Its areas of expertise and responsibility include the security of computer applications, critical infrastructure protection, Internet security, cryptography, counter eavesdropping, certification of security products and the accreditation of security test laboratories. It is located in Bonn and has over 600 employees.

According to security researcher Florian Bogner, KeePass uses unencrypted HTTP requests when retrieving updates (as well as a few other tasks). This makes it possible for an attacker to introduce a

As others have noted, KeePass's encryption is not the weak spot, key management is. Is the data that might be put at risk with the compromise of those things in your KeePass db valuable enough to warrant the Amazon compute time it would take to crack your password?

