frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Are Your Passwords in the Green? (2025)

https://www.hivesystems.com/blog/are-your-passwords-in-the-green
1•kemotep•1y ago

Comments

kemotep•1y ago
With NIST finally updating their standards to recommend 15 character password minimums last, I like to use their recommendations and compare them to these charts show how effective such a password would be.

Using E = L x log2(R), where E is entropy, L is number of characters in the password (15), and R is the total number of possible characters used (26 for all lowercase letters), you can get ~70 bits of entropy. Using a password manager like Bitwarden for a 15 character password using the full character set minus the ambiguous characters (65 characters total) leads to ~90 bits of entropy.

Using these charts and figures from the article, a well configured bcrypt setup means even the fastest computer systems still in 2025 cap out at 1 billion hashes per second for offline cracking (without getting into Nation States spending billions on just cracking your passwords, or dedicating all the world’s supercomputers or some other speculations). So to calculate how long it would take with a “realistic” password cracker in 2025, would use this formula:

((((((2^(70-1))/ 1 billion hashes per second)/ 60 seconds)/ 60 minutes)/ 24 hours)/ 365 days) to get ~18,700 years. (Nearly 20 billion years for the Bitwarden generated one)

But without a password filter checking for known bad passwords somewhere like Have I Been Pwned, even a 30 character password that has been leaked is useless. Would be instantly “cracked”. So I personally would have the password policy be:

1. 15 character minimum, no composition rules.

2. All passwords filtered for known bad passwords against HIBP.

3. Accounts protected by MFA.

4. Combination of network controls, best practices security configurations, and alerts and monitoring to help detect and limit/eliminate password guessing attacks, password database dumps.

Daily Harvest sued after gallbladders removed after people consumed its product

https://www.cnn.com/2022/07/01/tech/daily-harvest-recall-lawsuits
1•JumpCrisscross•34s ago•0 comments

Can AI Do Intelligence Analysis? Apparently Not

https://blog.predictivedefense.io/p/can-ai-do-intelligence-analysis-apparently
1•beatrobot•8m ago•0 comments

One Equation. Thirty Binaries. Zero Agents

https://github.com/silentnoisehun/Bio-Binaries
1•silentnoisehun•8m ago•0 comments

Database-Centric Architecture

https://en.wikipedia.org/wiki/Database-centric_architecture
1•teleforce•12m ago•0 comments

Trump's Takeover of the American Regulatory Machine

https://www.wsj.com/politics/policy/trump-takeover-regulators-130b57a3
1•KnuthIsGod•14m ago•0 comments

Americans Are Leaving the U.S. in Record Numbers

https://www.wsj.com/podcasts/the-journal/americans-are-leaving-the-us-in-record-numbers/f2ae7db5-...
3•KnuthIsGod•15m ago•1 comments

Ask HN: How do people secure their Linux computer?

1•foo12bar•15m ago•1 comments

Community usage metrics and cost analytics for Claude Code subscriptions

https://meter.vsits.co/
1•sea-gold•16m ago•1 comments

Optimized Point Addition Circuits for Elliptic Curve Discrete Logarithms [pdf]

https://arxiv.org/abs/2606.02235
2•aburan28•17m ago•0 comments

Show HN: 3GPP Spec Manager – A GUI app to track and download 3GPP specifications

https://github.com/chsung/3gpp-spec-manager
2•tughvn•23m ago•1 comments

Implicit.js, a way to program 3D models with mathematical functions

https://www.implicit.sh/
1•softservo•23m ago•1 comments

Does Llms.txt Replace Sitemap.xml

https://docsalot.dev/blog/llms-txt-vs-sitemap-xml
1•fazkan•25m ago•0 comments

Platypus – create native Mac applications from command line scripts

https://github.com/sveinbjornt/Platypus
3•gregsadetsky•25m ago•1 comments

Nvidia to spend $150B a year in Taiwan, 'epicentre' of AI revolution

https://www.reuters.com/world/asia-pacific/nvidia-ceo-says-taiwan-is-epicentre-ai-revolution-2026...
1•JumpCrisscross•26m ago•0 comments

C64 OS – Ready for Internet Action – C64 OS steps it up [video]

https://www.youtube.com/watch?v=9TmJMBHrg7A
1•amichail•26m ago•0 comments

The Effort to Build Ukraine's Ground Robot Arsenal

https://www.twz.com/news-features/inside-the-effort-to-build-ukraines-ground-robot-arsenal
1•JumpCrisscross•30m ago•0 comments

Microsoft's Project Solara is an Android OS designed for agents instead of apps

https://arstechnica.com/gadgets/2026/06/microsofts-project-solara-is-an-android-os-designed-for-a...
1•thunderbong•32m ago•0 comments

A whale of a deal: Paramount's takeover of Warner Bros

https://www.reuters.com/graphics/WARNER-BROS-DIS-MA/PARAMOUNT-SKYDAN/byprngedkpe/
3•giuliomagnifico•32m ago•0 comments

Slow Tools

https://www.quarter--mile.com/Slow-Tools
3•ogundipeore•35m ago•0 comments

Global EV Outlook 2026: Growing sales amid an energy crisis [pdf]

https://iea.blob.core.windows.net/assets/3718cf37-fac6-4ee2-aeb0-1546e6222cfc/GlobalEVOutlook2026...
1•toomuchtodo•37m ago•1 comments

Ransomecare.io a tabletop journey where everything sucks

https://ransomecare.io/value
2•splintersio•37m ago•1 comments

Vim Classic debuts with its first release as a Vim fork without AI assistance

https://www.neowin.net/news/vim-classic-debuts-with-its-first-release-as-a-vim-fork-without-ai-as...
4•bundie•43m ago•0 comments

A rift is splitting Africa apart forming Earth's sixth ocean

https://www.thebrighterside.news/post/a-massive-rift-is-splitting-africa-apart-forming-earths-six...
3•sizzle•44m ago•0 comments

How to Just Do a Thing

https://www.raptitude.com/2026/05/how-to-just-do-a-thing/
2•_vaporwave_•49m ago•0 comments

America's Data Center Build-Out Is Falling Way Behind Schedule

https://www.wsj.com/tech/ai/americas-data-center-build-out-is-falling-way-behind-schedule-e408a9a8
15•1vuio0pswjnm7•55m ago•3 comments

C++: Let's get comfortable with concepts

https://platis.solutions/blog/2026/05/02/lets-get-comfortable-with-concepts/
1•HeliumHydride•55m ago•0 comments

Type-Error Ablation and AI Coding Agents

https://arxiv.org/abs/2606.01522
1•matt_d•56m ago•0 comments

Microsoft Scout: Your always-on personal agent

https://www.microsoft.com/en-us/microsoft-365/blog/2026/06/02/introducing-microsoft-scout-your-al...
2•Garbage•56m ago•0 comments

The American civilians that stayed behind in Saigon

https://connla.substack.com/p/whats-another-year
3•jfil•58m ago•0 comments

Wikiracer–an chess.com style Wikipedia racing website with analysis

https://wikiracer.com
2•smolyar•59m ago•0 comments