frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Revolut Joins Global Stablecoin Race with Euro-Backed Token

https://www.bloomberg.com/news/articles/2026-08-26/revolut-joins-global-stablecoin-race-with-euro...
1•thm•35s ago•0 comments

Multilayer Network Backboning

https://www.michelecoscia.com/?p=2583
1•mikk14•1m ago•0 comments

SleepJEPA: Learning the latent world of sleep to estimate disease risk

https://pmc.ncbi.nlm.nih.gov/articles/PMC13042106/
1•brandonb•2m ago•0 comments

'This is crazy. This is insane': Bill Gates has changed his mind about AI,jobs

https://www.semafor.com/article/08/25/2026/this-is-crazy-this-is-insane-bill-gates-has-changed-hi...
1•thm•2m ago•0 comments

A Drone Killed Three Ukrainians. It Was Guided by A.I

https://www.nytimes.com/2026/08/24/world/europe/russia-drones-autonomous-ai-kill-ukraine-war.html
1•YeGoblynQueenne•6m ago•1 comments

Drive-By Agent Hijacking: One Website Visit, Persistent Model Poisoning

https://www.cyera.com/research/nemoclaw-one-website-visit-to-hijack-your-ai-agent
1•shimi12•8m ago•0 comments

Veryfront Code, the first full-stack AI framework

https://github.com/veryfront/veryfront-code
2•kojiwakayama•14m ago•1 comments

One sentence owns this page until you pay $1 more

https://takethethrone.fun
1•letapnahsor•18m ago•0 comments

Is this the civilization we really want? (2017)

https://dynamicland.org/archive/2017/Is_this_the_civilization_we_really_want
1•panic•19m ago•0 comments

WICG/Local-Peer-to-Peer

https://github.com/WICG/local-peer-to-peer
1•eternityforest•21m ago•0 comments

MIDI-hook – Your MIDI controller, now a command center

https://github.com/skorotkiewicz/midi-hook
2•modinfo•21m ago•0 comments

Chinese robot Tiangong clocks sub-9 second 100 metres

https://www.reuters.com/world/asia-pacific/chinese-robot-tiangong-clocks-sub-9-second-100-metres-...
1•hakkikonu•22m ago•0 comments

Reconstructing the benchmark behind Luc Julia's 64% LLM reliability claim

https://github.com/angeluriot/Julia_bench
2•matthieu_bl•25m ago•0 comments

The Market for Lemons

https://en.wikipedia.org/wiki/The_Market_for_Lemons
3•tosh•28m ago•0 comments

Wayland "Intrinsically Faster Than X11, but Not Necessarily More Efficient"

https://www.phoronix.com/news/Wayland-X11-Performance-PorteuX
2•rbanffy•28m ago•0 comments

A problem with RLVR training data

https://twitter.com/SkyeSharkie/status/2092122622834442581
1•tosh•29m ago•0 comments

How We Used AI to Bring MongoDB to DynamoDB

https://www.mongodb.com/company/blog/technical/how-we-used-ai-bring-mongodb-to-dynamodb
1•reticentraccoon•29m ago•0 comments

Casey Muratori – The Root of the Root of All Evil – BSC 2026 [video]

https://www.youtube.com/watch?v=hpj6r6CjJf8
2•gingerBill•30m ago•0 comments

A New Framework for How the Brain Compresses Our Noisy World

https://www.quantamagazine.org/a-new-framework-for-how-the-brain-compresses-our-noisy-world-20260...
1•isaacfrond•34m ago•0 comments

Ask HN: Why do you use Ubuntu?

1•flanked-evergl•36m ago•1 comments

ByteDance Launches AI Office Product "Doubao Work"

https://www.ithome.com/0/993/865.htm
1•JulianVance•37m ago•1 comments

US removes Syria from terrorism sponsor list, lifting major investment obstacle

https://www.reuters.com/world/middle-east/us-removes-syrias-designation-state-sponsor-terrorism-2...
4•imadj•39m ago•1 comments

Effect v4 core package now has no external dependencies

https://twitter.com/tim_smart/status/2092430414837407896
1•tosh•39m ago•0 comments

Ask HN: What are you using to access x.com at the moment?

1•throwaw12•40m ago•2 comments

Bill Gates says world has "no plan" on AI in new essay

https://www.gatesnotes.com/a-turbulent-ai-era-and-critical-choices-to-make
4•aroman•42m ago•1 comments

S21

https://store.steampowered.com/app/4953120/S21/
2•ofrzeta•43m ago•1 comments

Dollywood

https://en.wikipedia.org/wiki/Dollywood
2•thunderbong•44m ago•0 comments

How to export Gemini chat to word without losing formatting [video]

https://www.youtube.com/watch?v=PZZGjJpPDM0
3•slimcrm•44m ago•1 comments

A joke for founders about the perfect startup geography [20 secs]

https://www.mangialardi.it/the-startup-paradox/
1•rm30•44m ago•1 comments

CSS Runtime Performance

https://nolanlawson.github.io/css-talk-2022/#1
1•luu•47m ago•1 comments
Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.