How secure is KeePass KDBX4 by default if someone obtain the .kdbx file and attempt to brute-force it without knowing any hint of the master password?
With assumption :
- The password length is equal/more than 20 character
- Password is chosen from a book and tweaked (by change some alphabet into number)
- Database file encryption algorithm (default option) : AES/Rijndael (256-bit key, FIPS 197) as
Parameter for Key transformation (default parameter) :
- Key derivation function : Argon2
- Iterations : 2
- Memory : 1 MB
- Parallelism : 2
P.S. i know there's similar question at How difficult to crack keepass master password?, but it was created before KDBX4 released
P.P.S. parameter above is default parameter generated by KeePass 2.42.1