cognitive cybersecurity intelligence

News and Analysis

Search

YubiKeys are vulnerable to cloning attacks thanks to newly discovered side channel

The YubiKey 5, a widely used device for two-factor authentication, can be cloned due to a cryptographic flaw, putting devices including smartcards, electronic passports and access to secure areas at risk. The vulnerability lies within a microcontroller, used in many authentication devices, and rooting it out permanently is impossible due to the nature of the YubiKey’s firmware. With physical possession of the Key, knowledge of targeted accounts, and specialist equipment, the Keys can be exploited.

Source: arstechnica.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts