frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Stop Asking "Saga or 2PC." Start Asking What Each Operation Needs

https://medium.com/scalar-engineering/stop-asking-saga-or-2pc-start-asking-what-each-operation-ne...
1•feeblefakie•10m ago•0 comments

Australia's Waratah Super Battery Now Operating at Full Capacity

https://www.bloomberg.com/news/articles/2026-09-28/waratah-super-battery-australia-s-most-powerfu...
1•toomuchtodo•19m ago•1 comments

How the stories about all-powerful AI are swallowing the world

https://www.bloodinthemachine.com/p/how-the-stories-about-all-powerful
1•eustoria•21m ago•0 comments

Comics RSS: RSS feeds of comics

https://www.comicsrss.com/
1•eustoria•23m ago•0 comments

Ask HN: Do you think AI agents can escape human control?

2•automaticallyfl•24m ago•1 comments

OpenAI pauses training of latest models

https://www.nbcnews.com/tech/tech-news/openai-pauses-training-latest-models-agents-searched-us-go...
1•geoffbp•27m ago•1 comments

What a black bear is: 30 claims, checked against primary sources

https://pub-a941bfd863a24f91a60e6c4979c18a84.r2.dev/pi-sandbox-uploads/343507889626812416/2026-09...
1•oricvandson•31m ago•0 comments

What Happened to the Coronagraph?

https://blogs.esa.int/proba-3/2026/03/19/what-happened-to-the-coronagraph/
1•bryanrasmussen•32m ago•0 comments

Australia Senate Requests OpenAI, Anthropic CEOs Face AI Inquiry

https://www.bloomberg.com/news/articles/2026-09-27/australia-senate-requests-openai-anthropic-ceo...
3•oxag3n•33m ago•0 comments

Thinking Fast and Slow in AI: The Role of Metacognition

https://arxiv.org/abs/2110.01834
4•teleforce•36m ago•0 comments

99.26% storage reduction with exact reconstruction on 100-version repo

https://github.com/openzfs/zfs/discussions/19201
2•bamboozledlabs•42m ago•0 comments

Agdog – htop and nvitop, fused and agent-aware

https://github.com/dynaum/agdog
1•dynaum•42m ago•0 comments

RFPeptides: De novo design of protein-binding macrocycles using deep learning

https://www.nature.com/articles/s41589-025-01929-w
1•brandonb•42m ago•0 comments

Who is responsible for limiting global warming to 1.5 degrees?

https://www.universiteitleiden.nl/en/news/2026/09/phd-stephanie-cap
1•geox•47m ago•0 comments

What 'ferritin face' means – and how to tell if you may be iron-deficient

https://www.washingtonpost.com/wellness/2026/09/15/what-ferritin-face-means-how-tell-if-you-may-b...
1•brandonb•56m ago•0 comments

YouTube has a Propaganda Problem [video]

https://www.youtube.com/watch?v=H8YdOF1yXfM
6•justhw•1h ago•0 comments

The #2 x402 seller on Base funded its own buyers

https://chainward.ai/decodes/x402-on-base
1•saltxd•1h ago•0 comments

Night of Ten Thousand Lanterns – interactive dynamic painting

https://www.echohive.ai/experiments/lanterns
2•echohive42•1h ago•1 comments

Armada: Encrypted, Open-Source, Discord Alternative (Built on Nostr)

https://soapbox.pub/armada
16•long____cat•1h ago•0 comments

An open protocol for agent feedback

https://feedback.now/
1•iacguy•1h ago•0 comments

Debian 11 bullseye-security repos have gone missing after botched EOL process

https://lists.debian.org/debian-mirrors/2026/09/msg00001.html
6•superkuh•1h ago•2 comments

Roundup of October 2026 Bootstrapper Events

https://bootstrappersbreakfast.com/2026/09/22/roundup-of-october-2026-bootstrapper-events/
1•skmurphy•1h ago•1 comments

Microsoft drops Copilot+ branding from its new laptops

https://www.tomshardware.com/tablets/microsoft-surface/microsoft-quietly-drops-copilot-branding-f...
18•anthuswilliams•1h ago•5 comments

Build a Real‑Time Telemetry Pipeline for SpaceX Starship Launches

https://thelooplet.com/posts/how-to-build-a-real-time-telemetry-pipeline-for-spacex-starship-laun...
3•killme2008•1h ago•0 comments

You are a 1000x maker, and you can't think of how to make your stack 10x better?

https://twitter.com/josevalim/status/2103751481757216781
6•thunderbong•1h ago•3 comments

Nissan's third generation e-POWER powertrain

https://www.nissan-global.com/EN/INNOVATION/TECHNOLOGY/ARCHIVE/E_POWER_GEN3/
13•mroche•1h ago•9 comments

TabPFN and TabICL vs. tuned XGBoost: the model that doesn't train won 14/14

https://efraingaray.com/en/blog/tabpfn-vs-xgboost/
4•EfrainGaray•1h ago•0 comments

How to build a Jev-style classifier with DiffusionGemma and vLLM

https://medium.com/google-cloud/how-to-build-a-jev-style-classifier-with-diffusiongemma-and-vllm-...
1•teleforce•1h ago•2 comments

Russia hits Ukraine's largest mobile provider, strikes data centres

https://www.reuters.com/business/aerospace-defense/russia-hits-ukraines-largest-mobile-provider-s...
5•giuliomagnifico•1h ago•0 comments

Minecraft beat Minecraft after 2B years

https://www.pcgamer.com/games/survival-crafting/minecraft-beat-minecraft-after-2-billion-years/
8•morder•1h ago•0 comments
Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.