home.social

#yubico — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #yubico, aggregated by home.social.

fetched live
  1. This #Yubico #YubiKey Standard from approximately 2012 was on my personal key ring ever since on a daily basis. It has been my first FIDO2 token.

    It now ceased to work after approx. 14 years as it's no longer recognized by a computer when plugged in.

    Fortunately, it's been mostly replaced by a newer key months ago. So no data loss. Furthermore, I always had a second token that was registered with the same services anyway.

    That's my personal data point for durability of #FIDO2 #security hardware tokens. Not bad, I'd say. 👍️

    I still prefer FIDO2 HW tokens over #passkeys because HW tokens are not prone to #phishing: karl-voit.at/FIDO2-vs-Passkeys/ (German)

    #2FA #MFA #securitytokens #publicvoit #20241005_FIDO2VsPasskeys

  2. OpenAI ersetzt Passwörter und Recovery-Optionen für ChatGPT durch Hardware-Schlüssel und Passkeys.

    Die Advanced Account Security deaktiviert E-Mail- und SMS-Wiederherstellungen komplett. Konten mit dieser Stufe werden vom Training der KI-Modelle ausgeschlossen. Für Cybersecurity-Experten im Programm »Trusted Access for Cyber« wird die FIDO-kompatible Hardware-Bindung bis Juni 2026 Pflicht.

    #ChatGPT #OpenAI #Yubico #FIDO #AIGeneratedImage

    all-ai.de/news/news26/openai-s

  3. Yubico and OpenAI are partnering on hardware-backed security keys for ChatGPT users.

    Dawn Manley, senior vice president of product management at Yubico, told us that traditional security methods are no longer sufficient for AI-driven workflows involving sensitive data and automated actions.

    “We are introducing a new model for phishing-resistant security at scale for the AI ecosystem."

    movetheneedle.news/brands/yubi

    #AI #security #technology #innovation #openai #yubico #business

  4. Yubico i samarbete med OpenAI, lanserar skräddarsydda säkerhetsnycklar för AI-användare. Initiativet är en del av OpenAI:s program för avancerad kontosäkerhet och riktar sig särskilt till användare med förhöjd riskbild. borsposten.se/yubico-i-samarbe #aktier #Yubico #OpenAI

  5. what's the deal with the Yubikey pop-up when you use NFC? It's highly irritating and on iPhone it seems to interfere with other logins - instead of approving a login, I get the pop-up on the second tap.

    Is there any way to deactivate the pop-up, short of replacing the Yubikey with a competitor?

    #Yubikey #Yubikey5nfc #Yubico #iPhone #NFC #enshittification

  6. Theo actually did it...

    From
    https://www.openbsd.org/78.html

    Do not attach YubiKeys as keyboards anymore in ukbd(4). This disables the OTP functionality, but makes it easier to use the FIDO function without the need to configure the YubiKeys correctly first.
    #BSD #FIDO #keyboard #OpenBSD #OTP #Yubico #YubiKey

  7. Phishing-Mails: Viele Nutzer:innen erkennen Betrugsmails nicht mehr sicher
    Eine neue Studie zeigt: Phishing-Mails sind oft so überzeugend, dass viele Menschen sie nicht mehr von echten Nachrichten unterscheiden können. Das macht solche Angriffe für Unternehmen u
    apfeltalk.de/magazin/news/phis
    #News #Sicherheit #Cybersicherheit #KI #MultiFaktorAuthentifizierung #Passkeys #Phishing #Sicherheitsschlssel #Yubico

  8. New Privacy Guides article 🔑✨
    by me:

    If you are using a YubiKey,

    you might get in some situations where you need to reset your key to factory default, and/or set up a backup of it on a spare key.

    This tutorial will guide you
    through each step to reset and back up your YubiKey successfully, with clear instructions and plenty of visual support.

    I hope you find it helpful!

    privacyguides.org/articles/202

    #PrivacyGuides #Privacy #Yubico #YubiKey #Security #OTP #OpenPGP #Encryption #MFA

  9. Always remember, when it comes to hardware security keys: Two is one, one is none.

    Our latest article covers the setup process for two YubiKeys (from Yubico's YubiKey 4 or 5 series) to keep your online accounts safe and secure 🔒 + it goes through resetting your existing keys to a blank slate, and the reasons you might want to do so!

    privacyguides.org/articles/202

    #YubiKey #HardwareSecurity #Privacy #Yubico #Security #PrivacyGuides #Article

  10. apropos of absolutely nothing here's the #NSA's official best practices on mobile device security. some top tips:

    1. restart your device regularly (it's very hard for spyware to survive a restart, especially on an iPhone)
    2. avoid public wifi
    3. do not use public charging stations
    4. disable bluetooth
    5. don't install apps

    to which i would add:

    1. if you have an iPhone consider using apple's "Lockdown Mode" which prevents most pegasus style 0-click attacks
    2. consider using a hardware USB key for securing your most important accounts. #yubico's #yubikey is a good option.

    s3.documentcloud.org/documents

    #privacy #journalism #journalists #infosec #cybersecurity #uspol

  11. #Yubico #Security Advisory YSA-2025-01 – Partial Authentication Bypass in pam-u2f Software Package (Yubico Said No YubiKey Hardware Impacted By 2FA Bypass Issue) yubico.com/support/security-ad

  12. so the internet agrees, that #ed25519 is the way to do signatures (see random 1st search hit scottbrady91.com/jose/jwts-whi) and yet, neither webauthn.io nor #yubico demo-site, nor #github actually supports that algo.

    #webauthn

  13. @iamkale @tychotithonus I was so excited when reading this first today, but it doesn't seem like it's generally available: "Keys are available exclusively via YubiKey as a Service". What does that mean?

    I use Yubikeys as an individual opensource contributor for SSH authentication and commit signing, I've been looking forward to this release since I posted this: infosec.exchange/@hertg/112577

    But it appears that this still isn't a release for me. Or am I missing something?

    #yubico #yubikey #pgp #opensource