Schneier - YubiKey Side-Channel Attack
There is a side-channel attack against YubiKey access tokens that allows someone to clone a device. It’s a complicated attack, requiring the victim’s username and password, and physical access to their YubiKey—as well as some technical expertise and equipment.
Still, nice piece of security analysis.
from Schneier on Security https://www.schneier.com/blog/archives/2024/09/yubikey-side-channel-attack.html
Comments
Post a Comment