No video

Yubikey Bio vs Yubikey 5 | Is Fingerprint 2FA Worth an Extra $40?

  Рет қаралды 130,631

All Things Secured

All Things Secured

Күн бұрын

Пікірлер: 384
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Was this a helpful comparison for you? Leave any questions below and I'll do my best to answer. And I always appreciate your support when you use my affiliate links to buy either the Yubikey 5 series keys (geni.us/yubico-5c) and the Yubikey Bio series keys (geni.us/yubico-bio).
@Qui-Gon_Jinn69
@Qui-Gon_Jinn69 2 жыл бұрын
yes, this is very helpful
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Glad to hear it!
@yvesgysel9834
@yvesgysel9834 2 жыл бұрын
Very good explanation. Thanks. I just bought 2 x Yubikeys 5 NFC. Since I will be using them on my desktop, laptop, smartphone. That's exactly why I did not choose to buy the biometric version (No NFC).
@jccgold
@jccgold 2 жыл бұрын
@@AllThingsSecured i kind of didnt understand how for the laptop its necessary the bio Yubikey but than i could acess the account from a nft yubikey in my cellphone? I thought the only way to acess the account would be with a bio yubikey? Confusing
@arpadfritz1291
@arpadfritz1291 2 жыл бұрын
Hi!I’m sorry to bother you.I have an Apple MacBook Pro.Can I use the Bio series with that,to connect to my computer?(usb port etc.)
@derain95
@derain95 2 жыл бұрын
My friend who used to do woodworking also recommend you have a backup not based on your fingerprint.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
👍🏻👍🏻
@FromDesertTown
@FromDesertTown 2 жыл бұрын
🤣🤣🤣
@henrikginnerup8345
@henrikginnerup8345 2 жыл бұрын
Add a toe for good measure
@sloketamang1623
@sloketamang1623 2 жыл бұрын
hahahahahh
@poolkrooni
@poolkrooni 2 жыл бұрын
Same for climbers... My macbook's fingerprint reader constantly fails me after a day of bouldering
@Daniel-ml4jr
@Daniel-ml4jr 2 жыл бұрын
Hey mate. Just gotta say I browsed your comment section and noticed youve replied to virtually everyone with advice or answers. Very strong commitment and impressive! I've followed.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks, Daniel. I can't do it for every comment, but I do my best.
@peterkwolek2265
@peterkwolek2265 2 жыл бұрын
My advice for someone just getting into security keys, get 5 series with NFC. Covers the most use cases.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Agreed, Peter. I shared pretty much the same advice in the video. 👍🏻
@martinlutherkingjr.5582
@martinlutherkingjr.5582 2 жыл бұрын
Doesn’t work for iPads with lightning
@comecontre7912
@comecontre7912 2 жыл бұрын
Doesn't nfc reduce the security of the key? With a transmitter you can read the key? We lose the security of the hardware encryption principle
@bitcoinwallet-tj5ue
@bitcoinwallet-tj5ue 2 жыл бұрын
@@comecontre7912 read the key? how?if you need to hold the key almost against the key to work? and if so then still how can one decrypt the software on the key?
@mrtechie6810
@mrtechie6810 2 жыл бұрын
@@comecontre7912 you should NOT be able to read the secret key!😐 I think you mean an attacker could access the key from a distance.
@franciscomichael2085
@franciscomichael2085 2 жыл бұрын
The USB-C standard is on most newer Android phones, meaning you can use the Biometric function on Android. I'd like to just point out that while you personally use Apple, a large mobile market segment will be able to use the bio series.
@andrzej.s
@andrzej.s Жыл бұрын
@@kellyotter what adapter do you use? I’ve tried one and it doesn’t work.
@RogueAmendiaresyourgirl
@RogueAmendiaresyourgirl Жыл бұрын
Do you know if there's a Yubikey for microUSB ports?
@s2maschmeyer
@s2maschmeyer 11 ай бұрын
You need a micro-USB to USB-C adaptor (See Amazan). Note: Another option is to use a magnet adaptor for both the port on the mobile and, the Yubikey. Unfortunately, magnetic cables do not yet have an IEEE standard so, you are locked into brand and style. @@RogueAmendiaresyourgirl
@costafilh0
@costafilh0 5 ай бұрын
no. but you can go to the website and find it for your self like any decent human being.@@RogueAmendiaresyourgirl
@SmallSpoonBrigade
@SmallSpoonBrigade 5 ай бұрын
@@RogueAmendiaresyourgirl I don't think so, but if you're device supports USB to go, you can probably get an adapter.
@santmat007
@santmat007 2 жыл бұрын
Great Video on 3 Factor Authentication Josh... Thank You... 1st Factor Auth: ... UserName & PassWord Submited 2st Factor Auth: ... Yubi Key inserted into your Desktop USB and clicked when prompted. 3rd Factor Auth: ... Yubi Key Biometrics test combined with Key and clicked when prompted. Excellent Video Josh...
