frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•10mo ago

Comments

kemotep•10mo ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

How Trump Decided to Go to War

https://www.nytimes.com/2026/03/02/us/politics/trump-war-iran-israel.html
1•jbegley•1m ago•0 comments

Show HN: PEP 827 – TS-like type manipulation in Python

https://peps.python.org/pep-0827/
2•1st1•2m ago•0 comments

How would a AI first company will manage costs after the AI Bubble bursts?

1•not_that_d•2m ago•0 comments

Ask HN: Do current events scare you?

1•general_reveal•3m ago•0 comments

Hacktivists claim to have hacked Homeland Security to release ICE contract data

https://techcrunch.com/2026/03/02/hacktivists-claim-to-have-hacked-homeland-security-to-release-i...
1•WaitWaitWha•3m ago•0 comments

All claims of extraterrestrial life must pass these 7 hurdles

https://bigthink.com/starts-with-a-bang/claims-extraterrestrial-life-7-hurdles/
1•PaulHoule•3m ago•0 comments

Dr. StrangeClaw or: how I learned to stop worrying and love the AI

https://www.chrisfarris.com/post/dr_strangeclaw/
1•Corrado•4m ago•0 comments

Cartly: An iOS Receipt Tracking Demo Built on Mnexium

1•Mnexium•4m ago•0 comments

Show HN: Memgraph-agent – NER+PageRank memory for AI agents, $0 LLM cost

https://github.com/yangyihe0305-droid/memgraph-agent
1•yangyihe0305•4m ago•0 comments

Show HN: Know Your SMD Footprints

https://www.pikkoloassembly.com/footprints/
1•pikkoloassembly•5m ago•0 comments

Microgpt Lab

https://ko-microgpt.vercel.app/
1•tmsln•5m ago•0 comments

On-Policy Prediction with Approximation

https://chizkidd.github.io//2026/02/27/rl-sutton-barto-notes-ch009/
1•ibobev•5m ago•0 comments

What Crystals Older Than the Sun Reveal About the Start of the Solar System

https://www.quantamagazine.org/what-crystals-older-than-the-sun-reveal-about-the-start-of-the-sol...
1•ibobev•6m ago•0 comments

Show HN: 58% cost by replacing file reads with a dependency graph on AI Coding

2•nicola_alessi•6m ago•1 comments

What makes a game tick? Part 9 – Data Driven Multi-Threading Scheduler

https://mropert.github.io/2026/02/27/making_games_tick_part9/
1•ibobev•6m ago•0 comments

Completing the formal proof of higher-dimensional sphere packing

https://www.math.inc/sphere-packing
1•salkahfi•6m ago•0 comments

Show HN: license checker for npm projects

https://github.com/Chrilleweb/licop
3•chrillemn•8m ago•0 comments

Treasury terminates Anthropic AI use after Trump's order

https://www.axios.com/2026/03/02/treasury-trump-ai-anthropic-pentagon
4•biffles•9m ago•0 comments

Show HN: Gapless.js – gapless web audio playback

https://github.com/RelistenNet/gapless.js
1•switz•9m ago•0 comments

Go is the best language for agents

https://getbruin.com/blog/go-is-the-best-language-for-agents/
5•karakanb•9m ago•0 comments

KGet 1.6.0

https://github.com/davimf721/kget
2•Ghoulmf7221•10m ago•1 comments

"Poisoned Wells," the largest study of website blocking in India to date

https://twitter.com/Squeal/status/2028317140605100499
3•madmanweb•10m ago•1 comments

In The Pentagon Battle with Anthropic, We All Lose

https://www.thefp.com/p/in-the-pentagon-battle-with-anthropic
3•speckx•11m ago•0 comments

"That Shape Had None" – A Horror of Substrate Independence (Short Fiction)

https://starlightconvenience.net/#that-shape-had-none
2•casmalia•13m ago•0 comments

Anonymous Credentials: An Illustrated Primer

https://blog.cryptographyengineering.com/2026/03/02/anonymous-credentials-an-illustrated-primer/
2•sedatk•13m ago•0 comments

Show HN: Smart-commit-rs – A zero-dependency Git commit tool in Rust

https://github.com/gtkacz/smart-commit-rs
1•gtkacz•14m ago•0 comments

Ask HN: Self Sustaining Codebases

1•rs545837•15m ago•0 comments

Home of Astrophotography

https://app.astrobin.com/
2•manulins•15m ago•0 comments

Show HN: Ccbridge – A CLI to Orchestrate Claude Code and Codex

https://github.com/marko3190/ccbridge
1•marko3190•17m ago•0 comments

Show HN: War.direct – Real-time conflict intelligence dashboard for the Iran war

https://war.direct
1•Urbaneye•17m ago•0 comments