Yubikey Bio vs Yubikey 5 | Is Fingerprint 2FA Worth an Extra $40?

Поделиться
HTML-код
  • Опубликовано: 5 авг 2024
  • Which 2FA key should you buy? Here is a look at how the new Yubikey Bio, which uses your fingerprint as added security, compares to the Yubikey 5 series, which is widely considered the gold standard in 2FA keys. If you care about your online security, this is IMPORTANT!
    ▶ Buy Yubikey 5 Series keys: geni.us/yubico-5c
    ▶ Buy Yubikey Bio keys: geni.us/yubico-bio
    (the above are affiliate links, which means that at no extra cost to you, I will be compensated if you purchase your 2FA key through these links. Thank you for your support of this channel!)
    If you care about your personal security and privacy online, download my free security checklist here:
    ✅ Security Checklist: www.allthingssecured.com/secu...
    🔹🔹🔹What You Should Watch Next🔹🔹🔹
    We've got a lot of great privacy- and security-related content here on the All Things Secured RUclips channel (although we admit we're a bit biased). For more help related to your passwords and 2FA security, here are some videos you should watch next:
    ✅ How to Setup a 2FA Key for Online Security: • Setup a 2FA Key for MA...
    ✅ How to Setup Google Authenticator (free): • How to Set Up Google A...
    ✅ Ultimate Password Manager Setup Guide: • ULTIMATE Password Mana...
    🔹🔹🔹Help Support All Things Secured (Recommended Services)🔹🔹🔹
    If you enjoy this kind of practical security and privacy content, one of the best ways you can help support this channel is by using these affiliate links to our favorite products and services. When purchasing through these links, you not only get the best available deal, the companies will also pay us a small commission. Thank you for your support!
    ✅ Recommended Password Manager: www.allthingssecured.com/yt/1...
    ✅ Recommended Identity Monitoring: www.allthingssecured.com/try/...
    ✅ Recommended 2FA Security Key: www.allthingssecured.com/yt/y...
    ✅ Recommended Secure Email: www.allthingssecured.com/try/...
    ✅ Recommended VPN: www.allthingssecured.com/try/...
    *********************
    Video Timestamps
    *********************
    0:00 - Yubikey 5 NFC vs Yubikey Bio
    0:28 - My favorite 2FA key
    1:00 - Why use a 2FA key with biometrics?
    1:45 - Setting up the Yubikey Bio fingerprint
    2:33 - Pros and Cons of the Yubikey Bio
    5:10 - What if the bio sensor breaks?
    6:19 - Yubikey Compatibility: 5 NFC vs Bio
    7:29 - Which 2FA key should you use?
    *********************
    I've been using the Yubikey 5 series 2FA key (2-factor authentication) for many years now and it is an excellent way to secure your online accounts, including Gmail, social media, and investments. But with the introduction of the new Yubikey Bio, many people are confused as to which one they should buy. Here's a quick look at the differences between the two to help you make an informed decision.
    #2fa #yubikey #cybersecurity
  • НаукаНаука

Комментарии • 380

  • @AllThingsSecured
    @AllThingsSecured  2 года назад +22

    Was this a helpful comparison for you? Leave any questions below and I'll do my best to answer. And I always appreciate your support when you use my affiliate links to buy either the Yubikey 5 series keys (geni.us/yubico-5c) and the Yubikey Bio series keys (geni.us/yubico-bio).

    • @Qui-Gon_Jinn69
      @Qui-Gon_Jinn69 2 года назад +1

      yes, this is very helpful

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      Glad to hear it!

    • @yvesgysel9834
      @yvesgysel9834 2 года назад

      Very good explanation. Thanks. I just bought 2 x Yubikeys 5 NFC. Since I will be using them on my desktop, laptop, smartphone. That's exactly why I did not choose to buy the biometric version (No NFC).

    • @jccgold
      @jccgold 2 года назад

      @@AllThingsSecured i kind of didnt understand how for the laptop its necessary the bio Yubikey but than i could acess the account from a nft yubikey in my cellphone? I thought the only way to acess the account would be with a bio yubikey? Confusing

    • @arpadfritz1291
      @arpadfritz1291 2 года назад

      Hi!I’m sorry to bother you.I have an Apple MacBook Pro.Can I use the Bio series with that,to connect to my computer?(usb port etc.)

