How to Choose the BEST 2FA Key for Security (Yubikey)

  Рет қаралды 189,918

All Things Secured

All Things Secured

Күн бұрын

Пікірлер: 346
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I'll do my best to answer any questions in the comments here. Get the latest deals on Yubico security keys using this link (affiliate): geni.us/yubico-store
@fearless6947
@fearless6947 2 жыл бұрын
how many devices can I use the security key and 5 series?
@somelaveenguy6822
@somelaveenguy6822 2 жыл бұрын
Thanks! Just ordered 2 of the 5 series.
@herbsabeast1
@herbsabeast1 9 ай бұрын
To me If my Yubico key got stolen how on earth are they going to know it's mine? For the Bio Yubico key what makes you think they can't just copy your fingerprint off the key? In reality hackers are not going to guess your password but bypass whatever security it has. In reality the hardware key isn't 100% random, but it could be good enough. What happens if I can't find either of my 2fA keys? Am I just out of luck?
@song-explorer
@song-explorer 3 ай бұрын
Great video! Check this affiliate link - it may be broken.
@Back2SquareOne
@Back2SquareOne 3 ай бұрын
I originally thought l needed the Yubikey Bio to take with me so if I lost it or it were stolen the Bio feature would keep it locked. It turns out you can set a PIN on any of the Yubikey 5 series so every time you use it, you have to enter the PIN. This means that if you lose your Yubikey, it is useless to anyone without the PIN. If you enter the wrong PIN too many times the key locks and must be Factory reset. This also means you can leave a Yubikey nano or micro plugged into your machine and it is still secured by the PIN. You will, of course, have to remember the PIN and you will want to store it in a safe place in case your forget. The MOST important tip: Buy 2 security keys so you can keep one as a backup in a safe location. You MUST plan for how you will recover you accounts should you lose a key or forget a password. A second key that is also keyed to all your accounts, is the best way to recover. A failure to plan, is a plan to fail.
@rejphotography
@rejphotography 10 ай бұрын
This video helped me. However I was still left scratching my head at the end. I watched it 3 times but never heard anything that talked about what the difference was between the 5 series and the 5 FIPS. I’m going to have to find other videos for that info. You’re videos are always very informative and to the point. I do feel like you go a little fast sometimes and miss opportunities to provide just a little more info. I only recently found your channel and have been binging all videos for over a week now. Thank you for all you do.
@daneshskater101
@daneshskater101 5 ай бұрын
same question here
@vidareggum6118
@vidareggum6118 3 ай бұрын
@@daneshskater101the FIPS key is basically the best key only for people working in (US) government, for everyone else non-FIPS is the way to go.
@3nertia
@3nertia 3 ай бұрын
What @@vidareggum6118 said 🙂
@jjmmfi
@jjmmfi Жыл бұрын
NFC DOES NOT WORK ON IPADS! And the fingerprint does not make the 5 bio series anyway more secure than the 5 series because it can always be bypassed by a pin. You can also add a pin to the 5 series, making it as safe as the bio.
@elksalmon84
@elksalmon84 Жыл бұрын
NFC stands for Near Field Communication. Not Connection. It was created in 2003 by merging contactless payment systems by NXP and Sony that were used by Moscow Metro, Japan Rail East and Hong Kong MTR.
@phatcowboy76
@phatcowboy76 11 ай бұрын
Thanks for that. Was about to post a comment saying the same thing. A year late.
@majorgear1021
@majorgear1021 8 ай бұрын
I’m reading this even later. That is good info!
@ZachDC
@ZachDC Жыл бұрын
I was just about to order such a device from Amazon but decided to watch ONE MORE video (yours) on the topic, and I was very happy to discover you offered an affiliate link. Having been a fan of yours for some time now, I am more than happy to give your channel the credit for the sale than Amazon.
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Thanks so much!
@ZachDC
@ZachDC Жыл бұрын
@@AllThingsSecured Ordered 2 ... one for me and my best friend (a Vietnam vet and retiree ... and who wrote and led the tours --- back in the day --- for the Washington Monument interior stairs and the basement tour of the Lincoln Memorial ) BUT who was recently scammed and lost significant funds. EVEN SO, he cut the scammers and their threats off and indeed called his bank and the police. PLEASE -- EVERYONE --- DO ---NOT --GIVE IN - TO THE THREATS. CALL YOUR BANK AND CALL THE POLICE
@AyCee21
@AyCee21 Жыл бұрын
Always buy directly from the vendor and not a 3rd party.
@richbytch99
@richbytch99 8 ай бұрын
@@AllThingsSecured I am confused, I will be working from home and sometimes my local library. I also have a Editor (limited) for my channel. Which one do I need?
