frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•11mo ago

Comments

kemotep•11mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Agentic Specification Engineering

https://medium.com/@paul.bernard_80815/agentic-specification-engineering-agile-was-never-supposed...
1•paulbernard•1m ago•1 comments

A Breaking Bad grand strategy browser game – pure JavaScript, no frameworks

https://breakingbadgame.com
1•YoungCrack•1m ago•0 comments

Test your CV against any job description – free, open-source, AI-powered

https://github.com/simonesan-afk/CV-Praetorian-Guard
1•simonenespolo•4m ago•0 comments

Tesla Disables the FSD Used Illegally in over 100k Cars

https://www.autoevolution.com/news/no-more-hacking-tesla-disables-the-fsd-used-illegally-in-over-...
1•campuscodi•5m ago•0 comments

Historical Java (2014)

https://www.sweharris.org/post/2014-02-28-java/
1•jruohonen•7m ago•0 comments

Building the first AI Red Team OS – mythosai.cloud – early access open

https://mythosai.cloud/
1•cashbackoz•9m ago•0 comments

Private Equity Captured the Ambulance Market

https://www.thebignewsletter.com/p/code-red-why-your-city-cant-affordor
2•connor11528•10m ago•0 comments

A private collection of 10k Chicago show tapes finds a public home

https://chicagoreader.com/music/gossip-wolf/aadam-jacobs-collection-internet-archive-concert-reco...
1•taubek•11m ago•0 comments

Show HN: Millions of websites crawled for LLMs to rebuild the pricing pages

https://pricepage.lol/
2•kilroy123•13m ago•0 comments

Scuttlebutt Genesis

https://handbook.scuttlebutt.nz/stories/scuttlebutt-genesis
1•jruohonen•16m ago•0 comments

Suno, AI Music, and the Bad Future [video]

https://www.youtube.com/watch?v=U8dcFhF0Dlk
2•ptrhvns•16m ago•0 comments

Eternity in six hours: Intergalactic spreading of intelligent life (2013)

https://www.researchgate.net/publication/256935390_Eternity_in_six_hours_Intergalactic_spreading_...
1•wallflower•16m ago•0 comments

Guidelines for Submitting Unicode Emoji Proposals

https://unicode.org/emoji/proposals.html
1•wallflower•18m ago•0 comments

SQL-First PostgreSQL Migrations Without the Magic

https://medium.com/@mailbox.sq7/sql-first-postgresql-migrations-without-the-magic-dd2f383dee2a
2•alzhi7•21m ago•0 comments

A Simple Coding Agent in a Loop with LangChain4j, Jbang, and Gemini

https://glaforge.dev/posts/2026/04/11/a-simple-coding-agent-in-a-loop-with-langchain4j-jbang-and-...
2•mariuz•21m ago•0 comments

Show HN: Minimal mobile HN reader – real-time and dark mode

https://hn.brae.workers.dev/
3•weekendproject•23m ago•0 comments

Flat Error Codes Are Not Enough

https://home.expurple.me/posts/flat-error-codes-are-not-enough/
1•Expurple•24m ago•1 comments

Will there be a social layer for vibe coding?

https://metedata.substack.com/p/metedata-digest-005-vibe-coding-wants
1•young_mete•26m ago•0 comments

MangroveViewer

https://github.com/altilunium/MangroveViewer
1•altilunium•27m ago•0 comments

Strategy as a Language: A Grammar for the Carbon–Silicon Learning Firm

https://jimiwen.substack.com/p/strategy-as-a-language
1•jimiwen•28m ago•0 comments

Is AI the greatest art heist in history?

https://www.theguardian.com/books/2026/apr/12/is-ai-the-greatest-art-heist-in-history
6•Brajeshwar•34m ago•1 comments

Show HN: Agent-Notifications – Real-Time Alerts for OpenClaw and Hermes Agents

https://github.com/Kuberwastaken/agent-notifications
1•kuberwastaken•37m ago•0 comments

From Early Nirvana to Phish, Secret Recordings of 10k Shows Are Now Online

https://blockclubchicago.org/2026/04/10/from-early-nirvana-to-phish-a-chicago-fans-secret-recordi...
2•Anon84•38m ago•0 comments

Claude Code Checkpoints

https://github.com/yahnyshc/daedalus
1•maksyyy•41m ago•0 comments

AI and Psi with Paul Werbos (Inventor of Backpropagation) [video]

https://www.youtube.com/watch?v=rMh-snQ1YWU
2•binyu•42m ago•0 comments

Show HN: Codex Workers AI Proxy – Use Cloudflare Workers AI models in Codex CLI

https://github.com/pitzcarraldo/codex-workers-ai-proxy
2•mrnoname•45m ago•1 comments

Show HN: ReverseYC

https://rocketplace.org/reverseyc
2•remarketme•48m ago•1 comments

Show HN: NeZha – An Open-Source Agentic Development Environment (ADE)

https://nezha.hanshutx.com/en/
1•markhan-nping•51m ago•0 comments

Building a 10BASE5 "Thick Ethernet" network (2012)

https://www.mattmillman.com/projects/10base5/
1•accrual•52m ago•0 comments

Show HN: A personality first matchmaking app

https://www.connectwithember.com/
1•willeyy•54m ago•0 comments