TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Yubikeys are vulnerable to cloning attacks thanks to side channel

13 pointsby tatersolid9 months ago

3 comments

dredmorbius9 months ago
Dupe: &lt;<a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41434500">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41434500</a>&gt;
hennell9 months ago
&gt;The attacks require about $11,000 worth of equipment and a sophisticated understanding of electrical and cryptographic engineering. The difficulty of the attack means it would likely be carried out only by nation-states or other entities with comparable resources and then only in highly targeted scenarios. The likelihood of such an attack being used widely in the wild is extremely low.<p>While this isn&#x27;t great advertisement for Yubikey, it doesn&#x27;t feel like the most practical of exploits. And as it&#x27;s mostly(only?) used as second factor it&#x27;s one of many hurdles most things don&#x27;t warrant.<p>Of course if you&#x27;re protecting a crazy full crypto account or deploy a massively popular or low-level github library you might want to check out swapping keys.
评论 #41444470 未加载
fsflover9 months ago
Discussion: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41434500">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41434500</a>