>  .... And even then, a sufficiently long passphrase using dictionary words is pretty secure (vs a short one)

As long as the passphrase is not "correcthorsebatterystaple"
which is now in lists of well known compromised passwords.

(obligatory xkcd ref: https://xkcd.com/936/ )