  • @derain95
    @derain95 2 года назад +212

    My friend who used to do woodworking also recommend you have a backup not based on your fingerprint.

  • @Daniel-ml4jr
    @Daniel-ml4jr 2 года назад +7

    Hey mate. Just gotta say I browsed your comment section and noticed youve replied to virtually everyone with advice or answers.
    Very strong commitment and impressive! I've followed.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Thanks, Daniel. I can't do it for every comment, but I do my best.

  • @leonardlevy4969
    @leonardlevy4969 Месяц назад +1

    This was very helpful, and gave me some clarity. Appreciated the insight!

  • @franciscomichael2085
    @franciscomichael2085 2 года назад +55

    The USB-C standard is on most newer Android phones, meaning you can use the Biometric function on Android. I'd like to just point out that while you personally use Apple, a large mobile market segment will be able to use the bio series.

    • @andrzej.s
      @andrzej.s Год назад

      @@kellyotter what adapter do you use? I’ve tried one and it doesn’t work.

    • @RogueAmendiaresyourgirl
      @RogueAmendiaresyourgirl Год назад

      Do you know if there's a Yubikey for microUSB ports?

    • @s2maschmeyer
      @s2maschmeyer 10 месяцев назад

      You need a micro-USB to USB-C adaptor (See Amazan). Note: Another option is to use a magnet adaptor for both the port on the mobile and, the Yubikey. Unfortunately, magnetic cables do not yet have an IEEE standard so, you are locked into brand and style. @@RogueAmendiaresyourgirl

    • @costafilh0
      @costafilh0 4 месяца назад

      no. but you can go to the website and find it for your self like any decent human being.@@RogueAmendiaresyourgirl

    • @SmallSpoonBrigade
      @SmallSpoonBrigade 4 месяца назад

      @@RogueAmendiaresyourgirl I don't think so, but if you're device supports USB to go, you can probably get an adapter.

  • @sekhar721
    @sekhar721 Год назад +1

    Dude, this video helped me to decide to buy which key as my backup. Thanks a lot.

  • @peterkwolek2265
    @peterkwolek2265 2 года назад +54

    My advice for someone just getting into security keys, get 5 series with NFC. Covers the most use cases.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +15

      Agreed, Peter. I shared pretty much the same advice in the video. 👍🏻

    • @martinlutherkingjr.5582
      @martinlutherkingjr.5582 2 года назад +2

      Doesn’t work for iPads with lightning

    • @comecontre7912
      @comecontre7912 2 года назад +5

      Doesn't nfc reduce the security of the key? With a transmitter you can read the key? We lose the security of the hardware encryption principle

    • @bitcoinwallet-tj5ue
      @bitcoinwallet-tj5ue 2 года назад +1

      @@comecontre7912 read the key? how?if you need to hold the key almost against the key to work? and if so then still how can one decrypt the software on the key?

    • @mrtechie6810
      @mrtechie6810 2 года назад

      @@comecontre7912 you should NOT be able to read the secret key!😐
      I think you mean an attacker could access the key from a distance.

  • @santmat007
    @santmat007 2 года назад +2

    Great Video on 3 Factor Authentication Josh... Thank You...
    1st Factor Auth: ... UserName & PassWord Submited
    2st Factor Auth: ... Yubi Key inserted into your Desktop USB and clicked when prompted.
    3rd Factor Auth: ... Yubi Key Biometrics test combined with Key and clicked when prompted.
    Excellent Video Josh...

  • @onetime5640
    @onetime5640 6 месяцев назад

    Thanks , great information !

  • @MarvinTurner
    @MarvinTurner 2 года назад +4

    Good point about the removal of NFC. I overlooked that initially. Thanks

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Glad this was helpful, Marvin. Thanks for the comment!

    • @TwstedTV
      @TwstedTV Год назад

      @Sayed Hamid Fatimi that power can be given by the device itself. so it wont matter. even a cell phone can power the biometric.
      any device has way more than enough power to power the biometric of any biometric key.

    • @mariachi202ify
      @mariachi202ify Месяц назад

      @@TwstedTV NFC and Biometric? So we'll have another 'You're holding it wrong' situation on our hands.