@leonardlevy4969
@leonardlevy4969 2 ай бұрын
This was very helpful, and gave me some clarity. Appreciated the insight!
@chalion8399
@chalion8399 2 жыл бұрын
I work for a company that uses cleaning chemicals daily and i've found that when I had the fingerprint scanner on a phone, I had to use multiple fingertips as backups to unlock that phone. The chemicals alter the way my prints registered on the ID pad. So i've become very leery about using my fingerprints for my sole access.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Very interesting. Thanks for sharing your experience!
@roofoofighter
@roofoofighter Жыл бұрын
Why don’t you wear gloves? Chemicals are not good for you.
@MarvinTurner
@MarvinTurner 2 жыл бұрын
Good point about the removal of NFC. I overlooked that initially. Thanks
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Glad this was helpful, Marvin. Thanks for the comment!
@TwstedTV
@TwstedTV Жыл бұрын
@Sayed Hamid Fatimi that power can be given by the device itself. so it wont matter. even a cell phone can power the biometric. any device has way more than enough power to power the biometric of any biometric key.
@mariachi202ify
@mariachi202ify 2 ай бұрын
@@TwstedTV NFC and Biometric? So we'll have another 'You're holding it wrong' situation on our hands.
@sekhar721
@sekhar721 Жыл бұрын
Dude, this video helped me to decide to buy which key as my backup. Thanks a lot.
@denniss1211
@denniss1211 Жыл бұрын
One for you and one for spouse but both are also saved for you and spouse. I would also suggest a third that is stored in a VERY safe place.
@CyberMedics
@CyberMedics 2 жыл бұрын
Informative and concise! Thank you. When you say the bio doesn't work with some accounts....basically because the bio doesn't support the authenticator applications. If an online account requires you to use the authenticator app, then you would not be able to use the bio key.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
That is correct. I don't think I did a good job of explaining that and perhaps even misspoke about the authentication protocols (I'll need to double check). The important point is that not all accounts accept a 2FA key and since the Bio doesn't have the authenticator - as you say - it can't be used for all your 2FA needs.
@CyberMedics
@CyberMedics 2 жыл бұрын
@@AllThingsSecured you did a great job. There's a lot to cover and so many different aspects. In the videos that I've done, it always seems I'm missing something in the presentation, so really appreciate your effort thanks again.
@KateGrayCode
@KateGrayCode 2 жыл бұрын
@@AllThingsSecured The BIO also doesn’t include PIV. PIV support (when used with a PIN) is also protected if your device is stolen.
@bestter
@bestter 2 жыл бұрын
thanks! I just buy a backup Yubikey 5 yesterday, and I was scared you recommended the BIO one 😌
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Ha! You're going to love the 5 series, Martin :)
@B-a_s-H
@B-a_s-H 2 жыл бұрын
The biggest downside to Yubikeys is that if you want backups. You need two (or more) keys at the time you set them up. This is where the Onlykey really shines imho. It lets you export an encrypted config file which you can later use to create new keys.
@P8qzxnxfP85xZ2H3wDRV
@P8qzxnxfP85xZ2H3wDRV Жыл бұрын
Ledger also has a Fido U2F app. I use my older Ledger Nano S as my universal backup key. It can be restored with the seed phrase, which I safely store with a Cryptosteel Capsule in a bank vault.
@Josh-py9rq
@Josh-py9rq Жыл бұрын
@@P8qzxnxfP85xZ2H3wDRV nooo nooo how dare you use logic here
@Badprop7
@Badprop7 11 ай бұрын
Having the ability to export on a key is like having a "secure" backdoor in software. No matter how hardened the security it's always a potential point of failure. The fact that YubiKey does not have this will always make it superior. You are correct that this makes the YubiKey less practical for the average Joe. However the people that need the extra security can surely afford it. I also want to add that you can setup keys later. One way to do this is keep your private key on your YubiKey, then save your OTP QR codes and encrypt it with the key. This way you can unencrypt and add them to a second or third key.
@FromDesertTown
@FromDesertTown 2 жыл бұрын
Question: What do you think of actively using 2 keys (the bio and the NFC)? I mean, using the bio for all the accounts it can be used for, and using the NFC for everything else. (with a third key stowed away as backup) Would this create any problems, like confusing the auth app, or creating some other odd conflict? Thank you for this informative and helpful video by the way!
@firalia
@firalia Жыл бұрын
I wouldn't think you'd run into any issues. It shouldn't confuse the auth app at all because it's designed to work with multiple keys. He even mentioned that a mix of the NFC and bio keys is an option. The biggest issue would probably be trying to remember which account is on what key!
@svenlima
@svenlima 11 сағат бұрын
would it be possible to use a knuckle instead of a finger? I don't like fingerprints.