@JDMKEV
@JDMKEV 4 ай бұрын
@@AyCee21 if i buy from amazon but through the yubikey store...would you still consider that from the vendor? or do you still think thats a bit sketchy?
@jl25735
@jl25735 Жыл бұрын
I think the idea behind the nano is that it makes it more appealing for those who focus on preventing hacks. For example I'd rather have a small almost unnoticeable key plugged in my laptop that stays at home 24/7 instead of having a pen-drive sticking out of my port
@theepicduck6922
@theepicduck6922 Жыл бұрын
That and form factor is a consideration. Some people prefer to have a laptop bag form factor.
@veiledzorba
@veiledzorba 11 ай бұрын
That's where I am. I'm more worried about crackers and compromised passwords than anything else. As I'm a smartphone refusenik, yubikey makes a lot of sense - but the number of sites that directly support yubikey is VERY small. Most of the sites I use that even allow 2FA are all about the PHOOOOOONNE, which is a complete non-starter for me.
@KrypteiaXi
@KrypteiaXi 10 ай бұрын
So if your laptop is stolen the nano is stolen as well.
@veiledzorba
@veiledzorba 10 ай бұрын
That's VERY true, one of my clients had her laptop stolen. As her backup drive was with it, it was stolen too. But - a desktop at home is far less likely to be stolen, AND you can unplug the yubi when you're not home.
@Pusahispidasaimensis
@Pusahispidasaimensis 10 ай бұрын
@@KrypteiaXi Doesn't matter much as long as the thief doesn't know your passwords
@danielhenderson7050
@danielhenderson7050 Жыл бұрын
I think you should have elaborated more on the OTP aspect. I did not get that at all. Why would you store a time sensitive code on a key? Very confusing to me! Good video though!
@nancym1430
@nancym1430 7 ай бұрын
agree-- I was confused on that
@greatday19
@greatday19 22 сағат бұрын
My assumption was that the yubikey itself generates the codes on a rolling basis, and by the looks of it you access the keys by scanning the yubikey through the app. An alternative hypothesis is that this is another app that generates OTPs that is not google or Microsoft and by pairing it with the yubikey you can streamline the login somehow. Not sure tho - just speculating
@RobbieRobski
@RobbieRobski 2 жыл бұрын
I emailed yubico asking them what the difference was between Yubikey Personalization Tool and Yubikey Manager. they said the YPT is no longer under active development, whilst the manager is. The manager looks like a dumbed down version though. With the personalization tool, you can auto program keys one after the other if you plug them in back to back.
@Andrew-z2u8x
@Andrew-z2u8x Жыл бұрын
Great video. As an accountant 2fa keys are an important part of my workplace information security plan. I highly recommend them to all accountants.
@steveshuffle
@steveshuffle 2 жыл бұрын
brilliant video! I have 2 Yubikey 5-series and will also use them now for 1-time codes where platforms don't allow for keys!
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yes! It’s a great system. Glad it was helpful!
@LuisGuzman-tz3tv
@LuisGuzman-tz3tv Жыл бұрын
Very informative. I had no idea which to choose. Thanks!
@PeterWilhelm
@PeterWilhelm Жыл бұрын
Thanks for your video! Can I ask. Is it possible to have a 5 series and then a Security Key as back up (to save a bit of money) linking them both to 1password?
@cj37373
@cj37373 2 жыл бұрын
You are missing something - yubikey does not have to protect against physical attacks. It can be used as a key and then it will do so, but even if you keep it permanently connected it perfectly protects you against phishing websites, which is the only danger that nothing else can protect us nearly as great as yubikey.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
If it doesn’t have to protect against physical attacks, then the Bio would have never been developed. We agree, however, on the fact that whether it’s permanently plugged in or kept on your keychain, it is an exceptional protection against phishing attacks.
@williamwchuang
@williamwchuang 2 жыл бұрын
@@AllThingsSecured The FIDO2 standard requires a login before the key is even queried, then you still need to enter a PIN to unlock the key before you tap. Leaving a regular key plugged in all day can damage the USB port because of the leverage of pushing down on the key. That's why enterprises push the mini keys where you are tapping into the port which prevents damage. In order for the stolen key to be an issue, The attacker would have to have the login for the computer, login for the specific websites in question because there is no way to pull the website straight from the key, then enter the pin for the key. And they have to do all of that before the Enterprise or user realizes that their computer got stolen and revokes the key. Realistically, The use of any key eliminates the risk of phishing and basically reduces the attack surface from the entire internet in general to a man on the ground who stole your computer and key.
