frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

The Bear Case for Frontier AI Labs

https://www.parand.com/the-bear-case-for-frontier-ai-labs.html
1•tworats•1m ago•0 comments

The FBI's Kinetic Cyber Range

https://www.fbi.gov/news/stories/inside-the-fbis-kinetic-cyber-range
1•gdrift•1m ago•0 comments

Kryptos

https://paradigm.xyz/kryptos/k4
1•jgrahamc•1m ago•0 comments

Notes from a Egyptian Guy Whose Job Is Explaining That Humans Built the Pyramids

https://www.mcsweeneys.net/articles/notes-from-a-tired-egyptian-guy-whose-job-is-explaining-that-...
1•u1hcw9nx•1m ago•0 comments

Facebook Is Down

https://www.the-independent.com/tech/facebook-down-messenger-not-working-b2994735.html
1•dominikposmyk•2m ago•0 comments

Parallax – an edge-native mission assurance framework for autonomous systems

https://draeven.us/
1•bwgreen•2m ago•0 comments

Highly intelligent people are more likely to ditch old habits for better ideas

https://www.psypost.org/highly-intelligent-people-are-more-likely-to-ditch-old-habits-for-better-...
3•randycupertino•2m ago•0 comments

Cerberus, an Open-Source USB protection device

https://github.com/Lab217MX/Cerberus-A-USB-Watchdog
1•glitchboi•4m ago•0 comments

Why the 2026 World Cup Ball Has Deeper Seams

http://liveatthewitchtrials.blogspot.com/2026/06/the-2026-world-cup-football-is-big.html
1•speckx•4m ago•0 comments

What the Fuck Happened to Nerds

https://mrmarket.bearblog.dev/what-the-fuck-happened-to-nerds/
2•mrmarket•5m ago•0 comments

Philtrum – It Started with a Prompt

https://philtrum.app/
1•pencilcheck•6m ago•1 comments

The Token Value of $200/mo Plans

https://twitter.com/SemiAnalysis_/status/2064815044085318040
2•thedebuglife•6m ago•0 comments

The Token Value of $200/mo Plans

https://link.mail.beehiiv.com/ss/c/u001.LDkxbMa7NCxUGG7E2Yh3ABiuUAE5LTRLvOwLxg7TbRtWwRuK02qKlX8wK...
2•thedebuglife•7m ago•0 comments

AI is about to get fast, and it's never going to slow down

https://medium.com/@NMitchem/ai-is-about-to-get-fast-and-its-never-going-to-slow-down-78e13e794375
3•Mitchem•7m ago•0 comments

Bio input based, instead of vision based, physical AI for industrial bio

https://diggest.substack.com/p/creating-a-benchmark-for-physical
1•digvijay0401•7m ago•0 comments

Merman: headless Mermaid.js in Rust

https://github.com/Latias94/merman
1•nateb2022•8m ago•0 comments

Forget Zune. Forget Vista. Copilot Is Microsoft's Biggest Failure

https://www.youtube.com/watch?v=ER0jRB3nhK4
4•valeg•9m ago•0 comments

Understanding the rationale behind a rule when trying to circumvent it

https://devblogs.microsoft.com/oldnewthing/20260611-00/?p=112415
1•ibobev•9m ago•0 comments

Why do you say that a COM STA thread must pump messages?

https://devblogs.microsoft.com/oldnewthing/20260522-00/?p=112348
1•ibobev•10m ago•0 comments

Quantity leads to quality (the origin of a parable) (2020)

https://austinkleon.com/2020/12/10/quantity-leads-to-quality-the-origin-of-a-parable/
2•crescit_eundo•11m ago•0 comments

Learning to be a Tech Lead (2024)

https://miryeh.medium.com/learning-to-be-a-tech-lead-e22a0b4f01d5
1•mooreds•11m ago•0 comments

The tanks in Cushing, Oklahoma, are hitting bottom

https://www.cnn.com/2026/06/12/business/cushing-oil-inventory
4•mooreds•13m ago•0 comments

Why Artists Are Running Their Own Data Centers

https://southpole.blog/artists-running-their-own-data-centers/
2•berlianta•13m ago•0 comments

Can smartphones help explain the drop in birth rates?

https://text.npr.org/nx-s1-5851795
1•mooreds•14m ago•1 comments

India says it is working to stop water flowing into Pakistan

https://www.channelnewsasia.com/asia/india-pakistan-conflict-water-treaty-disagreement-6173811
1•vrganj•15m ago•0 comments

Verizon sent man a refurbished phone with MDM, then deleted his data remotely

https://arstechnica.com/tech-policy/2026/06/verizon-sent-man-a-refurbished-phone-with-mdm-then-de...
4•Brajeshwar•15m ago•0 comments

Amazon.ca is down – everything is out of stock

https://www.amazon.ca/Decker-CBG110SC-Electric-Smartgrind-Grinder/dp/B07SZ9FFT9/ref=lp_2224068011...
1•Callicles•15m ago•0 comments

When should we expect to meet aliens?

https://aliens.fyi
3•avhwl•16m ago•1 comments

Solving a chess puzzle with Claude and Prolog

https://www.johndcook.com/blog/2026/06/11/prolog-claude/
2•ibobev•16m ago•0 comments

Author Jane Yolen, 87, died. Writer of fantasy, sci-fi, and children's books

https://locusmag.com/2026/06/jane-yolen-1939-2026/
1•speckx•17m ago•1 comments