frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•10mo ago

Comments

kemotep•10mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Making a Black Bedroom Furniture Set Work

https://medium.com/@sumitkumar_33957/making-a-black-bedroom-furniture-set-work-c26f0d0239d7
1•dreamhomestore•16s ago•1 comments

Greetings from the Other Side (Of the AI Frontier)

https://substack.com/home/post/p-189177740
1•Garbage•17s ago•0 comments

EEGFrontier – an open-source EEG board built from scratch

https://github.com/TheusHen/EEGFrontier
1•TheusHen•6m ago•1 comments

My journey from a todo app to a VM where tasks are stateful executable programs

1•tracyspacy•6m ago•0 comments

Code Mode: Giving AI Agents an API in 1k Tokens (With Demos)

https://twitter.com/Cloudflare/status/2027331989632581690
1•emot•7m ago•0 comments

Try this difficult maths game

https://the67numbergame.github.io/
1•_snory•7m ago•1 comments

The Broken Token: Tokenization for Malayalam Language Models

https://thottingal.in/blog/2026/02/27/malayalam-tokenizer-llm/
1•sthottingal•8m ago•0 comments

Longbridge-Terminal: A TUI trading application based on Longbridge OpenAPI

https://github.com/longbridge/longbridge-terminal
1•mstruebing•9m ago•0 comments

Show HN: AI powered OSINT platform for Brazilian due diligence

https://vero.stratir.com
1•VanceVP•10m ago•0 comments

What It's Like to Love Someone the Internet Thinks It Knows

https://yinsuboaster.substack.com/p/what-its-like-to-love-someone-the
1•areoform•11m ago•0 comments

I Stopped Building for Humans

https://unulu.ai/blog/ai-agents-web-infrastructure
1•zeebs•11m ago•0 comments

Xkcd 2501 Generator

https://marshdeer.github.io/xkcd2501-generator/
1•Kye•11m ago•0 comments

Ransomware groups switch to stealthy attacks and long-term access

https://www.csoonline.com/article/4137010/ransomware-groups-switch-to-stealthy-attacks-and-long-t...
2•kseniamorph•16m ago•0 comments

Offlining a Live Game with .NET Native AOT

https://sephnewman.substack.com/p/offlining-a-live-game-with-net-native
2•kg•18m ago•0 comments

Communication Files: Interprocess IO before Pipes (2017) [pdf]

https://www.cs.dartmouth.edu/~doug/DTSS/commfiles.pdf
1•mpweiher•18m ago•0 comments

US Customs destroys rare floppy disk

https://twitter.com/TehKeripo/status/2027171532825571678
2•Shank•18m ago•0 comments

Chinese car crashes after voice command kills headlights

https://carnewschina.com/2026/02/27/car-crashes-after-voice-command-kills-headlights-lynk-co-z20-...
3•giuliomagnifico•18m ago•0 comments

PostmarketOS in 2026-02: generic kernels, bans use of generative AI

https://postmarketos.org/blog/2026/02/26/pmOS-update-2026-02/
2•pantalaimon•20m ago•0 comments

Perplexity Computer Review – $100 lost in an hour

https://old.reddit.com/r/perplexity_ai/comments/1rfver4/perplexity_computer_review_100_lost_in_an...
1•daniel_iversen•20m ago•0 comments

Pentagon Fires Another Laser at Drone, Prompting New Air Closure

https://www.nytimes.com/2026/02/26/us/drone-faa-dhs-el-paso-airspace.html
1•reaperducer•20m ago•0 comments

A benchmark of expert-level academic questions to assess AI capabilities – HLE

https://www.nature.com/articles/s41586-025-09962-4
1•tufo•20m ago•0 comments

Blame RMS for AI Coding

https://bit1993.bearblog.dev/blame-rms-for-ai-coding/
3•bit1993•22m ago•0 comments

The war against PDFs is heating up

https://www.economist.com/business/2026/02/24/the-war-against-pdfs-is-heating-up
3•jcartw•23m ago•1 comments

The Insane Stupidity of UBI

https://geohot.github.io//blog/jekyll/update/2026/02/27/the-insane-stupidity-of-ubi.html
1•swah•24m ago•2 comments

Why your AI agents have goldfish syndrome

https://substack.com/home/post/p-189327282
1•vektormemory•27m ago•0 comments

Global Intelligence Crisis

https://www.citadelsecurities.com/news-and-insights/2026-global-intelligence-crisis/
1•jbredeche•27m ago•0 comments

Osmix

https://medium.com/conveyal-blog/introducing-osmix-365c4b4332ef
1•maxerickson•30m ago•0 comments

Which piece of speculative fiction had the greatest one-day stock market impact?

https://www.ft.com/content/f12398a8-ef57-412f-ae40-67ef9b421bed
2•cainxinth•33m ago•1 comments

AI Isn't the Excuse. It's the Enabler

https://devrimvardar.com/topic/ai-enabler-layoffs
1•devrimco•34m ago•1 comments

Show HN: Caddy plugin that charges AI crawlers real USDC to access your site

https://github.com/paolobietolini/caddy-x402
1•paolobietolini•35m ago•2 comments