@timezonewall
@timezonewall 2 жыл бұрын
@@williamwchuang Many people use a short USB extension to prevent the USB port leverage problem. That also saves on USB port wear if a person's use case requires plugging/unplugging it daily or more often. That's not to say there isn't real value in the very small keys also. It's great there are several options to cover the different needs.
@severgun
@severgun Жыл бұрын
​@@williamwchuang if attack planned and targeted, any keylogger should be able to collect all your pin codes before theft. Having key separate from device will add protection layer from that kind of attack
@butmunchass
@butmunchass Жыл бұрын
@@timezonewall Yeah, I originally bought a Yubico key with the wrong usb interface port so I had to get a usb A to usb C conversion extension anyways but yeah I was worried that if I plug/unplug the key too much I might wear it out. I don't worry about wearing out the usb ports on my computer because my computer has like 6 ports.
@kitc1031
@kitc1031 Ай бұрын
Thank you for your videos. Just ordered the simple 2FA authentication through your link. Best Wishes to you.
@TheProductCritiques
@TheProductCritiques Жыл бұрын
This Yubico YubiKey 5 NFC review is fantastic! Two-factor authentication is a must these days, and this security key seems like a top-notch solution. Your comprehensive review and demonstration really helped me understand how it works and why it's so important for online security. It's great to know that it supports NFC, making it even more convenient. Thanks for shedding light on this essential tool for safeguarding our digital lives! 🔐💻👏
@ryancorrea8936
@ryancorrea8936 Жыл бұрын
Your communication skills are marvelous.
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Thanks, Ryan.
@kphensel
@kphensel Жыл бұрын
To the creator: At 5:00 the graphic you are showing has the blue ones on the left mislabeled (A vs C).
@AZ-nu2co
@AZ-nu2co 10 ай бұрын
Need to read all the 1 Star on Amazon before ordering.
@HH-qk2or
@HH-qk2or 2 жыл бұрын
Wow thanks for explaining all of this. You really broke it down. I do have a question on 2FA if anyone could give me some insight. I watched another of Josh’s videos where he states that as backup to losing your key you could have a second key with the same info on it(obviously). I don’t know if Josh, or someone in the comments said the following: as a back up to losing your key (assuming you don’t have a 2nd key) you could have the 2FA settings to allow for a key and and the second option being sms. If you couldn’t Authenticate via key and selected the sms option wouldn’t that defeat the whole purpose of the key? Couldn’t a scammer/hacker have your passcode and then choose the sms option (assuming he had found a way to breach the sms authentication process? I assume I’m forgetting or not understanding a step in the 2FA process. Any info would be much appreciated, thanks in advance.
@fbch32
@fbch32 2 жыл бұрын
Out of all 2FA options, sms is the worst. You don't even have to go the passcode and look at your phone. If the person has enough info on you, they can potentially go to your carrier and get a sim card with your number and get the message themselves without having your phone. I would say the 2nd option should be an authenticator app if you don't have a second key.
@miketungate
@miketungate 2 жыл бұрын
Great video. I have been trying to figure out the differences in keys and they was a nice summary. Thanks.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
My pleasure, Mike!
@CanesFan65
@CanesFan65 2 жыл бұрын
Great video. I do however disagree with your opinion of using the Flush USB-C key. Since I use my key ALL THE TIME, it would be too inconvenient to use a key that I have to constantly keep plugging into my computer. The Flush key is awesome and stays out of the way. I don't think the purpose of the key is to protect from someone breaking into my house and stealing my computer (with the key installed). I view it as more of a Physical device needed for logging into websites, etc which are all EXTERNAL threats. The convenience is a tradeoff I'm willing to take because the likelihood of someone breaking into my house and stealing my computer is so small that it is worth the risk. Of course, I am on a laptop and it goes with me everywhere I go so that is a factor as well. But thats me.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I get that and I'm willing to be wrong. To me, it makes sense to keep the key plugged in while you're using the computer, but if it stays plugged in the whole time, doesn't that make the whole point of a 2FA key worthless?
@raviv7484
@raviv7484 2 жыл бұрын
100% agree on this and I have the same setup for my desktop.
