frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•12mo ago

Comments

kemotep•12mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

AI Makes Sitting with Discomfort Feel Shameful

https://www.bennadel.com/blog/4890-ai-makes-sitting-with-discomfort-feel-shameful.htm
1•alabhyajindal•1m ago•0 comments

Show HN: Scan your OSS projects for vulnerabilities

https://console.zeroquarry.com/
1•eskibars•2m ago•0 comments

Show HN: Lose_law – Tiny CLI for Random Laws of Software Engineering

https://github.com/theElandor/lose_law
1•ettore_c•3m ago•0 comments

Stacey Unresolved

https://thecynefin.co/stacey-unresolved/
1•swolpers•6m ago•0 comments

Papyrio – Free PDF converter, no signup, no watermark

https://www.papyrio.net/
1•atabekdemurtaza•7m ago•0 comments

Smolwebifying My Site

https://akselmo.dev/posts/smolwebifying-my-site/
3•birdculture•12m ago•0 comments

How to Leverage IPv6 Subnets for Infinite Proxy Rotation

https://substack.thewebscraping.club/p/use-ipv6-scraping-nyxproxy
1•HughParry•14m ago•0 comments

Ateneo VR escape room game teaches Philippine Martial Law to a new generation

https://www.ateneo.edu/news/2026/04/ateneo-vr-escape-room-game-teaches-martial-law-new-generation
1•JeanKage•19m ago•0 comments

ZX Spectrum Archive

https://manic232.github.io/ZX-Spectrum-Archive-2026/ZX%20Spectrum%20Archive.htm
1•ivvve•21m ago•0 comments

Show HN: Async multi-person collaboration skill for Claude Code

https://github.com/AI-Collab-Skill/collab-session-skill
2•siclark•23m ago•1 comments

Politico execs meet staff, letter warns CEO risks 'undermining our reputation'

https://www.semafor.com/article/04/27/2026/axel-springer-politico-execs-meet-with-staff-after-let...
1•doener•24m ago•0 comments

The Long-Term Effects of Feeding Lionfish to Sharks and Groupers on the Reefs [video]

https://www.youtube.com/watch?v=RNJp6kydYzQ
1•skibz•25m ago•0 comments

Song Sung Blue: From Barstool to Big Screen

https://www.reelasdirt.com/song-sung-blue
1•js2•26m ago•0 comments

Build a voice agent using Soniox STT and TTS

https://soniox.com/docs/demo-apps/soniox-voice-agent
1•easwee•27m ago•0 comments

The CNRS is calculating digital environmental footprints

https://www.cnrs.fr/en/update/cnrs-calculating-digital-environmental-footprints
2•JeanKage•29m ago•0 comments

Show HN: Minimal Linux sandboxes to manage AI-Generated Code with ease

https://github.com/bugthesystem/agentjail
1•bugthesystem•31m ago•0 comments

AOMedia Releases Polygonal Mesh Coding Standard Reference Software

http://aomedia.org/press%20releases/AOMedia-Releases-Reference-Software-for-Polygonal-Mesh-Coding...
1•dabinat•32m ago•0 comments

Binary 2Pac

https://twitter.com/TuckermintNet/status/2049051430154088650
1•PerfectPicture•33m ago•0 comments

When model distillation becomes a diplomatic incident

https://underlines.news/2026/04/26/us-orders-global-diplomatic-warning-on-chinese-distillation-of...
1•dtedesco1•36m ago•0 comments

We moved our blog off Webflow and what it cost us

https://blog.bunnyhoneyclub.com/posts/why-we-moved-our-blog-off-webflow
1•shadowinbox•38m ago•0 comments

China surpasses US in research spending

https://theconversation.com/china-surpasses-us-in-research-spending-the-consequences-extend-far-b...
2•JeanKage•39m ago•0 comments

Lovable: We're Currently Experiencing Issues

https://status.lovable.dev/
1•doener•39m ago•0 comments

Why the same LLM gives different answers in different environments

https://johndwade.substack.com/p/the-environment-rewrites-the-question
2•edgecased•40m ago•2 comments

Greenest countries eye drilling as fix for Iran crisis

https://www.politico.eu/article/worlds-greenest-countries-eye-drilling-as-fix-for-iran-crisis/
2•leonidasrup•44m ago•0 comments

If this doesn't scream AI bubble is about to burst IDK what does

https://docs.github.com/en/copilot/reference/copilot-billing/models-and-pricing
3•julia-kafarska•45m ago•2 comments

Goodbye Tim Apple – daily.dev Show [video]

https://www.youtube.com/watch?v=XKO67n3xfzM
2•idosh•47m ago•0 comments

What Type of AI Usage?

https://jensrantil.github.io/posts/types-of-ai-implementations/
1•JensRantil•47m ago•1 comments

AI Is Cannibalizing Human Intelligence

https://www.wsj.com/tech/ai/is-ai-smarter-than-humans-cyborg-956e0f0e
3•JeanKage•48m ago•0 comments

$1,605: average annual ad value of a U.S. Google user

https://proton.me/blog/what-is-your-data-worth-to-google
5•muzzy19•51m ago•2 comments

A Field Guide to Bugs

https://www.stephendiehl.com/posts/field_guide_to_bugs/
1•signa11•52m ago•0 comments