frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•7mo ago

Comments

kemotep•7mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Cultural Institutions Are Erasing Christianity

https://thecritic.co.uk/cultural-institutions-are-erasing-christianity/
1•barry-cotter•3m ago•0 comments

New UK home-maintenance membership (waitlist open)

1•mykelcodes•4m ago•0 comments

Token-Count-Based Batching: Faster, Cheaper Embedding Inference for Queries

https://www.mongodb.com/company/blog/engineering/token-count-based-batching-faster-cheaper-embedd...
1•fzliu•4m ago•0 comments

Show HN: We built a native bridge to make WebRTC calls reliable in hybrid apps

1•Mincirkel•6m ago•0 comments

Espruino: Embedded JavaScript,dev boards and smart watch

https://www.espruino.com
2•jgrizou•7m ago•1 comments

US targets former EU commissioner with visa bans over alleged censorship

https://www.reuters.com/legal/government/us-targets-former-eu-commissioner-activists-with-visa-ba...
2•amarcheschi•8m ago•1 comments

Macroni – open-source DSL for human-like macroing

https://github.com/srschreiber/macroni
1•srschreiber•15m ago•1 comments

Show HN: I automated Warren Buffett's brain on Poe. It's uncomfortably accurate

https://poe.com/BuffettlyAI
1•simullab•17m ago•2 comments

Design Patterns for Decentralized Protocols (2020) [video]

https://www.youtube.com/watch?v=JDrdgk1L-ww
1•teleforce•20m ago•0 comments

Scientists Unlock a New Way to Hear the Brain's Hidden Language

https://scitechdaily.com/scientists-unlock-a-new-way-to-hear-the-brains-hidden-language/
1•andsoitis•24m ago•0 comments

Piling Up Sheets / the face in the soup bowl

https://jens.mooseyard.com/1995/08/23/piling-up-sheets-/-the-face-in-the-soup-bowl/
1•andsoitis•25m ago•0 comments

Compiler Explorer

https://godbolt.org
1•andsoitis•25m ago•0 comments

CASA: Cross-Attention via Self-Attention

https://kyutai.org/casa
2•swyx•26m ago•0 comments

US bars 5 Europeans it says pressured tech firms to censor American viewpoints

https://apnews.com/article/state-department-trump-immigration-rubio-visas-87c8a4692f3184e4f83fdd8...
8•c420•30m ago•1 comments

Shittycodingagent.ai: There are many shitty coding agents, but this one is mine

https://shittycodingagent.ai/
1•the_mitsuhiko•31m ago•0 comments

Ask HN: What's your current agentic coding setup?

1•Icheler•33m ago•1 comments

How changing your diet could help save the world

https://news.ubc.ca/2025/12/how-changing-your-diet-could-help-save-the-world/
2•geox•34m ago•2 comments

We Must Seize the Means of Compute

https://thompson2026.com/blog/seize-the-means-of-compute/
2•NickForLiberty•35m ago•0 comments

Show HN: qckfx – Record your iOS simulator sessions, replay them as tests

1•chw9e•39m ago•0 comments

P2B Modification Guide

https://tipperlinne.com/p2bmod.html
1•p_ing•40m ago•0 comments

Move over Spotify. It's 311 Wrapped

https://www.311wrapped.com/
1•eltokh7•40m ago•0 comments

An initial analysis of the discovered Unix V4 tape

https://www.spinellis.gr/blog/20251223/
2•zdw•41m ago•0 comments

Renewables lead by solar and wind overtook coal in the first half of 2025

https://ember-energy.org/latest-insights/global-electricity-mid-year-insights-2025/
1•QueensGambit•47m ago•0 comments

Terawatt whitepaper: a blueprint for fleet-scale EV charging [pdf]

https://cdn.prod.website-files.com/659d87f22f67fd9bbaac94a7/694a73fd82319bfdb74fc546_terawatt-whi...
2•terawattinfra•48m ago•0 comments

Against SemVer

https://www.natemeyvis.com/against-semver/
1•Theaetetus•49m ago•1 comments

Car Payments Now Average More Than $750 a Month. Enter the 100-Month Car Loan

https://www.wsj.com/business/autos/car-payments-now-average-more-than-750-a-month-enter-the-100-m...
3•bookofjoe•49m ago•1 comments

Complexity Ceilings and Licensing Wars: My 2026 Predictions

https://johnjames.blog/posts/complexity-ceilings-and-licensing-wars-my-2026-predictions
1•johnjames4214•54m ago•0 comments

Is Northern Virginia Still the Least Reliable AWS Region?

https://statusgator.com/blog/aws-least-reliable-region-in-2025/
14•colinbartlett•54m ago•1 comments

People as Files

https://fakepixels.substack.com/p/people-as-files
1•walterbell•55m ago•0 comments

Dronage Terminal: a terminal based drone workstation

https://github.com/boorch/dronage-terminal
1•anigbrowl•56m ago•0 comments