frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Meta repeatedly snubs EU body over Facebook and Instagram user bans

https://www.bbc.com/news/articles/c152yvwjwkko
1•dijksterhuis•25s ago•0 comments

Code Slop Isn't a Model Problem, It's a Harness Problem

https://www.aakash.io/tech-chase/code-slop-isnt-a-model-problem-its-a-harness-problem
1•ahstilde•40s ago•0 comments

The Permanent Underclass

https://ctlamy.com/thoughts/the-permanent-underclass/
1•christophelamy•51s ago•0 comments

Fixing Alembic's Multiple Heads Problem with Git

https://julien.danjou.info/blog/fixing-alembics-multiple-heads-problem-with-git/
1•JulianMaurin1•55s ago•0 comments

Show HN: Sedon – node based 3D generation

https://github.com/greggman/sedon
1•greggman65•2m ago•0 comments

Microsoft Office 2019 for Mac will soon stop letting you edit documents

https://www.macrumors.com/2026/06/02/microsoft-office-2019-for-mac-no-edit-documents/
1•gloxkiqcza•2m ago•0 comments

Canadian workers struggle to take paid vacation. Is burnout far behind?

https://www.theglobeandmail.com/life/article-canadians-arent-taking-their-paid-vacation-days-can-...
1•sefrost•3m ago•1 comments

Building Bauble

https://ianthehenry.com/posts/bauble/building-bauble/
1•tmoertel•3m ago•0 comments

Show HN: Eyeball

https://tools.myurll.in/eyeball
1•qranalytica•4m ago•0 comments

Open-source NLI ensemble matches Sonnet 4.6 on RAGTruth at 1/250x the cost

https://github.com/firish/rag-rack/blob/main/blog/03_verified_rag.md
1•firish•4m ago•0 comments

John Deere Faces Second Class Action for Monopolizing Repair

https://www.techdirt.com/2026/06/01/john-deere-faces-second-class-action-for-monopolizing-repair/
1•speckx•5m ago•0 comments

I built a datasheet-aware PCB review tool to catch respin bugs

https://app.promptpcb.ai/demo?board=rk3588s
1•devingator•5m ago•0 comments

XLight Finalizes $150M CHIPS grant to build new EUV source in Albany

https://finance.yahoo.com/sectors/technology/articles/xlight-finalizes-150m-chips-incentives-1400...
1•osnium123•5m ago•0 comments

New propulsion system could make tiny satellites both fast and fuel-efficient

https://news.mit.edu/2026/new-propulsion-system-could-make-tiny-satellites-fast-fuel-efficient-0601
1•gnabgib•6m ago•0 comments

Shorebird in Anger: A Production Flutter Code Push Integration

https://about.kikoff.com/build/shorebird-in-anger-a-production-flutter-code-push-integration
1•mooreds•6m ago•0 comments

Beyond the Echo – How satellites steer the radar beam

https://www.iceye.com/blog/beyond-the-echo-how-satellites-steer-the-radar-beam
1•mooreds•7m ago•0 comments

The Emptiness of the Crowded Governor's Race in California

https://www.newyorker.com/news/the-lede/the-strange-emptiness-of-the-crowded-governors-race-in-ca...
1•littlexsparkee•7m ago•0 comments

Hands-On with Coalesce MCPs: Transform, Catalog, and Quality

https://coalesce.io/product-technology/hands-on-with-coalesces-mcps-part-2-building-data-engineer...
1•mooreds•7m ago•0 comments

Dressed/Daily – AI picks your outfit from your wardrobe based on today's weather

https://www.dressed-daily.app
1•ricardojst•8m ago•0 comments

A Potential Client Almost Cost Me My Google Account

https://maxschmitt.me/posts/phishing-attempt
1•Mackser•9m ago•0 comments

Claude Code vs. Cursor vs. Codex vs. Antigravity – Six Months In

https://thenewstack.io/claude-code-vs-cursor-vs-codex-vs-antigravity-2026/
1•Brajeshwar•9m ago•0 comments

Structural Holes and Good Ideas (2004) [pdf]

https://www.bebr.ufl.edu/sites/default/files/Burt%20-%202004%20-%20Structural%20Holes%20and%20Goo...
1•jruohonen•10m ago•1 comments

Show HN: LocalSheets, a single-file spreadsheet with a local-only AI panel

https://github.com/zohaibus/localsheets
1•zpusmani•10m ago•0 comments

Mind your mentions: a mention is a task, not an FYI

https://mindyourmentions.com/
1•bluebuffalo•10m ago•0 comments

Visionary Research on Infinities

https://app-c2bp101xkow1.appmedo.com/
1•tvali•11m ago•1 comments

Upper Management Meeting [video]

https://www.youtube.com/watch?v=DmU9uovmT2A
1•vismit2000•11m ago•0 comments

KDE Plasma 6.8 Planning to End X11 Support, 95% of Plasma 6.6 Users on Wayland

https://www.phoronix.com/news/KDE-Plasma-Wayland-Ex-X11
2•speckx•11m ago•0 comments

AI Workflows Need Topological Sort

https://arpitbhayani.me/blogs/ai-topological-sort/
1•random42•12m ago•0 comments

Extension Developers Sell the Data of at Least 6.5M Users

https://layerxsecurity.com/blog/your-extensions-sell-your-data-and-its-perfectly-legal/
2•ilreb•12m ago•0 comments

Intelligent keyword generation. Nothing more

https://zymacs.github.io/rthots/intelligent_but_humble/
1•kernzistor45•13m ago•0 comments