  • @mitchellquartero
    @mitchellquartero 2 года назад

    Awesome thank appreciate it I'm going to buy it early next year

  • @RN-xz2sw
    @RN-xz2sw 2 года назад

    Great vid!

  • @SuperNova-py1ec
    @SuperNova-py1ec Год назад

    Thanks for the video. You answered some questions I had about using it with mobile devices etc. Is the pin backup open to brute force? It would not take long to go though 9999 numbers if it allows 4 digit pins?

  • @MrPerkaholic_
    @MrPerkaholic_ 2 года назад

    A very helpful video! Thank you very much!

  • @chalion8399
    @chalion8399 2 года назад +9

    I work for a company that uses cleaning chemicals daily and i've found that when I had the fingerprint scanner on a phone, I had to use multiple fingertips as backups to unlock that phone. The chemicals alter the way my prints registered on the ID pad. So i've become very leery about using my fingerprints for my sole access.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +4

      Very interesting. Thanks for sharing your experience!

    • @roofoofighter
      @roofoofighter Год назад +1

      Why don’t you wear gloves? Chemicals are not good for you.

  • @CyberMedics
    @CyberMedics 2 года назад +5

    Informative and concise! Thank you. When you say the bio doesn't work with some accounts....basically because the bio doesn't support the authenticator applications. If an online account requires you to use the authenticator app, then you would not be able to use the bio key.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +3

      That is correct. I don't think I did a good job of explaining that and perhaps even misspoke about the authentication protocols (I'll need to double check). The important point is that not all accounts accept a 2FA key and since the Bio doesn't have the authenticator - as you say - it can't be used for all your 2FA needs.

    • @CyberMedics
      @CyberMedics 2 года назад +2

      @@AllThingsSecured you did a great job. There's a lot to cover and so many different aspects. In the videos that I've done, it always seems I'm missing something in the presentation, so really appreciate your effort thanks again.

    • @KateGrayCode
      @KateGrayCode 2 года назад +1

      @@AllThingsSecured The BIO also doesn’t include PIV. PIV support (when used with a PIN) is also protected if your device is stolen.

  • @talktimewitheddiej
    @talktimewitheddiej 7 месяцев назад

    Love this info

  • @FromDesertTown
    @FromDesertTown 2 года назад +6

    Question: What do you think of actively using 2 keys (the bio and the NFC)? I mean, using the bio for all the accounts it can be used for, and using the NFC for everything else. (with a third key stowed away as backup)
    Would this create any problems, like confusing the auth app, or creating some other odd conflict?
    Thank you for this informative and helpful video by the way!

    • @firalia
      @firalia Год назад

      I wouldn't think you'd run into any issues. It shouldn't confuse the auth app at all because it's designed to work with multiple keys. He even mentioned that a mix of the NFC and bio keys is an option.
      The biggest issue would probably be trying to remember which account is on what key!

  • @ornikel
    @ornikel 2 года назад

    Awesome advice 👍🏾👍🏾

  • @HeyYouSA
    @HeyYouSA Год назад

    Already have the 5c which will be my back up and trying to decide between NFC or Bio. Think I will go with NFC for now based on your feedback.

  • @pedroleitao1937
    @pedroleitao1937 2 года назад

    Hi Josh,
    I’m considering buying an YubiKey 5Ci, since I suppose, owning only two iPads Pro (one 2020 and one M1) and an iPhone 12. So I have no desktop or laptop.
    I use 1Password for all my passwords and 2FA codes.
    Considering this and that my use is mostly personal, and at €70 each key (buying 2), would you still recommend the investment. After looking at the services compatible, I would probably using the YubiKey withe no more than 5-6.
    Thanks and keep up the nice videos.

  • @alfonsodavila1655
    @alfonsodavila1655 Год назад

    Muchas por subir estos videos nos ayuda mucho. Saludos

  • @chuckbecker8735
    @chuckbecker8735 2 года назад +1

    Excellent video....well done

  • @Heart0rHead
    @Heart0rHead Год назад +1

    Can you use the Bio to log in to Linux and MacOS with just the touch of the sensor? (like Apple TouchID)

  • @fecklefriend
    @fecklefriend Год назад

    Perhaps a silly question, but I assume you can have more than one backup Yubikey. My daily one, my backup at home, my backup at a family member's house, etc. Is that the case? In the same way, if I did break or lose my main key then I could just make a backup from my backup. Correct? Thanks for all your videos Josh!

  • @ivanbman
    @ivanbman 2 года назад

    Excellect video...Well presented!

  • @mistermixxxx
    @mistermixxxx 2 года назад +1

    Bravo man! you are a pro!

  • @denniss1211
    @denniss1211 Год назад +1

    One for you and one for spouse but both are also saved for you and spouse. I would also suggest a third that is stored in a VERY safe place.

  • @bestter
    @bestter 2 года назад +2

    thanks! I just buy a backup Yubikey 5 yesterday, and I was scared you recommended the BIO one 😌

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Ha! You're going to love the 5 series, Martin :)

  • @karimelbehaidy4257
    @karimelbehaidy4257 Год назад

    can you describe the difference between the 2 keys from security point of view, which is better and which techonelgy each of them is using

  • @ama7509
    @ama7509 3 месяца назад

    Re Nano option. Is the depression of the unit a toggle switch or is the product somehow reading my print? If merely a toggle, what's to prevent non-me from gaining access? Txs.

  • @Carlosjousuesalcedo
    @Carlosjousuesalcedo 2 года назад +1

    Thank you !! With this video !!! This video helps !!!! 😎😎 !!!!

  • @RogueAmendiaresyourgirl
    @RogueAmendiaresyourgirl Год назад

    My phone uses microUSB, so if I just a USB-C to microUSBB converter, would the Yubikey work with it?

  • @alk9962
    @alk9962 Год назад

    Can I configure a LUKS volume to be opened if I provide both a passphrase and the BIO or 5 NFC?

  • @jeylful
    @jeylful 8 месяцев назад

    Great video! Something I do not like of the Yubikeys is that someone can of course, steal them (or I can lose mine). I have two standard Yubikeys but I am thinking I will buy the Yubikey bio.
    Would you know if the Yubikey Bio works with Binance? Cheers.

  • @engravingworld
    @engravingworld 5 месяцев назад

    Do I need to set up YubiKey Manager to configure FIDO2, OTP, and PIV functionality? Thanks.

  • @haroldfinch8019
    @haroldfinch8019 2 года назад +2

    Hey Josh, I enjoy watching your videos-keep up the good work! Can you make a video on how to set up your Mac, iPhone, Android, Windows for privacy (like settings to use, apps to install, etc.)? Also, making a video on email forwarding service, such as AnonAddy or iCloud Mail relay, would be really helpful!
    Furthermore, I would like your opinion on using apps vs web browsers. Do you sign in to apps on iOS or use the web browser? For example, using the RUclips app vs the browser or the Amazon app vs the browser or the Netflix app vs browser. I wonder if it's better to use the web browser because the company will have less access to data, but at the expense of user experience. Wouldn't companies be able to link the dots together easier if you use native apps? For instance, signing in to the RUclips app also signs the user into every other Google app. (Any thoughts on progressive web apps, LOL?)

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      Thanks so much for the suggestions, Harold! A few of the ideas you shared are already on my content calendar, but I'll add the ones that aren't there.

    • @haroldfinch8019
      @haroldfinch8019 2 года назад +1

      @@AllThingsSecured I just saw those! Good stuff. Did you read the second half of my comment?

  • @fredsalter1915
    @fredsalter1915 8 месяцев назад

    Thanks!

    • @AllThingsSecured
      @AllThingsSecured  8 месяцев назад

      Wow…thanks so much for the support, Fred! 🙌🙌

  • @gabrielluizbh
    @gabrielluizbh 2 года назад

    How do I use it on android?
    I have the Yubikey 5 NFC.

  • @jashupadhyay5335
    @jashupadhyay5335 Год назад

    Can I restrict number of apps I can use with Yubikey for enterprise?

  • @JohnChvatalGSTV
    @JohnChvatalGSTV 2 года назад +3

    I’m looking to upgrade my security with 2FA. Do you have a video on how to get started with the Yubikey and specifically, how to authenticate multiple Yubikeys with the same online account?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +4

      Hey John! Have you seen this video I produced last month? ruclips.net/video/fzUVrz0ixn8/видео.html
      To setup multiple Yubikeys on the same account, you simply have to go through the same process in the video above again with the backup key. There is no "migration process" or way to duplicate keys other than setting them up separately, preferrably at the same time, on the same account.
      Does that help?