@CanesFan65
@CanesFan65 2 жыл бұрын
@@AllThingsSecured I guess it all depends on each persons individual use case. Thats why there is no single answer. Just giving my perspective to explain why I LOVE the flush USB-C Yubikey. I have all of them but I love the Flush one because I do keep it in my computer ALL the time. But my computer (laptop) is with me everywhere I go. I use it as much as I use my phone. Therefore it is most convenient to use that key. Is there Risk if my laptop were to get stolen (say from my vehicle? YES. There is risk in everything. But as I said previously, I see that risk as minimal because of all of the other steps I have put in place THANKS to you -- Like Double Blind passwords, etc. There is no single answer. I LOVE the yubikey (and maybe place too much trust in it's ability to protect me) but its just one of several layers. I have several laptops all with yubikeys, etc so if one were to become compromised, I can always delete that yubikey from any of my accounts that utilize it. Security is a huge thing for me but SO difficult to maintain. Sun Knudsen has a great channel and he is working on some things that I have been thinking about for several years for more privacy/protection. I am really looking forward to what he is working on. There needs to be a single way to protect all of ones data behind cryptography and I think it can be done. I think it is imperative that people use a combination of A password manager, 2FA, Double Blind passwords, Yubikeys and even secure hard drives such as the Apricorn Aegis Fortress L3 FIPS 140-2 Level 3 Encrypted Portable Hard Drive. I have multiple backups in case one fails. But THANKS to people like you who are always providing ideas to help the rest of us!!!!!!!!
@deldarel
@deldarel 2 жыл бұрын
For a computer that never leaves the house, I can understand it. I still wouldn't since I'd like something that works on my phone as well. I wouldn't leave it permanently in. For laptops that you take along I'd personally find it a bit too fishy. I'm hoping for a nano bio version with a sensor similar to the fingerprint sensor of smartphones who have it on the on/off button.
@latetotheparty7551
@latetotheparty7551 2 жыл бұрын
Perfectly reasonable based on your own risk assessment. Granted, most of us don't need the likes of a hardware security key in general. That being said when I worked uniformed security I'd see, on a fairly regular basis, computers unlocked, unattended, and with security keys in place. I used to just lock the screens and move on and sometimes wait for the owner to return and remind them to secure their screens. It'd take very little for a competent thief to see such and make off with said laptops but that never happened , thankfully.
@wyattarich
@wyattarich Жыл бұрын
Very properly comprehensive video. Well done!
@laquinceanera
@laquinceanera Жыл бұрын
Simple and easy to understand, the best video on this topic!
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Glad it was helpful!
@GraysonCarr
@GraysonCarr 10 ай бұрын
One use case for the nano is a desktop computer that stays at home. You would probably plug it in to a USB hub so you could reach it easily from your desk, and that way, even if someone were to break in to your home and steal your computer, they probably would unplug all of the cables from the back and wouldn't take the key.
@xonx209
@xonx209 2 ай бұрын
Another reason to not keep the key plugged into your computer at all times is to prevent accidentally bumping the key and breaking it, since it sticks out of the computer. Hopefully the NFC function would continue to work if that happens.
@Itsme-vo4fx
@Itsme-vo4fx Жыл бұрын
I’m still somewhat confused. Can I use the same key on multiple devices and can I have multiple keys for all those devices? If I heard you correctly, you said that NFC Security Keys work with iPads, yet Apple says iPads don’t support NFC. My iPad has a lightning port but I may not always have a tablet with that type of charging port. So, future port compatibility is of concern to me. Thanks for your security information.
@chinarut
@chinarut 2 жыл бұрын
@4:40 NFC keys will *not* work on an iPad. there is an NFC chip to store secure data but there is no NFC antenna. bummer as I love my iPadPro!
@gasoline2406
@gasoline2406 6 ай бұрын
Unfortunately, iPads don't have NFC capability. This is good to keep in mind when selecting the key, and deciding on an adapter.
@VinhNguyen-ul8yg
@VinhNguyen-ul8yg Жыл бұрын
Bro, thanks for the clear and concise explanation. The best!!!!
@AllThingsSecured
@AllThingsSecured Жыл бұрын
My pleasure!!
@matheusmartinsfarias5762
@matheusmartinsfarias5762 Жыл бұрын
Wonderful. Finally I found a video that expose the info clearly. Tks, obrigadooo
@MikealHughes-vg1tb
@MikealHughes-vg1tb 7 күн бұрын
Question, can you do a how to reset your Yubikey video? Mine locked me out due to forgetting the PIN.
@benjijmason
@benjijmason Жыл бұрын
Very useful thank you. I now know which one to get. Thanks!
@EliúBelanich
@EliúBelanich 2 ай бұрын
Appreciate the detailed breakdown! 🧐 Just a small off-topic question: 😅 I have a set of words 🤷‍♂️. (behave today finger ski upon boy assault summer exhaust beauty stereo over). Not sure how to use them, would appreciate help. 🙏
@PlacestobeVG
@PlacestobeVG 7 ай бұрын
Hi, thanks for the informative video. I have some questions about the 5 Series and the Security Series. I'm not at all tech-savvy. As an Apple user mainly (laptop and Iphone), if I get the Security Key NFC, I should go for the one with USB-C right? As USB-C should fit the thunderbolt port? Does the YubiKey 5Ci not come with NFC? Why is it the most expensive in the 5 series but with fewer functions? I assume that the lightning connector is helpful to plug into the iphone, but why would I need to plug it in when I can get the cheaper 5C NFC version? I'm kinda confused. Thanks!
