frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

The Mirage of the Gifted Child

https://nymag.com/intelligencer/article/gifted-talented-intelligence-public-schools-testing.html
1•apparent•30s ago•0 comments

Europe 2031: What getting AI wrong means for us

https://europe2031.ai/
1•doener•7m ago•0 comments

Show HN: Ciris – an open-source AI agent in 29 languages on iOS and Android

https://ciris.ai/
1•emooreatx•10m ago•0 comments

AgentForge–28 production-grade skills that make AI agents ship reliable code

https://github.com/borhen68/SkillEngine
1•borhensaidi•12m ago•0 comments

Biological Evolution and Information Acquisition

https://www.construction-physics.com/p/biological-evolution-and-information
2•chmaynard•15m ago•0 comments

Loop Harness Is Here

https://github.com/lSAAGl/loop-harness
1•LordIsBack•17m ago•0 comments

My first ever game – a Godot arcade game with zero asset files

https://forcesensitivesaiyan.itch.io/reactor-panic
2•sonofseyon•20m ago•1 comments

Mixture-of-Experts (Moe), Explained: Why "Active Parameters" Decide What Runs

https://vettedconsumer.com/mixture-of-experts-moe-explained-why-active-parameters-decide-what-run...
2•ermantrout•21m ago•0 comments

Lessons from brain-wide association studies

https://www.thetransmitter.org/fmri/breaking-down-the-winners-curse-lessons-from-brain-wide-assoc...
1•joveian•22m ago•0 comments

SOTA Models Should Learn to KISS (Claude Fable 5 Experiment)

https://blog.kilo.ai/p/sota-models-should-learn-to-kiss
1•justiceforsaas•23m ago•0 comments

Show HN: Free API for social post metrics – URL in, views/likes/comments out

https://pulse.walls.sh/
1•patwalls•23m ago•0 comments

Why Giving Money to Africa Makes it Poor [video][15 mins]

https://www.youtube.com/watch?v=rXuPTQdVv7U
1•Bender•25m ago•0 comments

Making FlashAttention-4 faster for inference

https://modal.com/blog/flash-attention-4-faster
1•matt_d•25m ago•0 comments

Building a Good Vertical Agent

https://twitter.com/brainsandtennis/status/2065190286519906657
1•aduermael•28m ago•0 comments

Show HN: Emergenv: Compose+compute env files from SSH-encrypted fragments in Git

https://github.com/anoyomoose/emergenv
1•anoyomoose•29m ago•0 comments

Elon Musk is the first trillionaire (on paper) thanks to the SpaceX IPO

https://www.washingtonpost.com/technology/2026/06/11/elon-musk-is-worlds-first-trillionaire-paper...
1•andsoitis•30m ago•1 comments

SpaceX IPO makes Elon Musk the world's first trillionaire

https://www.reuters.com/business/media-telecom/spacex-ipo-makes-elon-musk-worlds-first-trillionai...
1•nanfinitum•30m ago•0 comments

EasySweep

https://github.com/target/easysweep
1•salmon•30m ago•0 comments

What we learned shipping VS Code weekly [video]

https://www.youtube.com/watch?v=hH4RiA7pk5Q
1•azhenley•30m ago•0 comments

SpaceX Officially Raises $75B in Record-Breaking IPO

https://www.wsj.com/livecoverage/stock-market-today-dow-sp-500-nasdaq-06-11-2026/card/spacex-offi...
2•andsoitis•31m ago•0 comments

Failure numbers every programmer should know

https://thundergolfer.com/blog/
1•thundergolfer•31m ago•0 comments

Yes to California's Bill to Ban Surveillance Pricing

https://www.eff.org/deeplinks/2026/06/californias-bill-ban-surveillance-pricing
2•hn_acker•34m ago•0 comments

Elon Musk's SpaceX raises $75B in biggest IPO

https://www.ft.com/content/1890e552-aa7e-4d7f-98f1-db4f165e8827
2•JumpCrisscross•35m ago•0 comments

Envelope Collective

https://envelopecollective.com/
1•zdgeier•38m ago•0 comments

Against All Odds: BMW USA Sees a 'Bright Future' for Manuals

https://www.bmwblog.com/2026/06/11/bmw-still-sees-bright-future-manuals-us/
1•Anumbia•38m ago•0 comments

EU right of withdrawal compliance for merchants selling to EU customers

https://help.shopify.com/en/manual/compliance/legal/eu-right-of-withdrawal
2•nnx•39m ago•0 comments

Peter Zeihan lecture on broad risks to DRAM/ASIC supply from global events

https://www.youtube.com/watch?v=-XJ9dWuUuQI
1•OgsyedIE•40m ago•0 comments

Databricks Hands Delta Sharing to the Linux Foundation and Levels It Up

https://techstrong.ai/articles/databricks-hands-delta-sharing-to-the-linux-foundation-and-levels-...
1•CrankyBear•41m ago•0 comments

Man survives five days on deserted island eating two lemons and charcoal

https://www.independent.co.uk/news/world/americas/brazilian-gardener-deserted-island-rescue-b2146...
1•austinallegro•42m ago•0 comments

The Era of Token Scarcity

https://taylandurmus.substack.com/p/the-era-of-token-scarcity
1•TayD•43m ago•0 comments