@rittalisa4916
@rittalisa4916 2 жыл бұрын
For me I see a potential HUGE down side : it'is/can more fragile an more prone to defect. That's a deal breaker for me, beside that I have a bad experience with biometric sensor so I don't like it. On the security side their is multiple way to use a MFA token, on yubikey you can use opengpg for everything and configure it to burn the subkeys if the wrong pin is enter 3 times. So loosing it isn't really an issues and I guess it's more secure them a biometric solution maybe.
@mitchellquartero
@mitchellquartero 2 жыл бұрын
Awesome thank appreciate it I'm going to buy it early next year
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Hope you enjoy it, Mitchell!
@MrFloRolf
@MrFloRolf 2 жыл бұрын
Would've loved some more focus on the different protocols here. As far as I know the bio doesn't support OTP for example.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
It doesn’t. I thought I made that clear, so my apologies.
@LimitedWard
@LimitedWard 2 жыл бұрын
He indirectly expresses that at 6:19, but he doesn't explicitly state why those services are incompatible.
@mrtechie6810
@mrtechie6810 2 жыл бұрын
@@AllThingsSecured you should make this clear. Add it to the description.
@Heart0rHead
@Heart0rHead Жыл бұрын
Can you use the Bio to log in to Linux and MacOS with just the touch of the sensor? (like Apple TouchID)
@JohnChvatalGSTV
@JohnChvatalGSTV 2 жыл бұрын
I’m looking to upgrade my security with 2FA. Do you have a video on how to get started with the Yubikey and specifically, how to authenticate multiple Yubikeys with the same online account?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Hey John! Have you seen this video I produced last month? kzbin.info/www/bejne/nKu4h6WwZc6rpJo To setup multiple Yubikeys on the same account, you simply have to go through the same process in the video above again with the backup key. There is no "migration process" or way to duplicate keys other than setting them up separately, preferrably at the same time, on the same account. Does that help?
@stefandjordjevic9
@stefandjordjevic9 Жыл бұрын
What about PIN cracker tools?
@onetime5640
@onetime5640 6 ай бұрын
Thanks , great information !
@haroldfinch8019
@haroldfinch8019 2 жыл бұрын
Hey Josh, I enjoy watching your videos-keep up the good work! Can you make a video on how to set up your Mac, iPhone, Android, Windows for privacy (like settings to use, apps to install, etc.)? Also, making a video on email forwarding service, such as AnonAddy or iCloud Mail relay, would be really helpful! Furthermore, I would like your opinion on using apps vs web browsers. Do you sign in to apps on iOS or use the web browser? For example, using the KZbin app vs the browser or the Amazon app vs the browser or the Netflix app vs browser. I wonder if it's better to use the web browser because the company will have less access to data, but at the expense of user experience. Wouldn't companies be able to link the dots together easier if you use native apps? For instance, signing in to the KZbin app also signs the user into every other Google app. (Any thoughts on progressive web apps, LOL?)
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks so much for the suggestions, Harold! A few of the ideas you shared are already on my content calendar, but I'll add the ones that aren't there.
@haroldfinch8019
@haroldfinch8019 2 жыл бұрын
@@AllThingsSecured I just saw those! Good stuff. Did you read the second half of my comment?
@adsglobal3351
@adsglobal3351 2 жыл бұрын
If you lose a device, can you deactivate it remotely? Thinking from a business standpoint if an employee looses one especially if it's the NFC.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yes, with every account I have, as long as I have an admin or backup key, I can go in and deactivate a lost or stolen key.
@XxsoonerbornxX
@XxsoonerbornxX 2 жыл бұрын
Yubikey even says the bio version is for shared workstation scenarios, not for the normal individual. Just get the 5 NFC.
@KodakYarr
@KodakYarr 4 ай бұрын
5:33 you say "something that you have to have" but a finger print is "something that you are", while the YubiKey is the actual "something that you have" and the pin code is the "something that you know"
@HeyYouSA
@HeyYouSA Жыл бұрын
Already have the 5c which will be my back up and trying to decide between NFC or Bio. Think I will go with NFC for now based on your feedback.
@alfonsodavila1655
@alfonsodavila1655 Жыл бұрын
Muchas por subir estos videos nos ayuda mucho. Saludos
@RogerioLecariaoLeite
@RogerioLecariaoLeite Жыл бұрын
Hello! The authentication process must be an anonymous cross-system process. For the guarantee of security must not collect any identity from individuals needs your security. Attackers can find ways to identify the target user. So it's very clear to me that a fingerprint option is not a viable option.
@MrPerkaholic_
@MrPerkaholic_ 2 жыл бұрын
A very helpful video! Thank you very much!
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Glad it was helpful!
@Badprop7
@Badprop7 11 ай бұрын
I agree that no NFC is a pain but this can be overcome by using a USB-A to USB-C converter or for the older iPhones a USB-A to Lighting converter. I do this without issue on my Android.