@deldarel
@deldarel 2 жыл бұрын
I can see a use for those nanos. If you have a very low crime rate where you live, and you only really have 2FA to protect your accounts from getting hacked from other sources, then that seems ideal to me. This isn't me, but I know people who this would apply to. People who are annoyed that they need to use their auth app while not having any high risk accounts.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I keep my key on me at all times and I don’t get asked to plug it in but once a month, so it’s not too inconvenient to me.
@darkwolf41nite53
@darkwolf41nite53 Жыл бұрын
I really have to get one
@psycedelic
@psycedelic 2 жыл бұрын
the Nano is meant for server halls where burglers dont have access too.. to easy type admin pw for root config etc.
@mscarmenw
@mscarmenw Жыл бұрын
Your video answered my question. Thank you!
@ViproductionsUSA
@ViproductionsUSA 2 жыл бұрын
very well put together video but my question is what's the difference between the Yubikey 5C NFC and the FIPS version. is it true that the FIPS version can't do the things the 5 series does ?
@mr.bobcyndaquil4214
@mr.bobcyndaquil4214 Жыл бұрын
The federal government requires the use of the FIPS one on their devices. I imagine some contractors for the federal government will need it as well for compliance purposes. Your average joe doesn't need it.
@RubenStormVlog
@RubenStormVlog 19 күн бұрын
Storing openpgp on the yubikey sounds good, how does it works! Do you have a Video about it?
@richardbrown8681
@richardbrown8681 Жыл бұрын
Well done, question: will a strong password suffice?
@blacky4804
@blacky4804 2 жыл бұрын
Great video..I don't own a pc..would still be able to use 5c with my phone only...ty
@kemarchristie6050
@kemarchristie6050 8 ай бұрын
Really informative vid💯. Dont think usb A will be elimated from laptops for now as most accessories use it
@cassandraspencer1476
@cassandraspencer1476 2 жыл бұрын
Please can you do a single video ONLY about how to use the "YubiKey 5C" key? Every video that I've seen rushes along without focusing and giving direct advice. The YubiKey product range is too convoluted and confusing. I just need one video about this one item.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Thanks for the idea!
@jaredneaves7007
@jaredneaves7007 8 ай бұрын
I believe protonmail now allows hardware keys
@AllThingsSecured
@AllThingsSecured 8 ай бұрын
Yes, they do now. Thanks for the feedback.
@thatdude610
@thatdude610 Жыл бұрын
@allthingscsecure Would the Yubikey 5 nfc work with an nfc reader plugged into my PC via USB? This would allow me to just tap the Yubikey on the nfc reader and not have to plug the key into my computer.
@TheCryptoSmit
@TheCryptoSmit Жыл бұрын
Great video, thank you very much for explanation ❤
@johnspitta6725
@johnspitta6725 Жыл бұрын
My wife and I have 2 iPhones. Each phone has its own Apple ID. Can we use the same hardware keys? 2 total. Or do we need to buy 2 for Each phone? 4 total? Thanks
@AllThingsSecured
@AllThingsSecured Жыл бұрын
You can use two. I would set it up where you keep one and your wife keeps one, each having a backup for each other.
@anothergoogleuser
@anothergoogleuser Жыл бұрын
Outstanding explanation. Thanks for sharing.
@SnaTeamCamosun
@SnaTeamCamosun 9 күн бұрын
Is fingerprint more or less secure than having to put in a code and touch a button???
@robloxfan4271
@robloxfan4271 7 ай бұрын
some reason the blue base key is sadly not available in the uk
@nonshatter7
@nonshatter7 7 ай бұрын
This is useful and narrows things down for me. You and others often recommend getting 2 of these keys. Is it ok to get the exact same spec for both?
@AllThingsSecured
@AllThingsSecured 7 ай бұрын
Yes, you can get the exact same key or a different one. It doesn't matter as long as it fits most of the devices that you use.
@nonshatter7
@nonshatter7 7 ай бұрын
@@AllThingsSecured Ta
@gachecem_yt
@gachecem_yt 9 ай бұрын
What other brands could I buy something similar, or what other cheap options do I have?
@kevinholleman4882
@kevinholleman4882 11 ай бұрын
iPads do not have NFC yet
@musiceditor7083
@musiceditor7083 10 ай бұрын
Would be interested to know where the data goes from the bio series... by the looks of this video, the bio series works through an app. Could they be harvesting that data??
