Get a Pentest and security assessment of your IT network.

Cyber Security

Some YubiKey FIPS Keys Allow Attackers to Reconstruct Private Keys

Yubico issued a security advisory saying an issue impacting YubiKey FIPS Series devices reduces the strength of generated RSA keys and ECDSA signatures after power-up. The company runs an active key replacement program for all impacted FIPS keys with the majority of affected devices having been replaced, or are in process of replacement with updated, fixed versions of the devices. The issue only affects certain use cases in certain use scenarios in certain scenarios, the Yubi key is more at risk than others since the weakened signatures could allow potential attackers to reconstruct the private key.

Source: https://www.bleepingcomputer.com/news/security/some-yubikey-fips-keys-allow-attackers-to-reconstruct-private-keys/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security