@AllThingsSecured
@AllThingsSecured 11 ай бұрын
Yikes, that would be crazy annoying to have to pull out a converter every time!
@kevinj.k.8120
@kevinj.k.8120 2 жыл бұрын
Awesome as these are the two I selected for that exact reason. Now concerned that the BIO may not work for the sites I want to use it for. Hopefully, support is added in the future if that's the case.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yea, I hope so too, Kevin.
@karimelbehaidy4257
@karimelbehaidy4257 Жыл бұрын
can you describe the difference between the 2 keys from security point of view, which is better and which techonelgy each of them is using
@Camlost03
@Camlost03 2 жыл бұрын
Hi Josh, a query I currently have the Yubikey Security Key (the blue one), with which I have registered all my services with authentication by Key. I want to buy a second device now to have a backup in case I lose one ... I want to buy the Yubikey 5 NFC (The black one), and use it as the main one because I have the TOTP there and I currently use the authenticator microsoft, I would like to pass it all to the authenticator yubikey. Now, if I have as a second option the blue one for backup, the TOTP will not be able to recover it in case of losing the black one, correct? What do you recommend me? Thank you very much for your videos.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
If I understand your question, Juan, you want to have the 5 NFC as your primary key as well as Authenticator. The blue key is the backup (which doesn’t have an Authenticator). In that case, you can always keep Microsoft Authenticator as a backup to the 5 NFC. Does that sound right to you?
@Camlost03
@Camlost03 2 жыл бұрын
@@AllThingsSecured Yes, I was thinking about it, and so I don't have all my eggs in the same basket. haha thanks
@michaelrobsimonbyrne4068
@michaelrobsimonbyrne4068 2 жыл бұрын
i have 5nfc black and 5nfc key for android
@michaelrobsimonbyrne4068
@michaelrobsimonbyrne4068 2 жыл бұрын
i use them all the time for my facebook and twitter and gmail
@Carlosjousuesalcedo
@Carlosjousuesalcedo 2 жыл бұрын
Thank you !! With this video !!! This video helps !!!! 😎😎 !!!!
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Glad to hear it.
@vasiovasio
@vasiovasio 4 ай бұрын
4:44 Your fingerprint actually is Not Stored in the key, but the mathematical result, sum let's say of the calculation that is checked if it matches with the result of scanning of your finger. This cannot be read from the key, But even if it is read it is Not like a scan, or photo of your fingerprint and cannot be used somewhere else. 🙂
@ama7509
@ama7509 4 ай бұрын
Re Nano option. Is the depression of the unit a toggle switch or is the product somehow reading my print? If merely a toggle, what's to prevent non-me from gaining access? Txs.
@katharinawinninger30
@katharinawinninger30 19 күн бұрын
what about the new iPhone 15 with USB type-C?
@fecklefriend
@fecklefriend Жыл бұрын
Perhaps a silly question, but I assume you can have more than one backup Yubikey. My daily one, my backup at home, my backup at a family member's house, etc. Is that the case? In the same way, if I did break or lose my main key then I could just make a backup from my backup. Correct? Thanks for all your videos Josh!
@aknorth1053
@aknorth1053 Жыл бұрын
a good use case would be if you wanted leaved one at a semi secure location like your work computer
@okoeroo
@okoeroo 2 жыл бұрын
I use my yubikey with a USB C adapter on my phone, works great
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
That's good to hear! I've spoken with Yubico and they tell me that it should work, but that's not what it was designed for.
@jeylful
@jeylful 9 ай бұрын
Great video! Something I do not like of the Yubikeys is that someone can of course, steal them (or I can lose mine). I have two standard Yubikeys but I am thinking I will buy the Yubikey bio. Would you know if the Yubikey Bio works with Binance? Cheers.
@mistermixxxx
@mistermixxxx 2 жыл бұрын
Bravo man! you are a pro!
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks so much!
@usernameL1
@usernameL1 2 жыл бұрын
YubiKey just came out with the “Security Key C NFC” for just $29.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I saw that! Thanks for sharing, Lex. The Security Key still lacks the ability to act as a OTP authenticator, thought, so I much prefer the 5 series.
@agoogleuser9025
@agoogleuser9025 2 жыл бұрын
@@AllThingsSecured Hi, I am interested in Security Key NFC so I could get a spare on a budget. However, from your comment, does that mean that if I currently use OTP authenticator apps right now, I should go for the Yubikey 5 NFC instead?
@4amyoutube432
@4amyoutube432 5 күн бұрын
Hi mate, are you there? I have 2 of the blue keys that serve me well.Thinking of getting the bio so i can just leave it in the laptop without the worry of someone stealing my laptop with the blue key in it. Then obviously I'll have the 2 blue ones as backups. I can't see a issue with this,do you? One would have to know the password of the bio yubikey to use it right? R U there?
