frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•8mo ago

Comments

kemotep•8mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Worse Than the Dot Com Bubble

https://www.wheresyoured.at/dot-com-bubble/
1•7777777phil•14s ago•0 comments

Discovering New Horizons (2015)

https://source.washu.edu/2015/12/discovering-new-horizons/
1•thunderbong•1m ago•0 comments

The cleaner: One woman's mission to help Britain's hoarders

https://www.aljazeera.com/features/2026/1/18/the-cleaner-one-womans-mission-to-help-britains-hoar...
1•Qem•1m ago•0 comments

Speed Vertigo: A New Kind of Engineering Debt

https://joshtuddenham.dev/blog/vertigo/
1•joshuaisaact•3m ago•0 comments

Making a Strava-Style Heatmap with My Citibike Ride History

https://yangdanny97.github.io/blog/2026/01/17/citibike-strava-heatmap
1•ocamoss•5m ago•0 comments

Why Newly Built Aircraft Still Have Ashtrays

https://iatanews.com/why-newly-built-aircraft-still-have-ashtrays-in-the-toilet/
2•tavro•6m ago•0 comments

Show HN: SmallPebble – minimalist deep learning library in <1000 lines of Python

https://github.com/sradc/SmallPebble
1•montebicyclelo•7m ago•0 comments

A Day Without a Mexican

https://en.wikipedia.org/wiki/A_Day_Without_a_Mexican
1•treetalker•8m ago•0 comments

Show HN: Miito- Added TikTok like videos to Google Meet to fix my attention span

https://chromewebstore.google.com/detail/miito-focus-overlay-for-m/hlnfebhmljcldnhepjeiodhmijahlhcc
1•miemex•8m ago•0 comments

AI companies will fail. We can salvage something from the wreckage

https://www.theguardian.com/us-news/ng-interactive/2026/jan/18/tech-ai-bubble-burst-reverse-centaur
2•kawera•11m ago•0 comments

Most-voted PR gets merged – Week 2: The Acceleration

https://blog.openchaos.dev/posts/week-2-the-acceleration
1•mraniki•11m ago•0 comments

Chinese EVs Are Coming Back to Canada Thanks to New Trade Deal

https://www.jalopnik.com/2077559/chinese-evs-coming-back-canada/
2•mattwiese•13m ago•0 comments

Hydrate Agent for Obsidian

https://hydrateagent.com/
1•javast98•13m ago•1 comments

The next-gen SQLite won't look like SQLite

https://gist.github.com/radarroark/03a0724484e1111ef4c05d72a935c42c
3•radarroark•18m ago•0 comments

Cybernetic Arbitrage – AI Is Inverting Aggregation Theory

https://hypersoren.xyz/posts/cybernetic-arbitrage/
1•dennisy•18m ago•0 comments

Study Shows Short-Form Video Is Destroying Our Brains

https://bradstulberg.substack.com/p/a-new-study-shows-short-form-video
2•andy99•19m ago•0 comments

I decided to try BASIC programming on the VIC 20 in 40 years

https://medium.com/@RetroTechShow/1984-i-decided-to-try-basic-programming-on-the-vic-20-for-the-f...
1•JKCalhoun•20m ago•0 comments

Show HN: Tiny Toy Network – a neural net to practice backpropagation

https://hollyemblem.github.io/tiny-toy-network/
1•dandelionv1bes•22m ago•0 comments

Ringmpsc: Lock-free MPSC channel in Zig achieving 50B messages/second

https://github.com/boonzy00/ringmpsc
1•g0xA52A2A•23m ago•0 comments

Bending Emacs Episode 10: AI / LLM agent-shell [video]

https://www.youtube.com/watch?v=R2Ucr3amgGg
1•xenodium•23m ago•0 comments

Show HN: Go-brrr – Benchmarks Go vs. Go and declares a winner anyway

https://github.com/jackprscott/go-brrr
1•jackprescott•23m ago•0 comments

3D Map of the Moai Statue Quarry at Rano Raraku, Rapa Nui (Easter Island)

https://www.arcgis.com/apps/instant/3dviewer/index.html
2•nudin•24m ago•0 comments

Show HN: Frida UI - A web ui for frida.re

https://github.com/adityatelange/frida-ui
1•adityatelange•26m ago•0 comments

Why the tech world thinks the American dream is dying

https://www.msn.com/en-us/money/other/why-the-tech-world-thinks-the-american-dream-is-dying/ar-AA...
1•akyuu•26m ago•0 comments

Rokeno.com – AIO Gen AI

https://rokeno.com
1•robsch•26m ago•0 comments

Gravitoelectromagnetism

https://en.wikipedia.org/wiki/Gravitoelectromagnetism
1•JPLeRouzic•28m ago•0 comments

Show HN: A 3D music website built with React Three Fiber

https://kratzen-und-fauchen.com
1•__lerk•30m ago•0 comments

The A in AGI Stands for Ads

https://ossa-ma.github.io/blog/openads
54•calcifer•30m ago•27 comments

Ask HN: Can abstract systems admit stress–potential field equations?

1•tgrrr9111•32m ago•0 comments

OpenAI appears to be moving toward ads in ChatGPT for logged-in U.S. users

2•SRMohitkr•33m ago•0 comments