At the same time 1Password increased their count from 100000 to 650000.
OWASP recommended 600,000 iterations for PBKDF-HMAC-SHA256.
The standard was written 24 years ago recommending a minimum number of 1000, with the intention of increasing as CPU speeds increase. A count of 1000 is too low for today’s CPU speeds.