2

I use a keepass password manager with a master password of more than 100 bits. I keep the password file in cloud storage. If an attacker has my password file, it should be difficult for them to brute force the password. Suppose that they have additionally cracked my password for one or more accounts that I have in my password manager, perhaps due to server-side security breaches. Will this help them to crack the master password?

gerrit
  • 1,920
  • 1
  • 19
  • 26

1 Answers1

2

No, knowing one or multiple passwords doesn't compromise a master password, no matter if these known passwords are derived from the master password or have been generated by the application itself. Here is a nice answer about how hard it actually is to crack a Keepass master password.

As for the comments about Enigma: Enigma doesn't make use of any master password and has been cracked using other methods, see cryptanalysis of the Enigma.

AleksanderCH
  • 731
  • 4
  • 11
  • 23