@pedroleitao1937
@pedroleitao1937 2 жыл бұрын
Hi Josh, I’m considering buying an YubiKey 5Ci, since I suppose, owning only two iPads Pro (one 2020 and one M1) and an iPhone 12. So I have no desktop or laptop. I use 1Password for all my passwords and 2FA codes. Considering this and that my use is mostly personal, and at €70 each key (buying 2), would you still recommend the investment. After looking at the services compatible, I would probably using the YubiKey withe no more than 5-6. Thanks and keep up the nice videos.
@Gitt945
@Gitt945 2 жыл бұрын
hi josh. i have a couple questions 1) if i leave the yubikey in my pc 24/7 , and i have lasspass, if my pc is stolen, won't they have access to all my logins? and if so what do you reccomend to prevent that? 2) another question, not related to yubikey per say, but i want to do estate planning for my kids when i pass on and was thinking if there is a device that i could put my kids finterprints like the yubikey bio so only they could access and on this device would be my will and bank info, btc wallet and info they need, where i can put all my notes/instructions to them on how to use and what to do where i know this can't get into the wrong hands. or it could be online method as well, but this is what i'm trying to accomplish that if i become 'inactive' i want them to access and only them this info, would love to hear your suggestions or maybe you made vid on this topic already
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Hey Andrew, interesting questions. Here are my answers: 1) I don’t leave my 2FA key constantly plugged into my computer and I generally don’t recommend that for the very reason you stated: theft. 2) I generally don’t like to rely on technology for estate planning. I use it as a backup, to be sure, but I have a primary estate plan that is kept with my lawyer or printed and physically put in a safe. I just don’t trust that the technology won’t break or no longer be compatible 10 years down the road. I mean, imagine if you had kept all your estate stuff on a CD 10 years ago! I do t even know if I have a CD reader in my house anymore! 😜
@MrFloRolf
@MrFloRolf 2 жыл бұрын
If your PC with the key and LastPass gets stolen you immediately change your masterpassword and from there refresh all 2FA Codes (the OTPs) and disable the missing key from FIDO enabled accounts.
@SuperNova-py1ec
@SuperNova-py1ec Жыл бұрын
Thanks for the video. You answered some questions I had about using it with mobile devices etc. Is the pin backup open to brute force? It would not take long to go though 9999 numbers if it allows 4 digit pins?
@talamakara
@talamakara Жыл бұрын
Please explain to me how a "Security Expert" recommends NFC, a protocol with 0 security?
@costafilh0
@costafilh0 5 ай бұрын
These keys should be MUCH smaller! Type C and using smaller fingerprint readers, as we see on the side of some smartphones. With a reinforced loop to hold it in a keychain, chain or use itself as a keychain.
@AllThingsSecured
@AllThingsSecured 5 ай бұрын
They have that available as well.
@costafilh0
@costafilh0 5 ай бұрын
No they don't. We need to chose between size and aditional security, or bio or nfc. There is no option with all 3 in the same device yet.@@AllThingsSecured
@costafilh0
@costafilh0 5 ай бұрын
Care to post a link? I just checked out their website. There is no option with NFC+BIO+USB-C+Additional Security+Smallsize. The biometric sensor itself is huge. @@AllThingsSecured
@herbsabeast1
@herbsabeast1 6 ай бұрын
Man why is it so hard to find video's on yubikeys? I just want to know if I'm getting the actual yubitkey. I bought my yubikey from Amazon for $35 vs if you buy it from pretty much anywhere else it's double what I paid.
@chuckbecker8735
@chuckbecker8735 2 жыл бұрын
Excellent video....well done
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks, Chuck!
@TheConservativeTalkingPoint
@TheConservativeTalkingPoint 8 ай бұрын
I have a question. I want to go passwordless on outlook 365, personal account. How can I do this without the MS authenticator app? I just want to use my key ONLY to login, otherwise what's the point of the security? How do you accomplish this?
@jeffpearson1863
@jeffpearson1863 Ай бұрын
I heard they dont work on banking sites. Is that true?
@nerradnevar
@nerradnevar 2 жыл бұрын
Great video - very well explained. Where can I find out what applications work with the Yubikey 5NFC
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I have a link to the website “what works with Yubikey” in the video description.
@RogueAmendiaresyourgirl
@RogueAmendiaresyourgirl Жыл бұрын
My phone uses microUSB, so if I just a USB-C to microUSBB converter, would the Yubikey work with it?
@koushikraj9815
@koushikraj9815 Жыл бұрын
definately Yubico pricing more because i paid yubico 5 NFC 50+15$ with shipping. after if arrived in India UPS asked 39$ for import fee. this is super pricing with total of 103$. even they put in air cargo/kg it was 15$ but they put useless courier service, now I got forced to pay 39$ because of them.
