frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•9mo ago

Comments

kemotep•9mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Racket Syntax: The Great, the Good and the Back-to-the-Drawing-Board (2024) [video]

https://www.youtube.com/watch?v=ZtTqRH1uwu4
1•so-cal-schemer•57s ago•1 comments

MacKenzie Scott's $26B Sugar Pile

https://garryslist.org/posts/mackenzie-scott-s-26-billion-sugar-pile
1•gmays•1m ago•0 comments

Game developers and pixel artists are losing their jobs

https://www.sprite-ai.art
1•tjco•2m ago•1 comments

What would a "permissions-first ORM" look like? Looking for spec feedback

https://typescript-superapp.bunnytech.app/docs
1•iosifnicolae2•2m ago•1 comments

Instagram boss says 16 hours of daily use is 'problematic' not addiction

https://www.bbc.com/news/articles/cn71mgmzljlo
1•pseudolus•4m ago•0 comments

Earthquake Magnitude Scale

https://www.mtu.edu/geo/community/seismology/learn/earthquake-measure/magnitude/
1•teleforce•7m ago•0 comments

India's 'AI Impact Summit' Promises Little More Than Spectacle

https://internetfreedom.in/indias-ai-impact-summit-promises-little-more-than-spectacle/
1•akbarnama•8m ago•0 comments

AI Writes Code in Seconds. Why Do Your Tests Take Minutes?

http://stumpy.ai/blog/your-ai-writes-code-in-seconds
1•bluesnowmonkey•9m ago•2 comments

Robert Duvall, Oscar-winning actor and 'Godfather' mainstay, dead at 95

https://www.cnbc.com/2026/02/16/robert-duvall-dies-at-95.html
2•pseudolus•12m ago•1 comments

Rare Pokemon card sets record with $16.5M sale

https://www.japantimes.co.jp/life/2026/02/16/digital/pokemon-card-sale-most-expensive-pikachu-ill...
1•anigbrowl•13m ago•0 comments

Beating GPT-2 for less than $100 – Andrej Karpathy

https://github.com/karpathy/nanochat/discussions/481
2•logicprog•18m ago•0 comments

Show HN: Bulwark – Open-source governance layer for AI agents (Rust, MCP-native)

https://github.com/bpolania/bulwark
1•bpolania•20m ago•2 comments

Ask HN: Best roles in tech where I can be in meetings mostly?

2•general_reveal•22m ago•2 comments

Vulnerabilities in cloud-based password managers [pdf]

https://eprint.iacr.org/2026/058.pdf
3•leobdkr•24m ago•1 comments

Ask HN: Which password manager do you use / would you recommend?

3•unodonut•26m ago•5 comments

Linux CVE Assignment Process

http://www.kroah.com/log/blog/2026/02/16/linux-cve-assignment-process/
2•LorenDB•28m ago•1 comments

Lack of measurement invariance in mental health across intelligence levels

https://www.sciencedirect.com/science/article/abs/pii/S0160289625000662
1•i7l•29m ago•0 comments

Show HN: Krea iPad – real-time editing model with Apple Pencil input

https://twitter.com/venturetwins/status/2023107207500566675
1•dvrp•29m ago•0 comments

Dark web agent spotted bedroom wall clue to rescue girl from abuse

https://www.bbc.com/news/articles/cx2gn239exlo
40•colinprince•32m ago•3 comments

Meta: Messenger.com is no longer available for messaging

https://www.facebook.com/help/messenger-app/804132271957789
3•ddxv•33m ago•1 comments

OddsRabbit- Reddit Alternative that doesn't allow politics. Only hobbies

https://play.google.com/store/apps/details?id=com.oddsrabbit.app&hl=en_US
1•Gothypink•34m ago•2 comments

The AWS Marketplace Race Condition Nobody Warns You About

https://sidshome.wordpress.com/2026/02/16/the-aws-marketplace-race-condition-nobody-warns-you-about/
1•sijain2•34m ago•1 comments

Humanoids go mainstream as China's robotics champions appear at CCTV spectacle

https://www.scmp.com/tech/big-tech/article/3343634/chinas-tech-companies-vie-attention-cctvs-fest...
2•akyuu•34m ago•0 comments

The claws are open, until they close around you, out of your control

https://blog.inconsistentrecords.co.uk/blog/the-claws-are-open-until-they-close-around-you/
2•circadian•35m ago•0 comments

Friday CLI: The first multi-modal CLI Agent (chat/voice/video/images)

https://www.npmjs.com/package/@tryfridayai/cli
1•datacog•36m ago•1 comments

Is End-to-End Encryption Optional for Large Groups?

https://soatok.blog/2026/02/14/is-end-to-end-encryption-optional-for-large-groups/
1•birdculture•37m ago•1 comments

Nimslo stereo camera

https://en.wikipedia.org/wiki/Nimslo
1•petethomas•40m ago•0 comments

Cowork: Claude Code Power for Knowledge Work

https://claude.com/product/cowork
2•Anon84•43m ago•0 comments

More macOS 26.3 Finder column view silliness

https://lapcatsoftware.com/articles/2026/2/4.html
5•JumpCrisscross•44m ago•0 comments

This Is What Destroying the Vaccine Market Looks Like

https://www.thebulwark.com/p/this-is-what-destroying-the-vaccine-market-looks-like-moderna-flu-pr...
5•hn_acker•47m ago•4 comments