frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Will We Ever Be Able to Forecast Volcanic Eruptions Like Weather?

https://www.quantamagazine.org/will-we-ever-be-able-to-forecast-volcanic-eruptions-like-weather-2...
1•Brajeshwar•3m ago•0 comments

A major watchdog claims that data centers are wreaking havoc on the power grid

https://www.businessinsider.com/nerc-issues-alert-on-data-centers-threatening-grid-stability-2026-5
1•01-_-•3m ago•0 comments

Nailing jelly to a wall: is it possible? (2005)

https://greem.co.uk/otherbits/jelly.html
1•microsoftedging•6m ago•0 comments

Has anyone else hit expert homogeneity collapse in small MoE models?

https://github.com/eriirfos-eng/ternary-intelligence-stack
1•rfi-irfos•6m ago•0 comments

A soccer simulator played by AI Agents

https://gangtao.github.io/AgentPitch/
1•gangtao•7m ago•0 comments

Disappearing Polymorph

https://en.wikipedia.org/wiki/Disappearing_polymorph
2•canjobear•12m ago•0 comments

Regression Towards the Mean

https://en.wikipedia.org/wiki/Regression_toward_the_mean
1•soupspaces•15m ago•0 comments

Pushing Local Models in Coding Agents with Focus and Polish

https://lucumr.pocoo.org/2026/5/8/local-models/
1•goranmoomin•15m ago•0 comments

Open-source experiment: collaborative AI cognition through wiki pages

https://mentisphere.wiki/wiki/Main_Page
2•franzvill•18m ago•0 comments

Hacking Time: Spoofing Atomic Clocks with Audio Harmonics

https://josephhall.org/blog/texture-of-time-wwvb/
1•jdblair•22m ago•0 comments

Anazoa WebRTC Tunnel

https://github.com/anazoa/anazoa
2•kawks•25m ago•0 comments

Pedestrian Killed by Frontier Airlines Plane Leaving Denver Airport

https://www.forbes.com/sites/antoniopequenoiv/2026/05/09/pedestrian-killed-by-frontier-airlines-p...
4•gpi•27m ago•1 comments

I Will Not Add Query Strings to Your URLs

https://susam.net/no-query-strings.html
1•susam•29m ago•0 comments

Darwinian – A self-evolving system optimizer written in Rust

https://github.com/skorotkiewicz/darwinian_cleaner
1•modinfo•32m ago•0 comments

US companies enabled brutal mass detention and surveillance in China [video]

https://www.youtube.com/watch?v=vGYd6emyk-0
4•Cider9986•32m ago•3 comments

Windows to take CPU to max frequency to open apps, system flyouts, context menus

https://www.windowscentral.com/microsoft/windows-11/microsoft-is-working-on-major-performance-boo...
3•alok-g•34m ago•2 comments

Switching from macOS to Pop _OS

https://system76.com/support/articles/switch-from-macos-to-popos/
6•DeathArrow•34m ago•0 comments

Show HN: AI coworkers who bully to keep each other from drifting(Karpathy-style)

https://wuphf.team
2•najmuzzaman•35m ago•0 comments

How CPU Memory and Caches Work [video]

https://www.youtube.com/watch?v=SAk-6gVkio0
1•tosh•35m ago•0 comments

Using perspective lines to identify AI generated photos

https://www.science.org/content/article/deepfakes-are-everywhere-godfather-digital-forensics-figh...
2•alok-g•38m ago•0 comments

Hantavirus Vaccines and Treatments Are in the Pipeline

https://www.nytimes.com/2026/05/09/science/hantavirus-vaccines-treatment.html
1•doener•40m ago•1 comments

Intel's comeback story is even wilder than it seems

https://techcrunch.com/2026/05/08/intels-comeback-story-is-even-wilder-than-it-seems/
4•Brajeshwar•41m ago•2 comments

Hello from the New Executive Director

https://opensource.org/blog/hello-from-the-new-executive-director
1•Tomte•43m ago•0 comments

Japan's Invisible Electric Wall

https://arun.is/blog/japan-electric-wall/
3•ddrmaxgt37•44m ago•0 comments

Show HN: Armorer – A secure local control plane to sandbox AI agents in Docker

https://github.com/ArmorerLabs/Armorer
2•cristianleo•47m ago•0 comments

The Mirror Is Part of the Machine

https://yusufaytas.com/the-mirror-is-part-of-the-machine
6•sudo_rm_star•50m ago•0 comments

Google developers significantly misstate CO2 emissions of UK datacentres

https://www.theguardian.com/technology/2026/may/09/google-developers-significantly-misstate-carbo...
5•mmarian•51m ago•0 comments

Introduction to Beaver Triples

https://stoffelmpc.com/stoffel-blog/beaver-triples-tuples
2•badcryptobitch•55m ago•0 comments

What 16 Parallel Claude Agents Built Around Themselves

https://medium.com/@vbcherepanov/what-16-parallel-claude-agents-built-around-themselves-deconstru...
3•vbcherepanov•59m ago•1 comments

Mypy 2.0 Relased

https://mypy-lang.blogspot.com/2026/05/mypy-20-relased.html
3•anishathalye•1h ago•0 comments