@frenchonion4595
@frenchonion4595 2 жыл бұрын
What about the blue regular series ? Would be for coinbase. My phone does not support NFC so i was looking at the cheaper blue series. It is just as secure ? I think it would be. It supports what coinbase want's
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yes, the blue "Security Key" series is just as secure, but it lacks the ability to create one-time passcodes (OTP) to replace an authenticator app for those online accounts that don't accept 2FA keys. If all you need is something for Coinbase, though, you should be good with the Security Key.
@jetfire245
@jetfire245 2 жыл бұрын
Yup. I was so excited for the bio to come out. And then it did.... Now I have no plans to ever buy it. Lol
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yea, I know what you mean, Greg.
@jetfire245
@jetfire245 2 жыл бұрын
@@AllThingsSecured Any theories why in God's name they wouldn't just keep the yubikey 5 formula with widespread acceptance - and throw the bio on that? A "yubikey 5 bio" if you will.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I think they’re working with enterprise customers like Microsoft and that’s who they’re trying to appease, not the average consumer.
@RN-xz2sw
@RN-xz2sw 2 жыл бұрын
Great vid!
@danielg2946
@danielg2946 Жыл бұрын
Yubikey has some apps that are not supported and at present after multiple attempts Yubikey manager will not run on my win 10 laptop. Leaving me with default options and zero backups of PUK or PIN.
@vicm1819
@vicm1819 2 жыл бұрын
regarding setting up the backup key: how many backups can you have? For example, could I have a backup I keep at home, and a third key I keep off site?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
It seems to depend on the service. Google, for example, has allowed me to have 5 different keys associated with my online account. There may be a limit, but I’m not sure what it is.
@peterkwolek2265
@peterkwolek2265 2 жыл бұрын
depending on the service you can have many keys. (Lastpass for example lets you add 5 but you have to pay for premium AND NOTE Bio doesn't work with Lastpass but 5 series does.
@vicm1819
@vicm1819 2 жыл бұрын
Thanks guys! Appreciate the info!
@ornikel
@ornikel 2 жыл бұрын
Awesome advice 👍🏾👍🏾
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks!
@tonnrak
@tonnrak 2 жыл бұрын
For your back up Yubikey, you registered it as another key or you registered it as a spare key (same key information as the original one)?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
The keys are unique, so there is no such distinction between “another key” and a “spare key”.
@tonnrak
@tonnrak 2 жыл бұрын
@@AllThingsSecured Ok, thanks.
@arniinberlin3837
@arniinberlin3837 2 жыл бұрын
Very helpful video - thank you. Do you know how this adds security to my smartphone on my google account? On the google account I cannot log out but only remove the account from the smartphone. So - if I'm always logged on, therefore 2FA authenticated - is not that even worse? Cause if the phone is stolen its stolen with the 2FA on.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I'm not sure I understand completely. Your phone should be locked and you can always log the phone out of your Google account remotely if it is stolen/lost.
@arniinberlin3837
@arniinberlin3837 2 жыл бұрын
@@AllThingsSecured Hi, sorry if I cannot express my concern in a more clear way. Yes the phone is locked but I'm confident the usual street thiefs can find a way to crack that. Regarding log out the Smartphone from the Google Account remotely via a PC log-on. I tried that. And - suprise...I'm still logged on on the smartphone. Google is like HIV. You can't get rid of it.
@talktimewitheddiej
@talktimewitheddiej 8 ай бұрын
Love this info
@charleshines2142
@charleshines2142 Жыл бұрын
NFC is wonderful but not all phones have it. Many Samsung and Sony devices come with it built in. Some Motorola devices too.
@oracle_0183
@oracle_0183 2 жыл бұрын
Hi Josh, I have a Yubikey so I am all for the 2FA method of security. However; how is this more secure than a simple 2FA sms message with a code to login? Thanks very much, JR (United Kingdom)
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Check out this video on SIM swapping: kzbin.info/www/bejne/bGXTkIqhjshsmpI
@oracle_0183
@oracle_0183 2 жыл бұрын
@@AllThingsSecured , Thanks Josh, that's amazing!
@engravingworld
@engravingworld 6 ай бұрын
Do I need to set up YubiKey Manager to configure FIDO2, OTP, and PIV functionality? Thanks.
@Matschbacke25
@Matschbacke25 2 жыл бұрын
Love my new Yubico 5 NFC
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Great! It's still my favorite 2FA key as well.
@ivanbman
@ivanbman 2 жыл бұрын
Excellect video...Well presented!
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Glad you liked it, Ivan!
@jvianneyjr
@jvianneyjr 10 ай бұрын
What's the Best yubikey 5 NFC or yubikey NFC?
@kseyffert
@kseyffert Жыл бұрын
It seems that you missed the use of an OTG device with bio vertion...
