frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

We Hardened an AI Security Platform Against 16 Critical Vulnerabilities

https://aegis-security.higgsfield.app
1•zdotbirch•3m ago•0 comments

Zoye AI – The CRM you don't need to open

https://www.zoye.io
1•anizeu•3m ago•0 comments

Regulation of tobacco by the U.S. Food and Drug Administration

https://en.wikipedia.org/wiki/Regulation_of_tobacco_by_the_U.S._Food_and_Drug_Administration
1•amarcheschi•4m ago•0 comments

Show HN: I used D3/React to transform raw GitHub data into an interactive map

https://github.com/ThierryRakotomanana/GitCharta
1•ThierryRakt•4m ago•0 comments

The Vanishing Page: AI Firms Scan Then Destroy Rare Book Editions

https://dallasexpress.com/national/the-vanishing-page-ai-firms-scan-then-destroy-rare-book-editions/
1•throw0101a•5m ago•0 comments

AI companies buy, scan, shred rare and out-of-print books

https://www.news.com.au/technology/online/internet/ai-labs-buy-scan-shred-millions-of-rare-books/...
1•throw0101a•6m ago•0 comments

History remembers two Robert McNamaras

https://indevelopmentmag.com/numbers-man/
1•salonium_•7m ago•0 comments

National Security Determination Threat Posed by Foreign-Produced Robotic Devices [pdf]

https://www.fcc.gov/sites/default/files/robots-nsd.pdf
3•ellingsworth•11m ago•0 comments

Claude Apps Gateway for AWS

https://aws.amazon.com/blogs/machine-learning/introducing-claude-apps-gateway-for-aws/
2•cebert•11m ago•0 comments

Show HN: Expose Your APIs to Agents Without Losing Control via Koodisi MCP

https://koodisi.com/blog/expose-your-apis-to-agents-without-losing-control
3•theashishmaurya•13m ago•0 comments

KotlinLLM Is Going Open Source

https://blog.jetbrains.com/research/2026/07/kotlinllm-open-source/
2•theanonymousone•16m ago•0 comments

Show HN: Roamr – a CLI that picks the best saved WiFi, and tells you why

https://github.com/sourabh-khot65/roamr
2•sourabh65•17m ago•0 comments

Google DeepMind Disbands AlphaFold Team as AI Strategy Shifts Toward Gemini

https://finance.yahoo.com/technology/ai/articles/market-chatter-alphabet-apos-google-093407849.html
2•theanonymousone•18m ago•0 comments

Tracked Capabilities for Safer Agents

https://martinodersky.substack.com/p/tracked-capabilities-for-safer-agents
2•odersky•19m ago•1 comments

C++ Simulator for Ordnance Penetrators/Kinetic Energy Strike Weapons

https://github.com/omid2007hope/MOP-Simulator
2•omid2007hope•19m ago•1 comments

Allies shrug as US pushes for Strait of Hormuz patrol

https://www.politico.com/news/2026/07/28/iran-us-strait-ofhormuz-allies-patrol-01013659
2•vrganj•21m ago•0 comments

Ask HN: Is paying for a BIMI certificate useful?

2•gojkoa•23m ago•0 comments

SpecForge – A Platform for Authoring Formal Specifications

https://docs.imiron.io/v/0.5.10/en/tour.html
5•agnishom•24m ago•0 comments

Who's a Rat

https://whosarat.com/
6•ustad•25m ago•0 comments

Ask HN: Anyone else tired of brands discontinuing your favorite everyday items?

3•GreenPencil7•28m ago•0 comments

Webflow: Code as the Source of Truth

https://webflow.com/blog/getting-to-the-source
2•tosh•29m ago•0 comments

Korean Stocks Plunge 16% in Two-Day Burst of Retail Selling

https://www.bloomberg.com/news/articles/2026-07-29/korean-stocks-tumble-a-second-day-as-sk-hynix-...
6•emsidisii•33m ago•0 comments

Unpacking Open Source AI: Toward a Framework for Openness in Foundation Models

https://cacm.acm.org/research/unpacking-open-source-artificial-intelligence-toward-a-framework-fo...
2•rbanffy•34m ago•0 comments

Salience Labs Wants to Scale Up AI with Silicon Photonics Optical Switch

https://www.nextplatform.com/connect/2026/07/22/salience-labs-wants-to-scale-up-ai-with-silicon-p...
2•rbanffy•35m ago•0 comments

System-Analysis – Forensische Architektur (Deutschland)

https://github.com/Recursive-Logic-Core/system-analysis
2•ArchMMM•36m ago•0 comments

Show HN: Miget – Free cloud hosting for open source projects (no star minimums)

https://miget.com/open-source-program
2•Ankiit111•36m ago•0 comments

Russia charges Telegram founder Durov with facilitating terrorism

https://www.bbc.co.uk/news/articles/cj4kexqkpzno
2•vinni2•37m ago•0 comments

Amiga Graphics Archive

https://amiga.lychesis.net/index.html
3•Bluestein•39m ago•0 comments

Can rent controls ever work?

https://www.ft.com/content/975da0db-e251-4082-a637-90a6495557be
3•JumpCrisscross•42m ago•0 comments

Never Pay for Online Dating (2010)

https://web.archive.org/web/20100821041938/http://blog.okcupid.com/index.php/why-you-should-never...
3•downbad_•44m ago•0 comments
Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.