Bill on Nostr: So all my Yubikeys are vulnerable to a cloning attack, but the attack would require: ...
So all my Yubikeys are vulnerable to a cloning attack, but the attack would require: đ» opening the physical YubiKey enclosure đ» physical access to the YubiKey while it is authenticating đ» non-trivial electronics lab equipment
You're still safer using a #Yubikey or similar device, than not using one.
https://www.yubico.com/support/security-advisories/ysa-2024-03/Published at
2024-09-04 00:06:44Event JSON
{
"id": "e5353950543949f1085afcd8fa7b15ea132e4670cddab63f7ea2655dbcb9b1a9",
"pubkey": "f1d3b0ebe1c5ba3b6971b1952084c9052bc6d1eae63d7818e51855384653c905",
"created_at": 1725408404,
"kind": 1,
"tags": [
[
"t",
"yubikey"
],
[
"proxy",
"https://social.itm.osaka/objects/86131334-0d92-4459-9b42-eb34b9ec9de0",
"activitypub"
]
],
"content": "So all my Yubikeys are vulnerable to a cloning attack, but the attack would require: đ» opening the physical YubiKey enclosure đ» physical access to the YubiKey while it is authenticating đ» non-trivial electronics lab equipment\n\nYou're still safer using a #Yubikey or similar device, than not using one.\n\nhttps://www.yubico.com/support/security-advisories/ysa-2024-03/",
"sig": "f8732145c47c40c49d963fd961c0a8892679d556c256d00c1a16c214b06b637fa3f4086a13168a894264447b50144adaae44ebed5d8690c3ce2e6bd3aeb640e6"
}