@P3Alex
@P3Alex Жыл бұрын
Why can't they make a bio with NFC? But the NFC activates only when the finger print has been activated?
@johnh4957
@johnh4957 2 жыл бұрын
does this negate needing a password manager?
@CyberMedics
@CyberMedics 2 жыл бұрын
You should still use strong passwords. A password manager will help with this.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I agree with CyberMedics. This doesn't replace your first line of defense (i.e. a good password), it simply add another layer of protection for those accounts that are more sensitive than others.
@sporthaas
@sporthaas 10 ай бұрын
Why would this key be more secure than my authenticator app on my phone?
@alk9962
@alk9962 Жыл бұрын
Can I configure a LUKS volume to be opened if I provide both a passphrase and the BIO or 5 NFC?
@thomasconstant9354
@thomasconstant9354 2 жыл бұрын
The 5 NFC also is procteted by a pin ... not impressed so far by the bio. If they could restore my 2FA codes by using any bio security key I would be totally sold (I mean, it would be like saving all my vital 2FA codes on my fingertips).
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yea, I understand. I feel like the Yubikey 5 NFC is the best option for that scenario right now. It doesn't offer any biometric lock, but it's still a key you can keep with you.
@KateGrayCode
@KateGrayCode 2 жыл бұрын
If you use OTP codes (rather than FIDO2), the secret key can be programmed into multiple authenticator for time-based solutions. Basically, if you are getting a 6 or 8 digit code that changes every 30 or 60 seconds, you can scan the same barcode to multiple tokens.
@handicappuccino8491
@handicappuccino8491 11 ай бұрын
UB key should team up with the security camera company
@stewartcathey622
@stewartcathey622 2 жыл бұрын
Which Yubikey is best for the current family of Apple devices ( IPad Pro w/USB-c, IPhone 12Max)
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I recommend Yubikey 5C NFC.
@alk9962
@alk9962 Жыл бұрын
I have 2 keys provided by employer. I wanted to do some checks what I can do. Very disappointed with the support. The tests are flaky. In some areas it works, but fails with OTP. BIO is not sold on a website. Such a disappointment. Hey Yubico, add some sort of clear documentation to troubleshot a concrete error instead odf sending to your QA section where you can lost. Why it reports invalid OTP and what is required to do to fix?
@AllThingsSecured
@AllThingsSecured Жыл бұрын
If this is supplied by your employer, then it’s the responsibility of your employer to help you troubleshoot. And yes, the Bio is sold on their website.
@showboat4869
@showboat4869 2 жыл бұрын
With the bio version is the fingerprint copy thats held on the device able to be copied or stolen once someone has access to it ? Can we assume its as safe as apples fingerprint reader ?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I know they protected against this kind of issue, but I can’t explain exactly how. You should connect with them on Twitter and ask.
@KateGrayCode
@KateGrayCode 2 жыл бұрын
No. Instead of an actual fingerprint, they store a template image (think of it kind of like a map). It keeps a record of features in your fingerprint, but not the fingerprint itself. It’s also in a rather secure chip that nobody short of a government or very well funded adversary could extract the data from.
@fredsalter1915
@fredsalter1915 9 ай бұрын
Thanks!
@AllThingsSecured
@AllThingsSecured 9 ай бұрын
Wow…thanks so much for the support, Fred! 🙌🙌
@Josh-py9rq
@Josh-py9rq Жыл бұрын
I love the bio I use ro take fingerprints for the FBI have a wayy better gov gig but your prints will last a while unless you a hard worker in the field so guys/ladies folks use it it’s not a bad option of course have a back up just in case
@TheCrusaderRabbits
@TheCrusaderRabbits 7 ай бұрын
So the Bio won't work with Android?
@chinmayakulkarni2560
@chinmayakulkarni2560 Жыл бұрын
Thanks for this great video. I'm trying to understand why some services work with the 5 series but not the Bio. Is it just because they use TOTPs instead of FIDO2/U2F? My understanding of FIDO is that the biometric stuff is entirely local, and once that layer of authn is completed, the flow is the same as it would be with a Yubikey 5.
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Correct. It’s not about the biometrics, it’s about which security protocols the key supports.
@chinmayakulkarni2560
@chinmayakulkarni2560 Жыл бұрын
@@AllThingsSecured Thank you, appreciate you taking the time to respond.
@antonkukoba3378
@antonkukoba3378 2 жыл бұрын
If fingerprint is stored on the device then why there's a generic windows prompt for scanning the fingerprint? Seems like it's Windows which does fingerprint check all the time.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
No, it’s not Windows.
@krisbright3227
@krisbright3227 Жыл бұрын
It's a shame that the YubiKey Bio only supports 5 fingerprints(10 would be better in my opinion as if in a worst-case scenario you lost an entire hand you could still have a fingerprint available for authentication). It seems like your idea to have both a Bio and a Yubikey 5 NFC is the best solution. Perhaps having one either the Bio or 5 with USB-C and the other with USB-A would cover you in every single scenario.