@ciprianadrian2123
@ciprianadrian2123 2 жыл бұрын
I own 3 Titan Secure Keys from Google . 2 USB A-NFC models and 1 USB C-NFC model
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I’ve used those before too. Not too bad. What do you think?
@iBrandooon
@iBrandooon 2 жыл бұрын
bought mine on ebay used for about 55$ for two of them. well worth it. i dont think its a security risk buying used
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Maybe not, but it’s not something I recommend.
@iBrandooon
@iBrandooon 2 жыл бұрын
@@AllThingsSecured you can change the key on it, you should make a video on it for the people that would like to save money and have the best security. theres also yubikey genuine check.
@ITILII
@ITILII 2 жыл бұрын
At 4:05 all the places you would use Yubikey - how about that new product that's all the rage, I believe it's called....wait a minute....a Desktop ? 😏
@itsawave3127
@itsawave3127 9 ай бұрын
Did they stop making the blue ones?
@bosa1345
@bosa1345 9 ай бұрын
Should I buy the yubikey from amazon??
@danohanlon8316
@danohanlon8316 Жыл бұрын
I use a pc and an iPad on pretty much a 50/50 basis. The way Yubico configures its range means that, practicably speaking, I need two Yubikeys (AND two backups!). At £80 pounds each, that’s waaaaaaaayyyyyyyyy too much money. Will need to stick, for now (actually, for quite a while, I think) to the ol’ email code confirmation method of 2FA.
@timrosede
@timrosede Жыл бұрын
Why do you need Four keys? Two Should be enough than?
@e-vd
@e-vd 6 ай бұрын
Why is Yubikey the best? Isn't it proprietary? Would an open source product be preferable? Why should we rely on Yubikey?
@glendoer3880
@glendoer3880 Жыл бұрын
Hopeless work with some sites but not others such as MS/ and told to try another key as if you have a wall full.
@garegaupa
@garegaupa 2 жыл бұрын
What if you have a Yubikey and you lose/break it? Do you have to reset all your 2FA logins, or can it be recovered to a new, blank key? And on a related note, can you have two Yubikeys at the same time (one that you use and one for backup purposes) that are interchangeable?
@neuideas
@neuideas 2 жыл бұрын
People who choose a Fido key typically have more than one, and register at least two with each service that supports them. If you lose or break one, you can use the spare instead. Log in and remove the lost/stolen/broken key from the service, and purchase a replacement. If you only have one Fido key, then make sure the service allows alternative ways to log in without the key. Google, Twitter, Microsoft, and others let you generate a one-time-use emergency password. Keep that on file should the worst occur, and you can still get in and remove Fido key functionality until you can get a replacement. In my opinion, a TOTP authenticator app is cheaper and less of a hassle. Fido keys are more secure, but they have unique drawbacks which can hamstring things even if there is no theft involved.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Always back up your key with another key or a different kind of 2FA backup (codes, authenticator, etc). And yes, you can use the same key for as many accounts as you want.
@williamwchuang
@williamwchuang 2 жыл бұрын
Almost all websites will allow you to register multiple security keys. I believe that Twitter only allows you to have one. All websites will give you the option to print out one time backup codes that will get you in the door. You should keep those passwords somewhere safe either at your office in your car or at home. You should also use a backup key or set up OTP.
@williamwchuang
@williamwchuang 2 жыл бұрын
@@neuideas a security key is so much easier to use than OTP. I just have to plug in the key and just keep tapping for the rest of the day instead of having to keep pulling out my phone and entering the key codes.
@neuideas
@neuideas 2 жыл бұрын
@@williamwchuang I disagree. A Fido key can be misplaced, malfunction, physically break, or the USB port on the computer could be buggy or nonfunctional. Maybe you simply left the key somewhere else, and you can't get to it right now. This can make things very inconvenient. TOTP codes, on the other hand, can be generated in a variety of ways, and don't necessarily require you to have a tablet or phone handy. They are cheaper to back-up, and they are more ubiquitous than Fido key functionality. If you require the level of security a Fido key provides, then have at it. Just be aware of its shortcomings, and be prepared for the worst.
@notreallyme425
@notreallyme425 2 жыл бұрын
4:42 I didn’t think NFC worked on iPads?
@koushikraj9815
@koushikraj9815 Жыл бұрын
If that have add pad manager built in it was super but it is too much priced though
@azclaimjumper
@azclaimjumper 2 жыл бұрын
Please reconsider your 1password manager recommendation which isn't Open Source. BitWarden is Open Source. I've successfully Smart Card Required pairing of both of my 5NFC USB-A Yubikeys to both of my MACs. In addition, Bitwarden password manager, all my Yahoo Accounts, & all my Google Accounts now require me to authenticate with either of my HARDWARE Yubikeys. Sadly, NO Bank, No Brokerage firm, & No Credit Card Company allow HARDWARE 2FA.
