Hacker News new | ask | show | jobs
by eviks 611 days ago
Quite the opposite

> these new passwords have 71 bits of entropy, up from the 69 from the previous format.

1 comments

I am referring to the loss of entropy compared to a (theoretically) fully random 20-chars password.
Nit, 160 bits of entropy would be if you could get 8 bits per character, but that’s highly unrealistic. 6.0~6.3 bits is more feasible based on what most websites will tend to accept, which lands you at around 120-126 bits of entropy for a fully random password.