@AllThingsSecured
@AllThingsSecured Жыл бұрын
👍🏻👍🏻
@IncertusetNescio
@IncertusetNescio Жыл бұрын
I had zero luck getting two brands of fingerprint keys to work AT ALL. Ymmv.
@gabrielluizbh
@gabrielluizbh 2 жыл бұрын
How do I use it on android? I have the Yubikey 5 NFC.
@SusiBeach
@SusiBeach 2 жыл бұрын
Hi! Can you please answer me two questions? Can you please tell me if 3 people can use the same Yubikey with their own accounts? Or each person need to have one different Yubikey? And the other question is: We want to use the key mainly for Outlook, PC, Facebook... both on mobile phone and computer. You recommend the 5NFC instead of the Bio, right? Thanks so much in advance
@SuperNova-py1ec
@SuperNova-py1ec Жыл бұрын
I think he mentioned the BIO does not support connectivity to mobiles so you would need the 5NFC. Appreciate you question was from 6 months ago so is probably redundant now 😀
@milastran663
@milastran663 2 жыл бұрын
hi, thank you very much...
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
My pleasure!
@PraveenGosain
@PraveenGosain Жыл бұрын
Such a useful video
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Glad it was helpful!
@jashupadhyay5335
@jashupadhyay5335 Жыл бұрын
Can I restrict number of apps I can use with Yubikey for enterprise?
@smokyviking2101
@smokyviking2101 Жыл бұрын
Like you can set up a security key for your iCloud account can you do the same with Samsung for your Samsung account I personally haven't seen an option in settings all I can see is backup codes authenticator app SMS text which I hate and that's pretty much it there's no option for security key I hope Samsung address this I hope Samsung add an option for for security keys like Google and apple and so on
@KevTheGalaxybender
@KevTheGalaxybender Жыл бұрын
now what if you lose your key and your fingers?
@KIFIDOR
@KIFIDOR Жыл бұрын
I've been trying to get the answer, but I don't seem to find it anywhere. If your PC/Device gets hacked or if it's infected, is that aa problem for the 2fa? Will it get infected too?
@AllThingsSecured
@AllThingsSecured Жыл бұрын
No, a 2FA device cannot be infected.
@KIFIDOR
@KIFIDOR Жыл бұрын
@@AllThingsSecured Thanks for the answer sir
@ragon747
@ragon747 2 жыл бұрын
Yubikey "blue" also have NFC, right? The blue one just have less protocols I guess
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yes, the blue Security Key has NFC capabilities.
@OneEyedLion
@OneEyedLion 2 жыл бұрын
I've got the Yubikey 5NFC. Is there an adapter for use with a Samsung phone? Or, do I have to replace the keys?
@alexandregiguere7077
@alexandregiguere7077 2 жыл бұрын
Just use the NFC with your Samsung phone instead of the USB port
Passkeys SUCK (here’s why + how I use them)
10:49
All Things Secured
Рет қаралды 34 М.
STOP Giving Your Real Email Address (do this instead)
8:49
All Things Secured
Рет қаралды 311 М.
what will you choose? #tiktok
00:14
Анастасия Тарасова
Рет қаралды 7 МЛН
This Dumbbell Is Impossible To Lift!
01:00
Stokes Twins
Рет қаралды 37 МЛН
wow so cute 🥰
00:20
dednahype
Рет қаралды 31 МЛН
Happy birthday to you by Tsuriki Show
00:12
Tsuriki Show
Рет қаралды 12 МЛН
Which YubiKey Should I Get? 2023 2FA Hardware Key Buyers Guide
10:32
STOP Using Proton & Signal? Here’s the TRUTH
7:54
All Things Secured
Рет қаралды 232 М.
DON'T USE GMAIL unless you make these 5 Critical Security Changes
7:23
All Things Secured
Рет қаралды 931 М.
How to Choose the BEST 2FA Key for Security (Yubikey)
6:25
All Things Secured
Рет қаралды 172 М.
Yubikey Backups - How to TOTP Across Multiple Yubikeys
8:54
Crosstalk Solutions
Рет қаралды 89 М.
12 Privacy & Security Tools I Use EVERY DAY
6:14
All Things Secured
Рет қаралды 102 М.
my NEW everyday carry TECH (YubiKey review)
5:50
Matt Gonzalez
Рет қаралды 77 М.
My FULL Account Security Strategy Explained (you can copy)
7:00
All Things Secured
Рет қаралды 41 М.
Yubikey Bio - Biometric Hardware Security Keys
19:58
Crosstalk Solutions
Рет қаралды 79 М.
what will you choose? #tiktok
00:14
Анастасия Тарасова
Рет қаралды 7 МЛН