github.io/introducing-niccup/
2•mooreds•21m ago•0 comments

How do you know if you've unlocked the intellectual capacity of your org?

https://josezarazua.com/unlock-the-full-intellectual-capacity-of-your-organization/
1•mooreds•22m ago•1 comments

Mysterious 'iron bar' discovery in space may reveal Earth's future

https://www.bbc.com/news/articles/ckgxlvv0wdko
2•Brajeshwar•22m ago•0 comments

Leonardo Proteus: Royal Navy flies UK's first autonomous full-size helicopter

https://www.aerotime.aero/articles/leonardo-proteus-royal-navymaiden-flight-autonomous-full-size-...
2•Brajeshwar•22m ago•0 comments

Aristotle

https://en.wikipedia.org/wiki/Aristotle
2•hkopp•22m ago•0 comments

Wormholes may not exist. They reveal something deeper about time and universe

https://phys.org/news/2026-01-wormholes-weve-reveal-deeper-universe.html
2•Brajeshwar•22m ago•1 comments

Plentiful, high-paying jobs in the age of AI

https://www.noahpinion.blog/p/plentiful-high-paying-jobs-in-the
1•SoKamil•23m ago•0 comments

China's brutal 'fat prisons', where rapid weight loss can prove fatal

https://www.news.com.au/lifestyle/fitness/weight-loss/inside-chinas-brutal-fat-prisons-where-rapi...
2•mooreds•24m ago•1 comments

Show HN: Kate Code – KDE Kate Editor Plugin for Accessing Claude Code

https://github.com/undefinedopcode/kate-code
1•empressplay•25m ago•0 comments

Rackspace customers grapple with "devastating" email hosting price hike

https://arstechnica.com/information-technology/2026/01/rackspace-raises-email-hosting-prices-by-a...
1•speckx•26m ago•0 comments

Show HN: WorkSpace Manager – Native macOS Workspace Launcher (SwiftUI)

https://github.com/frafra077/workspace-manager
1•fra07•27m ago•1 comments

AI tools expand scientists' impact but contract science's focus

https://www.nature.com/articles/s41586-025-09922-y
1•7777777phil•28m ago•0 comments

Show HN: Video-to-Grid – Analyze videos with one Vision API call

https://github.com/unhaya/vam-seek-electron-demo
2•haasiy•30m ago•0 comments

Show HN: The Logos Programming Language and Theorem Prover

https://logicaffeine.com/crates
1•tristenharr•31m ago•3 comments