INSUBCONTINENT EXCLUSIVE:
Protecting yourself or your business from phishing attacks and other cyber threats has become increasingly difficult
While some have turned to two-factor authentication (2FA) as a means of protection, others have instead opted to use physical security keys
to do so and with much greater success.To learn more about security keys and how they can help organizations and individuals alike keep
mission to make the internet a safer place for everyone
brands and by millions of users in 160 countries
wk1003mike / Shutterstock )Where does two-factor authentication fall short when it comes to stopping phishing and man-in-the-middle
pasting a one-time code from one device or application to another
Not only can this be cumbersome for users, but it is also prone to error
These methods are also reliant on mobile access, posing a problem in environments where mobile devices do not work or are prohibited
What is perhaps most concerning is that one-time password 2FA methods are still vulnerable to modern phishing and man-in-the-middle (MITM)
Against such an attack, a phone is essentially a single-factor authentication device.FIDO-based security keys provide a higher level of
security while also delivering a seamless user experience
The FIDO U2F and FIDO2 standards, and compatible security keys, leverage public key cryptography to protect against phishing and
man-in-the-middle attacks
User credentials are bound to the origin, meaning that only the real site can authenticate with a key
successfully introduced security keys at its own offices to stop phishing back in 2017
compelling statistics around their internal use of YubiKeys has been a continued catalyst for many other large enterprises looking to
eliminate account takeovers and reduce support costs
In fact, Google also released additional research that shows hardware security keys are the only viable authentication solution that can
has seen great success with YubiKey deployments in more than 4,000 enterprises covering a range of technology, financial, healthcare,
manufacturing, education, and government sectors
the first multi-OS security key with the YubiKey 5Ci
How have customers responded to being able to use one security key to secure all of their devices?So far, the response has been positive
With individuals increasingly spending their time across a multitude of mobile devices, the YubiKey 5Ci was a natural next step in our
across devices with a YubiKey
recent WebAuthn support in iOS and iPadOS Safari, we are excited for the upcoming release of the YubiKey 5C NFC
smartphones to serve as security keys
What are the benefits of using a physical security key instead of relying on a smartphone for authentication?There are major benefits to
using a physical security key rather than relying on a smartphone for 2FA
For example, an external security key that is not tied to a multi-purpose computing device lowers the attack vector, easily moves between
devices or be can be used to log into accounts on a new device, works in mobile-restricted environments like call centers or hospitals, and
offers a trusted, high level of security assurance for sensitive operations like transferring large sums of money on a banking app.For
enterprises, a second advantage is that with a YubiKey there is a common authentication solution that works identically, and has the same
security properties for all employees
If employees use their own phones, there are a variety of vendors, operating systems and operating system versions that may or may not be
patched with all security fixes
Last year, we saw more than 100 vulnerabilities for both iOS and Android
It is very hard to achieve a high degree of security in such an environment.This is the future Yubico envisioned when we helped to create
the new FIDO2 and WebAuthn open standards
We intended for there to be a growing list of strong authentication choices for users, and for some of these authentication options to be
built directly into devices
Improved choice and accessibility is important to drive widespread support for FIDO2 and WebAuthn
YubiKey Bio, and we do not yet have a launch date
What we can share is that it will leverage the full range of multi-factor authentication (MFA) capabilities outlined in the FIDO2 and
WebAuthn standard specifications with support for both biometric- and PIN-based login
launches of the Yubikey Bio and YubiKey 5C NFC, Yubico will be heavily investing in the expansion of our new service-based offering:
YubiEnterprise Services is currently comprised of YubiEnterprise Subscription, and soon YubiEnterprise Delivery, to improve the process of
procuring, delivering, and managing YubiKeys
The goal with YubiEnterprise Services is for Yubico to become a more valuable enterprise partner
The idea is that we will take a lot of the logistical complexities or resource roadblocks out of the equation, allowing our customers to