frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Fully In-Browser Container Builds

https://ochagavia.nl/blog/fully-in-browser-container-builds/
1•wofo•28s ago•0 comments

AI load breaks GitHub – why not other vendors?

https://blog.pragmaticengineer.com/the-pulse-ai-load-breaks-github/
1•gtirloni•1m ago•0 comments

The EO community probably does not need your weekend package

https://www.spectralreflectance.space/p/the-eo-community-probably-does-not
1•marklit•1m ago•0 comments

OpenSMTPD Is the Mail Server for the Future

https://nxdomain.no/~peter/time_for_opensmtpd.html
1•rodrigo975•3m ago•0 comments

Do you review AI generated code differently based on where it is in your code?

1•thillel•4m ago•0 comments

Migrating a decade-old Ubuntu 16.04 blog to FreeBSD on Hetzner

https://discoverbsd.com/p/346669143d
2•rodrigo975•5m ago•0 comments

Simulating a 3D Quadcopter from Scratch

https://mrandri19.github.io/2026/04/11/3d-quadcopter-simulation.html
1•daww•5m ago•1 comments

LulaEdge – An open-source sharding orchestrator for Cloudflare D1

https://github.com/RodrigoManzanares/LulaEdge
2•rodmanLula•6m ago•0 comments

The AI Boom Is Reshuffling the Global Stock Market Hierarchy [video]

https://www.youtube.com/watch?v=48ffHKbQpbE
1•mgh2•7m ago•0 comments

Show HN: My biggest solo-project: Game engine with its own programming language

https://github.com/ArcadeMakerSources/ArcadeMaker
2•am-gm•8m ago•0 comments

UK records its highest ever May temperature

https://www.theguardian.com/uk-news/2026/may/25/uk-heat-may-temperature-record-weather
1•helsinkiandrew•9m ago•0 comments

Amazon launches new AI Wearable "Bee"

https://bee.computer/
2•mdrzn•11m ago•0 comments

Show HN: MarketChacha – Reddit for traders with verified track records

https://marketchacha.com
1•rsingh867•14m ago•0 comments

US's big bet on quantum computing may not be legal

https://arstechnica.com/tech-policy/2026/05/uss-big-bet-on-quantum-computing-may-not-be-entirely-...
1•furcyd•15m ago•0 comments

Control Bilibili with CLI Commands for AI Agents (0 Token Cost)

https://mediause.dev/skills/bilibili
2•yooibox•16m ago•0 comments

Show HN: BDR – A Type-Safe, Cucumber-Free BDD Template for Playwright

https://github.com/dmitryAQA/playwright-bdr-template
1•dmitryaqa•16m ago•0 comments

Google has seriously leaned into AI enshittification lately

https://www.theregister.com/ai-ml/2026/05/25/google-has-seriously-leaned-into-ai-enshittification...
2•sbulaev•16m ago•0 comments

MinimAIlist OS (MOS) – A Manifesto for a Post-Legacy Operating System

https://github.com/pulstar/mos
2•PulStar•16m ago•0 comments

Show HN: Interactive animated walkthroughs of Kubernetes internals

https://explained.kubesimplify.com/
1•saiyampathak•16m ago•0 comments

Ask HN: Do you embrace AI in your life and business?

1•drunx•17m ago•1 comments

How the Iran War Could Threaten Global Internet Access

https://time.com/article/2026/05/19/iran-war-subsea-cables-internet-strait-hormuz-gulf-states-ai/
1•giuliomagnifico•17m ago•0 comments

Memelang: Token-Terse Query Language

https://memelang.net/11/
1•bri-holt•18m ago•0 comments

Mnemosyne – Memory for AI Hermes Agents, Sub-Millisecond Recalls, Local First

https://mnemosyne.site/
2•AbdiiSan•22m ago•0 comments

Show HN: Proj – organize your coding projects with categories and one-key CD

2•whizhuii•22m ago•0 comments

Agentic AI Design Patterns for Developers (2026)

https://learnagenticpatterns.com
3•ankitg12•23m ago•0 comments

Local-First Twitter Workspace

https://birdclaw.sh/
2•cat-whisperer•24m ago•0 comments

Beyond Senior: Consider the staff path

https://hawksley.org/2026/01/14/beyond-senior.html
3•RyeCombinator•24m ago•0 comments

Your Function's Doppelgänger (Fenchel Conjugate)

https://fedemagnani.github.io/math/2025/07/04/fenchel.html
2•drunello•25m ago•0 comments

Spec-Drive Development (SDD) compressed with math-glyphs

https://lab5.ca/blog/spec-driven-development/
2•kborovik•26m ago•0 comments

Awesome: Lists about all kinds of interesting topics

https://github.com/sindresorhus/awesome
2•danborn26•28m ago•0 comments