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
There are plenty of Fintech banks allow for 2FA keys, such as Mercury.
@ts.nathan7786
@ts.nathan7786 12 сағат бұрын
Why can't we use youbekey bio on android cellphone?
@720petros
@720petros Жыл бұрын
Hi Josh thank you for the great videos. I have a question, should I keep all the 2FA (like 2FA app. and sms otp) options in my accounts if I have a physical security key (Yubikey) or should I delete them and only have physical security as 2FA?
@DgamesJ
@DgamesJ Жыл бұрын
I deleted the SMS/Phone yes
@720petros
@720petros Жыл бұрын
@@DgamesJ I delete it to but I was wondering about Authenticator App OTP, should I delete this one to from every account or not?
@Boblobblaw88
@Boblobblaw88 7 күн бұрын
So I can use a usb c key w an adapter in my pc (usb a) ?
@cipher893
@cipher893 5 ай бұрын
Very informative, thank you! There are things I really don’t understand. I would’ve liked the FIPS variant but reading it only has firmware 5.4 (today) makes it impossible to store more than 32 potp sites at once. The Yubikeys with firmwares 5.7+ can store up to 100 (if I remember the amount correctly). Why isn’t there a FIPS variant with firmware that allows for more mobile authenticator based password storage?
@footlooselife5004
@footlooselife5004 Ай бұрын
NFC = Near-field communication. The C is communication, not connection. Connection here also is the completely wrong term to use since nothing connects, there is just a simple communication. Especially when it comes to security the small details matter a lot so you should get the basics right!
@canpin
@canpin Жыл бұрын
Great video. Thanks! We have a computer on factory floor that is shared. Can one key accomodate multiple users?
@AllThingsSecured
@AllThingsSecured Жыл бұрын
If all those users have access to the same key, then yes. You can also configure multiple keys to sign into the same account/device.
@shimon1
@shimon1 2 жыл бұрын
Hey Josh Great video! I have a question - do you think it is worth it to transfer all my 2fa codes from authy to the yubico authenticator app, for the benefit of using the yubikey on services that does not support it natively? I have been using authy for a few years now, but since I bought the yubikey I have been thinking of making the move... What would you do?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
If you’re using and enjoying Authy, then I don’t see any benefit to changing unless it’s just important to you. You could also set it up on both Authy and Yubikey as a backup.
@viralbox5603
@viralbox5603 2 жыл бұрын
still dont know. ssh keys is my usecase. guess 5 nfc, right?
@richbytch99
@richbytch99 8 ай бұрын
I am confused, I will be working from home and sometimes my local library. I also have a Editor (limited) for my channel. Which one do I need?
@Oswee
@Oswee 2 жыл бұрын
So, i like the idea of Bio. But does the Bio works with NFC? Or it should be plugged to provide power?
@ZedP
@ZedP 3 ай бұрын
Does it get along with Linux?
@Frank-b5j
@Frank-b5j 4 ай бұрын
hi...If im not mistaken one time passcodes are 2FA for sites such as crypto exchanges...that would eliminate the base level key...?
@fightthebully3331
@fightthebully3331 Жыл бұрын
Can I use both a yibikey security key USB and usb C together for all my accounts? Keep one for backup.
@camgryan
@camgryan 2 жыл бұрын
FYI: NFC is not supported by any models of iPad.
@thomasshackelford3572
@thomasshackelford3572 9 ай бұрын
Living in Thailand (other questions about that) and about to order direct from Yubikey and saw the SiamBC dialog box that carries Yubikey but also see the comment below that buy direct and not third party? Thoughts on SiamBC?
@Jell0zz
@Jell0zz 2 жыл бұрын
Why do you recommend the Yubikey system over Google Titan Security keys?
@RogerGarciaIII-wv2uv
@RogerGarciaIII-wv2uv Жыл бұрын
WHAT IF THEY INSTALL IT INSIDE THE COMPUTER?
@AlexProfTech
@AlexProfTech Жыл бұрын
Thank you a lot for clear explanation, because I got lost in their variety 😂
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Glad I could help!
@nightingalebird204
@nightingalebird204 2 жыл бұрын
Is it safe to use a security key with an USB adapter?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
Yes, it is.
@melindaweaver786
@melindaweaver786 2 ай бұрын
I want them for a digital wallet.
@ericfulmer2546
@ericfulmer2546 2 жыл бұрын
Passkey Now Built into iOS 16 with Fido2
@andypejman
@andypejman Жыл бұрын
Where did you get your matrix-themed skin?
