frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•9mo ago

Comments

kemotep•9mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

SAS plane tries take-off from taxiway at Brussels Airport, gets up to 120 MPH

https://onemileatatime.com/news/near-disaster-sas-plane-take-off-taxiway/
1•lode•1m ago•0 comments

Signy: Signed URLs for Small Devices

https://github.com/golioth/signy
1•hasheddan•1m ago•0 comments

Shadcn/Create in Figma

https://www.shadcndesign.com/blog/shadcn-create-in-figma
1•figmaster•2m ago•0 comments

Show HN: Langraph Networks as Equations

https://github.com/kummahiih/python-langgraph-equations
1•kummap•2m ago•0 comments

Bui – TUI for painless Bubblewrap sandboxing

https://smaller.fish/posts/bubblewrap_tui
1•smallerfish•2m ago•0 comments

John Haugeland on the failure of micro-worlds

https://blog.plover.com/tech/gpt/micro-worlds.html
1•robinhouston•6m ago•0 comments

EC preliminarily finds TikTok's addictive design is Digital Services Act breach

https://ec.europa.eu/commission/presscorner/home/en
2•u1hcw9nx•8m ago•0 comments

Ask HN: XCancel but for Instagram?

2•Nurbek-F•8m ago•0 comments

Toyota retains top auto crown in 2025 with record sales

https://www.reuters.com/business/autos-transportation/toyota-retains-top-auto-crown-2025-with-rec...
2•breve•11m ago•0 comments

Iranian regime propaganda floods Wikipedia

https://www.neutralpov.com/p/a-flood-of-iranian-propaganda-on
1•ukblewis•12m ago•0 comments

Show HN: Gazill – Save your code, it's live. Built for vibe coders and agents

1•niklai•12m ago•0 comments

Show HN: Grok Prompts – AI image and video generator with 500 curated prompts

https://grokprompts.app/
1•Yreminder•16m ago•0 comments

Library of Babel 3D

https://library-of-babel-3d.netlify.app/
1•m-hodges•18m ago•0 comments

Amara

https://amara.01c.ai/
2•ashkan01c•18m ago•2 comments

A curated list of best Python books

https://github.com/lara-west/PythonBooks
1•mahsima•20m ago•0 comments

Monty – A minimal, secure Python interpreter written in Rust for use by AI

https://github.com/pydantic/monty
2•areski•20m ago•0 comments

A startup copied my landing page (and then gave me great feedback on it)

https://blog.dahl.dev/posts/startup-copied-my-design/
2•aleda145•23m ago•0 comments

US Immigration on the Easiest Setting

https://pluralistic.net/2026/02/06/doge-ball/#n-600
3•headalgorithm•23m ago•1 comments

Trois-Rivières, le jeu vidéO

https://www.trois-rivieres.net/
2•JeanKage•24m ago•0 comments

Show HN: PromptHub – 2000 Free AI Prompts for ChatGPT and Midjourney

https://promptshub.shop
1•meimeixoxi•24m ago•0 comments

First Proof: Research-Level Math for AI Evaluation

https://1stproof.org
1•panic•26m ago•0 comments

Show HN: An app to use Instagram without Reels on iOS

https://apps.apple.com/us/app/timecap-limit-screen-time/id6737515680
1•antoferra•28m ago•0 comments

Need feedback for AI tool that lets non-technical users query Postgres

2•dimitsapis•35m ago•0 comments

Ask HN: What you want in a travel planner app?

1•shubhwicked•35m ago•1 comments

Western Digital details 14-platter 3.5-inch HAMR HDD designs with 140 TB plus

https://www.tomshardware.com/pc-components/hdds/western-digital-details-14-platter-3-5-inch-hamr-...
2•asdefghyk•36m ago•1 comments

So, your developers use AI now – here's what to know

https://evilmartians.com/chronicles/so-your-developers-use-ai-now-here-is-what-to-know
1•rudolftheone•38m ago•0 comments

Against Markdown

https://aartaka.me/markdown.html
1•nemoniac•38m ago•0 comments

What causes surprise infra costs in your org?

1•frmalmaty•39m ago•0 comments

Show HN: Nano Banana Presentation Editor

https://www.presentia.ai/
1•roodrallec•40m ago•0 comments

Show HN: Post-Mortem of a Day with Claude Code – What the Session Logs Revealed

1•seanlf•42m ago•0 comments