frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Open Claw Had a Rough Week

https://openclaw.ai/blog/openclaw-rough-week
1•rmason•2m ago•0 comments

Zuckerberg 'personally authorized' Meta's copyright infringement, publishers say

https://apnews.com/article/meta-mark-zuckerberg-ai-publishers-lawsuit-llama-5609846d4d840014974a8...
3•jethronethro•2m ago•0 comments

Introducing Svelte (2016)

https://svelte.dev/blog/frameworks-without-the-framework
2•downbad_•6m ago•2 comments

Shared Lexical Task Representations Explain Behavioral Variability in LLMs

https://arxiv.org/abs/2604.22027
1•PaulHoule•7m ago•0 comments

SingleRide: Longest route on NYC Subway without visiting the same station twice

https://singleride.nyc/
1•TMWNN•7m ago•0 comments

Dating Is a Rich Person's Game Now

https://www.wired.com/story/dating-is-a-rich-persons-game-now/
2•Akababa•7m ago•0 comments

The Inevitable Horror Of Biological Computing [11 min] [video]

https://www.youtube.com/watch?v=wBtr8iv7onA
1•luispa•9m ago•0 comments

SEC Proposes Amendments to Permit Semiannual Reporting by Public Companies

https://www.sec.gov/newsroom/press-releases/2026-42-sec-proposes-amendments-permit-optional-semia...
1•divbzero•9m ago•0 comments

Hong Kong's Secret City: A Labyrinth for 50,000 People (1989) [video]

https://www.youtube.com/watch?v=S-rj8m7Ssow
1•exvi•10m ago•0 comments

Show HN: Two easing curves and no animation library

https://frigade.com/blog/two-curves-no-library
1•pancomplex•11m ago•0 comments

AI Tools Directory and Comparison Platform

https://comparatif.ai-explorer.io
1•LaVoixDuFutur•14m ago•0 comments

Kowloon Walled City Rebuilt in Japan (2013)

https://randomwire.com/kowloon-walled-city-rebuilt-in-japan/
1•exvi•15m ago•0 comments

Claude Code: use cases and tips to get the most out of Claude

https://comparatif.ai-explorer.io/en/tools/claude-code/astuces-claude-code
1•LaVoixDuFutur•15m ago•0 comments

SPEC CPU: The Next Generation

https://arxiv.org/abs/2605.01575
1•matt_d•16m ago•0 comments

Stop Writing Code: The Full-Stack AI Architect

https://blog.jakeschwartz.com/the-full-stack-ai-architect-stop-writing-code-4fde63f04f60
2•JakeSc•17m ago•1 comments

Transfigure – AI That Makes Physical Stuff – Image to Step or Nothing at All

https://xfgr.ai/
1•itstransfigure•17m ago•2 comments

NPR finds "no sign" of Polymarket at its Panama HQ address

https://www.npr.org/2026/05/05/nx-s1-5807918/polymarket-panama-prediction-market
5•ilamont•19m ago•0 comments

Complete Guide: How to Integrate Beehiiv with Hugo via Cloudflare Workers

https://www.lucasaguiar.xyz/posts/newsletter-beehiiv-cloudflare-github/
1•isfttr•24m ago•0 comments

E.F. Schumacher: The Other Way (1975)

https://www.youtube.com/watch?v=lb-OaI0w0cw
1•andrewvc•24m ago•0 comments

Span to launch distributed AI data centers for edge compute

https://www.latitudemedia.com/news/span-to-launch-mini-ai-data-centers-for-distributed-at-home-co...
2•kochb•24m ago•0 comments

A website ranking judges by elo for the cases they dismiss in SF

https://sfcrime.pages.dev/
3•grand_larsony•25m ago•0 comments

Sovereign AI: Control, Choice, and Why It Goes Beyond Geopolitics

https://blog.mozilla.ai/sovereign-ai-control-choice-and-why-it-goes-beyond-geopolitics/
3•benbreen•26m ago•0 comments

Big-fish–little-pond effect

https://en.wikipedia.org/wiki/Big-fish%E2%80%93little-pond_effect
2•chistev•26m ago•0 comments

How the Emerging Indian Middle Handles Money

https://ehdata.org/eh360
1•gmays•27m ago•0 comments

Bose Brings Back Its 'Lifestyle' Branding with New Speakers for the Home

https://www.wired.com/story/bose-brings-back-its-lifestyle-branding-with-new-speakers-for-the-home/
1•apparent•27m ago•1 comments

Perplexity Computer for Professional Finance

https://xcancel.com/perplexity_ai/status/2051693893473935372
1•RockstarSprain•29m ago•0 comments

Why did AI destroy my production database?

https://ulveon.net/p/2026-05-05-why-did-ai-destroy-my-production-database/
2•kevin061•29m ago•0 comments

Apple Reaches $250M Settlement Over Claims It Misled People on A.I

https://www.nytimes.com/2026/05/05/technology/apple-intelligence-lawsuit-settlement.html
2•blintz•29m ago•0 comments

UK's National Health Service to close-source 100+ repos over security concerns

https://www.theregister.com/2026/05/05/nhs_to_closesource_hundreds_of_repos/
3•maxloh•31m ago•0 comments

Show HN: Keyterm Filtering for Voice AI

https://aditu.tech/keyterm-filtering
2•mayowa_osibodu•33m ago•0 comments