frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•10mo ago

Comments

kemotep•10mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Show HN: I built DoodleDuel, a free browser drawing game with an AI judge

https://doodleduel.co/?a=9000
1•yagelar•2m ago•0 comments

Sand Under a Microscope – Magnified Sand Photos

https://magnifiedsand.com/
1•thunderbong•4m ago•0 comments

We almost bought an automation platform. Cowork was one

https://barazany.dev/blog/we-already-had-the-automation-platform
1•barazany•5m ago•0 comments

Ask HN: Founders of estonian e-businesses – is it worth it?

1•udl•6m ago•0 comments

Rapprochement between Hyperion and Amiga; OS 3.2 available again

https://amiga-news.de/en/news/AN-2026-03-00108-EN.html
1•doener•10m ago•1 comments

OpenAI Parameter Golf Challenge

https://openai.com/index/parameter-golf/
2•mellosouls•12m ago•0 comments

I built a free web tool to generate Kubernetes YAML for Podman play kube

https://podman-generator.rzen.at/
1•Garfieldttt•19m ago•1 comments

Ask HN: Depending on AI for anything important is a horrible idea, agree?

2•roschdal•21m ago•0 comments

Porting Doom to ESP32-P4 Using Doom Generic

https://github.com/alexkid77/ESP32P4DOOM
1•alexkid777•23m ago•1 comments

Show HN: VeilVault – an Android password manager built to stay local

https://veilvault.codeveil.de/index.en.html
1•codeveil•24m ago•1 comments

Someone has publicly leaked an exploit kit that can hack iPhones

https://techcrunch.com/2026/03/23/someone-has-publicly-leaked-an-exploit-kit-that-can-hack-millio...
1•simonebrunozzi•26m ago•0 comments

Show HN: I built the modern, clean and AI native linktree app

https://linkroot.space
1•IsruAlpha2•26m ago•0 comments

Russian Authorities Block Archive.today

https://techcrunch.com/2026/03/23/russian-authorities-block-paywall-removal-site-archive-today/
1•treebrained•29m ago•0 comments

Show HN: Overlay map tiles onto Autodesk's 3D BIM Viewer

https://github.com/infra-plan/bim-tile-overlay
1•gubets•30m ago•0 comments

Have You Paid Your "Intuit Tax"?

https://www.thenation.com/article/politics/tax-season-income-wealth-data/
1•petethomas•34m ago•0 comments

The US government just banned consumer routers made outside the US

https://www.theverge.com/news/899172/fcc-foreign-router-ban
4•bennett_dev•37m ago•0 comments

An end-to-end AI drug discovery platform – accessible to anyone

https://orac-nt-core.onrender.com/
3•DREDREG•38m ago•0 comments

23,464 Stock Trades Cross-Referenced Against 12,350 Breach Signals

https://ciphercue.com/blog/stock-transactions-breach-signals-cross-reference
3•adulion•39m ago•0 comments

Gasoline prices around the world, 16-Mar-2026 – GlobalPetrolPrices.com

https://www.globalpetrolprices.com/gasoline_prices/
3•janandonly•44m ago•0 comments

Native Instant Space Switching on macOS

https://arhan.sh/blog/native-instant-space-switching-on-macos/
2•signa11•53m ago•0 comments

You can now enable Claude to use your computer to complete tasks

https://twitter.com/i/status/2036195789601374705
3•matthieu_bl•54m ago•0 comments

Apple is set to put ads in Apple Maps in services push

https://www.msn.com/en-us/money/other/apple-is-set-to-put-ads-in-apple-maps-in-services-push/ar-A...
2•01-_-•55m ago•1 comments

The Homework Machine

https://insightfultroll.com/blog/2025/12/30/homework-machine/
1•vparikh•56m ago•1 comments

Is TrustMRR the right place to sell a SaaS?

https://trustmrr.com/startup/picx-studio
1•Yash16•57m ago•0 comments

Tangent Tree for ChatGPT Conversations

https://www.getaiworkspace.com/
2•Strikeh•59m ago•0 comments

The Death of OpenAI's Whistleblower Makes No Sense: What Happened to Suchir[video]

https://www.youtube.com/watch?v=v5WgQHCPB8Q
1•Imustaskforhelp•1h ago•0 comments

We're burning the future to simulate intelligence. Aether is the alternative

https://github.com/stillsilent22-spec/Aether-
2•Trybetter•1h ago•0 comments

OCP – Use your Claude Pro/Max subscription as an OpenAI-compatible API($0 extra)

https://github.com/dtzp555-max/openclaw-claude-proxy
3•dtzp555-max•1h ago•2 comments

PicoZ80 Is a Drop-In Replacement for Everyone's Favorite Zilog CPU

https://hackaday.com/2026/03/23/picoz80-is-a-drop-in-replacement-for-everyones-favorite-zilog-cpu/
2•neomech•1h ago•0 comments

March, 19-21: God is a comedian

https://no01.substack.com/p/march-19-21-god-is-a-comedian
11•tastyface•1h ago•2 comments