Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Security Basics
Yubico / YubiKey Aug 20 2009 07:52PM
Micheal Espinola Jr (michealespinola gmail com) (1 replies)
Hi everyone,

YubiKey seems too good to be true to me. Regardless of all the
positive articles online, the only thing I've seen from a somewhat
reputable source is that Yubico was a finalist for the "Most
Innovative Company At RSA Conference 2009" contest - which it didnt
win. Otherwise, its all been misc blog posts and various other
commentaries from sources that I dont particularly trust, nor did they
show a thoughtful analysys of the product as a true second-factor
authentication device.

On the negative, the only honest analysis of its flaws I have seen, is
from Fredrik Björck, here:

http://security.dj/?p=4

I would love to hear some honest commentary and thoughts from the
security experts that I *do* trust, that are on this list.

Thank you very much for your time - its very much appreciated!

--
ME2

------------------------------------------------------------------------

Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442
f727d1
------------------------------------------------------------------------

[ reply ]
Re: Yubico / YubiKey Aug 23 2009 07:03PM
Alex. S. (alexander salamanca gmail com)







 

Privacy Statement
Copyright 2009, SecurityFocus