frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•10mo ago

Comments

kemotep•10mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

'Profoundly moving': Netflix's posthumous celebrity interview series is a marvel

https://www.theguardian.com/tv-and-radio/2026/feb/23/famous-last-words-netflix-eric-dane
1•mellosouls•1m ago•0 comments

Show HN: We wrapped US healthcare API in MCP and it became surprisingly usable

https://app.healthporta.com/mcp
1•endurant_dev•1m ago•0 comments

Yes, Section 230 Should Apply Equally to Algorithmic Recommendations

https://www.techdirt.com/2026/02/23/yes-section-230-should-apply-equally-to-algorithmic-recommend...
1•hn_acker•2m ago•0 comments

IBM is the latest AI casualty

https://www.cnbc.com/2026/02/23/ibm-is-the-latest-ai-casualty-shares-are-tanking-on-anthropic-cob...
2•baal80spam•4m ago•0 comments

Ask HN: Are developers who build libs and dev tools safer from AI replacement?

2•danver0•4m ago•0 comments

GitHub Is Down

https://www.githubstatus.com/incidents/jn8kcmg5ydch
5•smithcoin•8m ago•0 comments

Lat: Apple removes environmental metrics from executive pay

https://www.latimes.com/business/story/2026-02-23/apple-quietly-removes-environmental-metrics-fro...
3•domoregood•9m ago•1 comments

Intellectual Honesty in the Age of Vibes

https://blog.zmalik.dev/p/intellectual-honesty-in-the-age-of
1•zmalik•9m ago•0 comments

Show HN: Merkle Casino – Random CT Domains

https://merkle.altayakkus.dev
1•biosboiii•10m ago•0 comments

Why I love learning new things

https://seekingtrust.substack.com/p/in-pursuit-of-new-colors
1•FinnLobsien•12m ago•0 comments

Show HN: Groupchat, Open Source Slack for Developers

https://www.groupchatty.com/
4•svapnil•12m ago•0 comments

Tesla sues California DMV to reverse 'false advertising' ruling on self-driving

https://www.cnbc.com/2026/02/23/tesla-sues-california-dmv-to-reverse-false-advertising-ruling-on-...
4•MilnerRoute•12m ago•0 comments

Signs on Stone Age objects: Precursor to written language dates back 40K years

https://www.uni-saarland.de/en/news/steinzeit-zeichen-44061.html
2•geox•13m ago•0 comments

Show HN: Livecodes – client-side code playground created by a heart surgeon

https://github.com/live-codes/livecodes
1•hopefully_can•14m ago•0 comments

Bitdeer sold all its Bitcoin to fund its move into AI data centers

https://www.coindesk.com/markets/2026/02/23/bitdeer-empties-bitcoin-treasury-as-miners-accelerate...
1•doener•15m ago•0 comments

Flock cameras gifted by Horowitz Foundation, avoiding public oversight

https://thenevadaindependent.com/article/vegas-police-are-big-users-of-license-plate-readers-publ...
3•rurp•15m ago•0 comments

Show HN: MoltMyHeart – a dating site for AI agents

https://www.moltmyheart.com/
2•dinge•16m ago•0 comments

IBM Plunges After Anthropic's Latest Update Takes on COBOL

https://www.zerohedge.com/markets/ibm-plunges-after-anthropics-latest-update-takes-cobol
6•gradus_ad•19m ago•1 comments

Show HN: We built Talos – a full CNN inference engine running on silicon

https://talos.wtf/
1•luthiraabeykoon•19m ago•0 comments

A prediction on MCP servers from last year

https://mbsamuel.substack.com/p/will-people-actually-pay-for-mcp
1•JimsonYang•19m ago•1 comments

Booklore – A modern way to organize, read, and own your digital library

https://booklore.org/
2•voxadam•20m ago•0 comments

Show HN: We built Talos – a full CNN inference engine running on silicon

https://twitter.com/luthiraabeykoon/status/2026036244455489750
1•luthiraabeykoon•20m ago•0 comments

Strands AI Functions

https://github.com/strands-labs/ai-functions
1•jlward4th•20m ago•0 comments

Moore Threads Launches Premium MTT Aibook with China ARM-Based SoC

https://videocardz.com/newz/moore-threads-launches-premium-mtt-aibook-with-china-arm-based-soc-2-...
1•LorenDB•22m ago•0 comments

3D Printing a 3D Printer

https://guille.site/posts/3d-printed-printer/
2•LolWolf•22m ago•0 comments

2028 Global Intelligence Crisis

https://substack.com/@citrini/p-188821754
1•kristianp•22m ago•0 comments

Less than 14% of those arrested by ICE had violent criminal records

https://www.cbsnews.com/news/ice-arrests-violent-criminal-records-trump-first-year/
4•RickJWagner•23m ago•0 comments

Porting Doom to a 20-year-old VoIP phone

https://0x19.co/post/snom360_doom/
2•25hex•24m ago•0 comments

Reddit Is Down

https://downdetector.com/status/reddit/
2•sometinsome•25m ago•0 comments

Listening to the Mind: Earable Acoustic Sensing of Cognitive Load

https://dl.acm.org/doi/10.1145/3714394.3756157
1•PaulHoule•26m ago•0 comments