frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•9mo ago

Comments

kemotep•9mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Personal Side Project: Open-Sourcing My VPS Security Toolkit

https://github.com/jaymunshi/vps-sentinel
1•jaymunshi•43s ago•1 comments

Memory in Coding Agents

https://nicoritschel.com/writing/memex/
1•nicoritschel•1m ago•0 comments

Show HN: Instagram auto-poster skill for AI agents (bypasses bot detection)

https://github.com/virixlabs/instagram-poster
1•virixlabs•1m ago•0 comments

Show HN: schematra-app skill (bootstrap your scheme web app using agents)

1•funkaster•6m ago•0 comments

Sidemantic: Universal Metrics Layer

https://github.com/sidequery/sidemantic
1•nicoritschel•8m ago•0 comments

Red Hat takes on Docker Desktop with its enterprise Podman Desktop build

https://thenewstack.io/red-hat-enters-the-cloud-native-developer-desktop-market/
2•CrankyBear•9m ago•0 comments

Did a prize-winning novelist steal a woman's life story?

https://www.theguardian.com/books/2026/feb/17/did-a-prize-winning-novelist-steal-a-woman-life-sto...
1•randycupertino•12m ago•0 comments

Ask HN: Is the original iPhone SE just a brick now?

1•stared•14m ago•1 comments

Novel bond coat material enables thermal barrier coatings to operate at 1,200°C

https://techxplore.com/news/2026-02-bond-coat-material-enables-thermal.html
2•PaulHoule•16m ago•0 comments

Spain has blocked access to freedom.gov

https://twitter.com/Pirat_Nation/status/2025643188321714642
3•akyuu•18m ago•0 comments

Bending Time: Retracing Timezones Off Lines

https://reconnaissance.robincoenen.de/bending-time/
1•leonat•18m ago•0 comments

Intermittent errors in skills-related functionality

https://status.claude.com/incidents/5pr1d63fdjml
1•taoh•18m ago•0 comments

Distribution Is the New Engineering

https://sagivo.com/blog/distribution-is-the-new-engineering
1•sagivo•21m ago•0 comments

Training AI Without the Data You Don't Have

https://docs.eventsourcingdb.io/blog/2026/02/23/training-ai-without-the-data-you-dont-have/
1•goloroden•21m ago•0 comments

Show HN: Skill Kit – Local-first analytics for AI agent skills

https://github.com/crafter-station/skill-kit
1•Hunter17•24m ago•1 comments

Pentagi: Autonomous AI Agents for complex penetration testing tasks

https://github.com/vxcontrol/pentagi
1•nateb2022•24m ago•0 comments

Dear researchers: Is AI all you've got?

https://austinhenley.com/blog/dearresearchers.html
2•nomemory•25m ago•0 comments

Ask HN: Share your workflow with AI developer tools

1•fsto•26m ago•0 comments

New algorithm is designed to obey the laws of physics

https://actu.epfl.ch/news/new-ai-algorithm-is-designed-to-obey-the-laws-of-p/
2•geox•26m ago•0 comments

Japanese Death Poems

https://www.secretorum.life/p/japanese-death-poems-part-3
1•NaOH•27m ago•0 comments

Minnesota court justice quietly negotiated deal over ICE enforcement in courts

https://www.startribune.com/white-house-minnesota-supreme-court-chief-justice-quietly-negotiated-...
2•hn_acker•30m ago•1 comments

Bending the CLOS Mop for Java-Style Single Dispatch

https://atgreen.github.io/repl-yell/posts/clos-mop-dispatch/
1•atgreen•31m ago•1 comments

Play CSS-defined animations with JavaScript – KeyframeKit

https://keyframekit.berryscript.com/
1•barhatsor•33m ago•0 comments

The Mythology of Conscious AI

https://www.noemamag.com/the-mythology-of-conscious-ai/
1•MindGods•41m ago•0 comments

The Tears of Donald Knuth

https://cacm.acm.org/opinion/the-tears-of-donald-knuth/
2•todsacerdoti•41m ago•0 comments

ChatGPT Sees the World

https://twitter.com/elonmusk/status/2025265181266153606
1•anonymousiam•42m ago•1 comments

Show HN: Aeterna – Self-hosted dead man's switch

https://github.com/alpyxn/aeterna
2•alpyxn•42m ago•0 comments

'Peanut butter' pay raises could cost companies their top performers

https://www.cnbc.com/2026/02/22/peanut-butter-pay-raises-could-cost-companies-their-top-performer...
5•cebert•42m ago•0 comments

Show HN: GitHub Issues in the Terminal

https://github.com/JayanAXHF/gitv
2•frxgfa•43m ago•0 comments

Robots, Grannies and Meaning-Adjusted Work Days

https://twitter.com/notevenwrongg/status/2025656572458746156
2•georgestrakhov•46m ago•0 comments