frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

In 1987, a Student Set Out to Fix a Mac Problem. Ended Up Creating "Photoshop"

https://dailygalaxy.com/2026/04/knoll-brothers-photoshop-creation-story/
1•rmason•1m ago•0 comments

Creative Ideas Emerge to Make Data Centers Beautiful Amid NIMBY Backlash

https://x.com/i/trending/2049962384308289888
1•rmason•5m ago•0 comments

Australia wants to be first nation in the world to eliminate a cancer

https://www.bbc.com/news/articles/cd6w15vgp7lo
1•dabinat•5m ago•0 comments

Senate Panel Backs Guard Act, AI Age Verification Bill

https://reclaimthenet.org/senate-panel-backs-guard-act-ai-age-verification-bill
2•anonymousiam•6m ago•0 comments

FireImg Is Live

https://www.fireimg.com/demo/
1•mjnestor•11m ago•0 comments

Making Money (Or Not) Writing

https://countercraft.substack.com/p/on-making-money-or-not-writing
1•crescit_eundo•12m ago•0 comments

When a Species' Survival Hinges on Every Single Embryo

https://nautil.us/when-a-species-survival-hinges-on-every-single-embryo-1280373
2•Brajeshwar•13m ago•0 comments

Turning chess into a roguelike via design first principles

https://elbowgreasegames.substack.com/p/below-the-crown-launches-10
1•spacemarine1•16m ago•0 comments

I Built an L1 Blockchain Alone in Indonesia

https://paragraph.com/@satyakwikp@gmail.com/i-built-an-l1-blockchain-alone-heres-whats-actually-r...
1•sentrixchain•19m ago•0 comments

Linux averaging ~350 CVEs per day

https://crib.social/notice/B5rY6M7oM93li4Takq
1•gslepak•20m ago•0 comments

PDF Editify

https://pdfeditify.com/
1•Benish_Zulfiqar•20m ago•0 comments

True Frontier labs in India: What do we need to make it happen?

https://twitter.com/ponnappa/status/2050261742174028026
1•ridiculous_leke•22m ago•0 comments

Whimsical Animations Course Open House

https://courses.joshwcomeau.com/wham/open-house/00-introduction
9•SpyCoder77•22m ago•1 comments

Token spend breaks budgets – what next?

https://newsletter.pragmaticengineer.com/p/the-pulse-token-spend-breaks-budgets
1•keeda•25m ago•0 comments

Why Half Your Skills Expire Every Few Years

https://arpitbhayani.me/blogs/half-life/
1•jojobhai•25m ago•0 comments

I Have Lived in Your Camp

https://green.spacedino.net/i-have-lived-in-your-camp/
1•exceptione•27m ago•0 comments

AI is starting to beat doctors at making correct diagnoses

https://www.science.org/content/article/ai-starting-beat-doctors-making-correct-diagnoses
2•bglazer•27m ago•0 comments

The AI scaffolding layer is collapsing. LlamaIndex's CEO explains what survives

https://venturebeat.com/infrastructure/the-ai-scaffolding-layer-is-collapsing-llamaindexs-ceo-exp...
1•momentmaker•29m ago•0 comments

Running Doom on a Travel Router with Touch Screen

https://hackaday.com/2026/05/01/running-doom-on-a-travel-router-with-touch-screen/
1•momentmaker•30m ago•0 comments

The Case for Euthanizing Everyone at Age 65

https://marshallbrain.com/youve-had-your-turn-the-case-for-euthanizing-everyone-at-age-65
1•p2detar•32m ago•1 comments

Elegy for the Hereditary Peers

https://engelsbergideas.com/essays/elegy-for-the-hereditary-peers/
1•bookofjoe•33m ago•0 comments

GIMP 3.4 Will probably draw circles

https://fosstodon.org/@CmykStudent/116455148076446506
3•marcodiego•33m ago•0 comments

Claude Code completes the first level of several ARC AGI 3 games

https://arc-agi-runs.web.app/ls20-47471d22-3e73-4d9b-8ff7-972ef3ea5195/
1•dextersjab•34m ago•1 comments

Upcoming Blender Development Fund and AI Policies

https://www.blender.org/news/upcoming-blender-development-fund-and-ai-policies/
1•dagmx•36m ago•0 comments

Pentagon inks deals with AI giants, but not Anthropic

https://www.dw.com/en/pentagon-inks-deals-with-ai-giants-but-not-anthropic/a-77012715
3•herodoturtle•37m ago•0 comments

The anatomy of message execution after an API returns 200 OK

https://blog.bridgexapi.io/the-anatomy-of-message-execution-what-happens-after-your-api-returns-2...
1•Bridgexapi•37m ago•0 comments

Our poor sleeping habits are filling our brains with neurotoxins (2015)

https://qz.com/424120/our-poor-sleeping-habits-could-be-filling-our-brains-with-neurotoxins
1•downbad_•37m ago•1 comments

Show HN: Pixel-Perfect MaterialX in Blender and Three.js

https://ben3d.ca/blog/pixel-perfect-materialx-in-blender-and-threejs
1•bhouston•39m ago•0 comments

5x speedup of sqlglot (pure Python SQL parser) with mypyc

https://www.fivetran.com/blog/how-we-accelerated-transpilation-by-compiling-sqlglot-with-mypyc
1•captaintobs•41m ago•0 comments

Show HN: Arc Browser + Agents IDE

https://github.com/armantsaturian/ArcNext
1•ArmanTsaturian•42m ago•0 comments