I've started using really long passphrases that are easy for me to remember, because they are made up of a meaningful series of words. To a computer though, it looks like a *very * long string of totally random characters. A standard dictionary attack will fail because the words are in a non-English language, so the dictionary attack would have to test every possible combination of every word in every known language. Good luck with that.
@mike_hales I used to do that, but most of those substitutions are well known and easy to add as automated variations in a dictionary attack. So they add very little to the security to your passphrase, while making it significantly harder to remember accurately (see #xkcd 936)