frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Humanoid Robots Are Still a Body Problem with Jerry Pratt [video]

https://www.youtube.com/watch?v=fsPDZjWMKMs
1•thunderbong•6m ago•0 comments

Meta stock drops on quarterly results 'internet disruptions' user numbers down

https://www.cnbc.com/2026/04/29/meta-q1-earnings-report-2026.html
1•1vuio0pswjnm7•10m ago•0 comments

In Backlash Against Tech in Schools, Parents Are Winning Rollbacks

https://www.nytimes.com/2026/04/29/technology/parents-school-tech-backlash.html
2•1vuio0pswjnm7•13m ago•0 comments

Tourist dies after being bitten at snake show while on vacation in Egypt

https://www.cnn.com/2026/04/28/africa/tourist-dies-snake-bite-egypt-scli-intl
1•fortran77•13m ago•0 comments

OpenAI, Sam Altman Hit with Slate of Lawsuits over Mass Shooting Canadian School

https://www.law.com/therecorder/2026/04/29/openai-sam-altman-hit-with-slate-of-lawsuits-over-mass...
1•1vuio0pswjnm7•15m ago•0 comments

Infrastructure Spend in the AI Era

https://redmonk.com/sogrady/2026/04/29/infrastructure-spend-in-the-ai-era/
1•mooreds•15m ago•0 comments

The Harmful Consequences of the Robustness Principle (2018)

https://datatracker.ietf.org/doc/html/draft-thomson-postel-was-wrong-03
1•Tomte•16m ago•0 comments

AMS – Detect unsafe LLMs in 30 seconds via activation analysis

https://github.com/GoogleCloudPlatform/activation-model-scanner
1•gmessenger•18m ago•0 comments

Fanspeak (1999)

https://www.fantasymaps.com/stuff/fanspeak.html
1•ipnon•19m ago•0 comments

Operation Sundevil (1990)

https://en.wikipedia.org/wiki/Operation_Sundevil
1•rickcarlino•25m ago•0 comments

Stablecoin Reserve Race: Brazil Pix, Morgan Stanley, OCC Charters

https://stablecoinbrief.substack.com/p/stablecoin-reserve-race-brazil-pix
1•knivef•30m ago•0 comments

Building agents that reach production systems with MCP

https://claude.com/blog/building-agents-that-reach-production-systems-with-mcp
1•gmays•36m ago•0 comments

Biology is a Burrito: A text- and visual-based journey through a living cell

https://burrito.bio/essays/biology-is-a-burrito
20•the-mitr•50m ago•2 comments

Can LLMs create lasting flashcards from readers' highlights?

https://memory-machines.com/report/
1•jryio•51m ago•0 comments

The Arpanet Reconstruction Project

https://obsolescence.dev/arpanet_home.html
2•ecliptik•52m ago•0 comments

Where the Goblins Came From

https://openai.com/index/where-the-goblins-came-from/
112•ilreb•54m ago•38 comments

Demonstrating the idea of gamma camera imaging [video]

https://www.youtube.com/watch?v=PyGlHtvihXA
5•num42•55m ago•0 comments

Ernie 5.1 Preview

https://ernie.baidu.com/
3•qainsights•57m ago•0 comments

Strait of Hormuz Daily Intelligence

https://insights.windward.ai/
3•jnord•59m ago•0 comments

LFM2-24B-A2B: Scaling Up the LFM2 Architecture

https://www.liquid.ai/blog/lfm2-24b-a2b
2•nateb2022•59m ago•0 comments

Finetuning Activates Verbatim Recall of Copyrighted Books in LLMs

https://github.com/cauchy221/Alignment-Whack-a-Mole-Code
20•reconnecting•1h ago•2 comments

Functional Programmers need to take a look at Zig

https://pure-systems.org/posts/2026-04-29-functional-programmers-need-to-take-a-look-at-zig.html
19•xngbuilds•1h ago•1 comments

Transponders to be installed on New York area airport ground vehicles

https://apnews.com/article/laguardia-plane-crash-air-canada-transponders-18578e94f2f7ec67b5ed45e9...
2•geox•1h ago•0 comments

GitHub Is Sinking

https://dbushell.com/2026/04/29/github-is-sinking/
5•xngbuilds•1h ago•1 comments

Opus 4.7's New Tokenizer: What It Costs

https://openrouter.ai/announcements/opus-47-tokenizer-analysis
4•vinhnx•1h ago•0 comments

Scroll-Driven Animations

https://www.joshwcomeau.com/animation/scroll-driven-animations/
2•vinhnx•1h ago•0 comments

AI Groupchats app just launched

https://techcrunch.com/2026/04/29/meet-shapes-the-app-bringing-humans-and-ai-into-the-same-group-...
2•nooriee•1h ago•1 comments

Show HN: Lssh – Terminal-native remote access suite for SSH and cloud targets

https://github.com/blacknon/lssh
2•blacknon•1h ago•1 comments

What is something you started and then wish you started earlier?

https://old.reddit.com/r/AskReddit/comments/1szjkl5/comment/oj2a8b7/
3•eeko_systems•1h ago•0 comments

I Choose Email over Messaging

https://www.spinellis.gr/blog/20250926/
3•fagnerbrack•1h ago•0 comments