@SmokeFFM
@SmokeFFM Жыл бұрын
Windows 11 login will run with the cheapest yubikey????
@katieaus295
@katieaus295 2 жыл бұрын
What about Duck go
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
What about it?
@SalamanderFangskin
@SalamanderFangskin 2 жыл бұрын
Now Proton supports Yubikey
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
I know! That’s awesome.
@hereallyfast
@hereallyfast Жыл бұрын
I kind of wish they added the fingerprint sensor to the five series
@AllThingsSecured
@AllThingsSecured Жыл бұрын
Or added the Series 5 capabilities to the Yubikey Bio.
@kantib.anondewar8769
@kantib.anondewar8769 Жыл бұрын
"can i use a 5 series on my windows 10 desktop to authenticate on a site which only accepts otp, and not hardware keys, without a phone necessary for scanning qr codes?" Security series?---which is 1/2 the price?
@azclaimjumper
@azclaimjumper Жыл бұрын
As of 24 June 2021, Bank of America now permits YubiKeys to be used for 2FA.
@mrtechie6810
@mrtechie6810 2 жыл бұрын
I like the idea of requiring a PIN to open the authenticator. How about OnlyKey?
@AllThingsSecured
@AllThingsSecured 2 жыл бұрын
It’s a good option as well, although not nearly as user friendly as the Yubikey.
@mrtechie6810
@mrtechie6810 2 жыл бұрын
@@AllThingsSecured thanks. How so?
@FromN.s
@FromN.s Жыл бұрын
After you set your security key app, you need this to unlock your phone or is it just pass code?
@hermes8258
@hermes8258 Жыл бұрын
I already use 2FA from having set up an authenticator app. I am in the process of getting important accounts set up with OTP. So, is there any point in adding another layer via Yubikey? I travel a lot and am a computer nincompoop. Please make a video on this context.
@widowmaker2911
@widowmaker2911 Жыл бұрын
I have KZbin channel and KZbin tv via Amazon Firestick. If I use yubikey 2FA with my google account, will I need it with KZbin tv and Firestick? Neither Firestick or tv have usb.
Setup a 2FA Key for MAXIMUM Online Security! (Yubikey Tutorial)
10:26
All Things Secured
Рет қаралды 409 М.
6 Must-Have Security Gadgets That Fit in Your Pocket
9:03
All Things Secured
Рет қаралды 2,1 МЛН
How To Choose Mac N Cheese Date Night.. 🧀
00:58
Jojo Sim
Рет қаралды 115 МЛН
How Much Tape To Stop A Lamborghini?
00:15
MrBeast
Рет қаралды 261 МЛН
Farmer narrowly escapes tiger attack
00:20
CTV News
Рет қаралды 13 МЛН
Which YubiKey Should I Get? 2023 2FA Hardware Key Buyers Guide
10:32
STOP Giving Your Real Email Address (do this instead)
8:49
All Things Secured
Рет қаралды 335 М.
Debunking 5 MYTHS About Yubikey
15:36
Shannon Morse
Рет қаралды 205 М.
Passkeys SUCK (here’s why + how I use them)
10:49
All Things Secured
Рет қаралды 100 М.
7 Cybersecurity Tips NOBODY Tells You (but are EASY to do)
13:49
All Things Secured
Рет қаралды 898 М.
BEST Online Security Strategy for Personal Accounts
7:00
All Things Secured
Рет қаралды 49 М.
Are You Vulnerable To This New Yubikey Attack?
20:46
Surveillance Report
Рет қаралды 13 М.
Yubikey - The Ultimate Beginner Guide (How to Setup & Use)
16:22
Tario Sultan
Рет қаралды 191 М.
17 Hacker Tools in 7 Minutes - ALL Hak5 Gear
6:54
Hak5
Рет қаралды 462 М.
Yubikey Bio vs Yubikey 5 | Is Fingerprint 2FA Worth an Extra $40?
8:11
All Things Secured
Рет қаралды 138 М.
APT APT tutorial #rosé #apt #cute #robot #tutorial
0:28
Dr. EMO
Рет қаралды 4,8 МЛН
Как настроить колонку Алиса за границей ?
0:20
Apple phone #shorts #trending #viralvideo
0:48
Tech Zone
Рет қаралды 2,1 МЛН
Samsung S4 win this 💀 #trollface #troll #trending #trend #viral
0:19
Okotanis Gaming
Рет қаралды 18 МЛН
НЕ ПОКУПАЙ iPhone 17 Air!
0:40
ÉЖИ АКСЁНОВ
Рет қаралды 3,4 МЛН