frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•8mo ago

Comments

kemotep•8mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

The Dirty Secret of Million-Token Context Windows

https://deadneurons.substack.com/p/the-dirty-secret-of-million-token
1•nr378•2m ago•0 comments

Anthropic cuts off xAI's access to its models for coding

https://sherwood.news/tech/report-anthropic-cuts-off-xais-access-to-its-models-for-coding/
1•CharlesW•2m ago•0 comments

AI almost solved my toddler sleep issues

https://andreabaccega.com/blog/ai-solved-my-toddler-sleep-issues/
1•sMarsIntruder•2m ago•0 comments

A visual roadmap for production observability and debugging

https://nemorize.com/roadmaps/production-observability-from-signals-to-root-cause-2026
1•reverseblade2•6m ago•0 comments

Show HN: HookWatch – Simple webhook monitoring with one-click replay

https://hookwatch-production.up.railway.app
1•hackdat•9m ago•0 comments

UK government exempting itself from cyber law inspires little confidence

https://www.theregister.com/2026/01/10/csr_bill_analysis/
3•DyslexicAtheist•14m ago•0 comments

Kavanaugh Stop

https://en.wikipedia.org/wiki/Kavanaugh_stop
3•amarcheschi•16m ago•0 comments

NASA announces unprecedented return of sick ISS astronaut and crew

https://www.livescience.com/space/space-exploration/nasa-cancels-spacewalk-and-considers-early-cr...
2•bookofjoe•21m ago•0 comments

A vision-based PDF parser to validate contracts in Google Drive

1•scannyai•23m ago•0 comments

Ideas validated and ranked, so you know what to build

https://idealyt.com
1•ainthusiast•32m ago•0 comments

Charts2Go – Professional-looking charts and QR codes with ease and for free

https://charts2go.top
1•wstaeblein•32m ago•1 comments

Using AI, Mathematicians Find Hidden Glitches in Fluid Equations

https://www.quantamagazine.org/using-ai-mathematicians-find-hidden-glitches-in-fluid-equations-20...
2•sonabinu•35m ago•0 comments

Dialogue Between a Developer and a Kid

https://riggraz.dev/dialogue-developer.html
2•birdculture•37m ago•0 comments

Copilot could soon live inside Windows 11's File Explorer

https://www.windowslatest.com/2026/01/09/copilot-could-soon-live-inside-windows-11s-file-explorer...
1•AlexeyBrin•37m ago•1 comments

Ask HN: What happened to self-hosted models?

2•curiousaboutml•45m ago•6 comments

Knotic.io

https://knotic.io/
1•alexisaacs18•50m ago•0 comments

Nvidia said GPUDirect RDMA wasn't supported on Spark. We got RDMA working anyway

https://github.com/autoscriptlabs/nccl-mesh-plugin
1•autoscriptlabs•51m ago•0 comments

Ask HN: Why does job search feel so unclear even for strong candidates?

2•Signatura•52m ago•3 comments

Great Western Railway (1835–1948)

https://web.archive.org/web/20160122155425/https://www.networkrail.co.uk/VirtualArchive/great-wes...
1•jcartw•55m ago•0 comments

LLMs have burned Billions but couldn't build another Tailwind

https://omarabid.com/tailwind-ai
5•todsacerdoti•56m ago•0 comments

What Having a Fake Disease Taught Me About Health Care

https://www.theatlantic.com/health/2026/01/fake-patients-american-healthcare/685510/
1•bookofjoe•56m ago•1 comments

Naming and Logic – programming essentials with Scheme

https://www.draketo.de/software/programming-scheme
1•AlexeyBrin•59m ago•0 comments

Bottle-to-throttle: the precautions airlines take to ensure your pilot is sober

https://www.cnn.com/travel/bottle-to-throttle-sober-pilots-flying-alcohol
1•breve•1h ago•0 comments

The Iranian uprising: A crash course on opposition groups

https://masoud.abkenar.net/blog/en/2026/iranian-opposition-groups/
3•SJk7TAy•1h ago•1 comments

Fresh Water at Sea in the Golden Age of Piracy

https://www.piratesurgeon.com/pages/surgeon_pages/water1.html
2•exvi•1h ago•0 comments

Show HN: DeleteThreads – Bulk delete and auto-prune Meta Threads posts

https://deletethreads.net/
1•lysddp•1h ago•0 comments

All my new code will be closed-source from now on

https://twitter.com/MarcJSchmidt/status/2009688028931875156
54•mvelbaum•1h ago•57 comments

Time Might Exist in 3 Dimensions–and That Changes Our Ideas About the Univers

https://www.popularmechanics.com/space/a69960999/3-dimensions-of-time-theory/
2•janandonly•1h ago•0 comments

Show HN: Yuanzai World – LLM RPGs with branching world-lines

https://www.yuanzai.world/
2•yuanzaiworld•1h ago•0 comments

Ask HN: Senior engineering mngrs: how has AI changed your day-to-day work?

2•kitetm•1h ago•0 comments