  • @nerradnevar
    @nerradnevar 2 года назад

    Great video - very well explained. Where can I find out what applications work with the Yubikey 5NFC

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      I have a link to the website “what works with Yubikey” in the video description.

  • @PraveenGosain
    @PraveenGosain Год назад

    Such a useful video

  • @kevinj.k.8120
    @kevinj.k.8120 2 года назад

    Awesome as these are the two I selected for that exact reason. Now concerned that the BIO may not work for the sites I want to use it for. Hopefully, support is added in the future if that's the case.

  • @TheConservativeTalkingPoint
    @TheConservativeTalkingPoint 7 месяцев назад

    I have a question. I want to go passwordless on outlook 365, personal account. How can I do this without the MS authenticator app? I just want to use my key ONLY to login, otherwise what's the point of the security? How do you accomplish this?

  • @rittalisa4916
    @rittalisa4916 2 года назад +1

    For me I see a potential HUGE down side : it'is/can more fragile an more prone to defect.
    That's a deal breaker for me, beside that I have a bad experience with biometric sensor so I don't like it.
    On the security side their is multiple way to use a MFA token, on yubikey you can use opengpg for everything and configure it to burn the subkeys if the wrong pin is enter 3 times. So loosing it isn't really an issues and I guess it's more secure them a biometric solution maybe.

  • @adsglobal3351
    @adsglobal3351 2 года назад +3

    If you lose a device, can you deactivate it remotely? Thinking from a business standpoint if an employee looses one especially if it's the NFC.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +4

      Yes, with every account I have, as long as I have an admin or backup key, I can go in and deactivate a lost or stolen key.

  • @Gitt945
    @Gitt945 2 года назад +2

    hi josh. i have a couple questions
    1) if i leave the yubikey in my pc 24/7 , and i have lasspass, if my pc is stolen, won't they have access to all my logins? and if so what do you reccomend to prevent that?
    2) another question, not related to yubikey per say, but i want to do estate planning for my kids when i pass on and was thinking if there is a device that i could put my kids finterprints like the yubikey bio so only they could access and on this device would be my will and bank info, btc wallet and info they need, where i can put all my notes/instructions to them on how to use and what to do where i know this can't get into the wrong hands. or it could be online method as well, but this is what i'm trying to accomplish that if i become 'inactive' i want them to access and only them this info, would love to hear your suggestions or maybe you made vid on this topic already

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +4

      Hey Andrew, interesting questions. Here are my answers:
      1) I don’t leave my 2FA key constantly plugged into my computer and I generally don’t recommend that for the very reason you stated: theft.
      2) I generally don’t like to rely on technology for estate planning. I use it as a backup, to be sure, but I have a primary estate plan that is kept with my lawyer or printed and physically put in a safe. I just don’t trust that the technology won’t break or no longer be compatible 10 years down the road. I mean, imagine if you had kept all your estate stuff on a CD 10 years ago! I do t even know if I have a CD reader in my house anymore! 😜

    • @MrFloRolf
      @MrFloRolf 2 года назад +1

      If your PC with the key and LastPass gets stolen you immediately change your masterpassword and from there refresh all 2FA Codes (the OTPs) and disable the missing key from FIDO enabled accounts.

  • @Camlost03
    @Camlost03 2 года назад +3

    Hi Josh, a query I currently have the Yubikey Security Key (the blue one), with which I have registered all my services with authentication by Key. I want to buy a second device now to have a backup in case I lose one ...
    I want to buy the Yubikey 5 NFC (The black one), and use it as the main one because I have the TOTP there and I currently use the authenticator microsoft, I would like to pass it all to the authenticator yubikey.
    Now, if I have as a second option the blue one for backup, the TOTP will not be able to recover it in case of losing the black one, correct?
    What do you recommend me?
    Thank you very much for your videos.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      If I understand your question, Juan, you want to have the 5 NFC as your primary key as well as Authenticator. The blue key is the backup (which doesn’t have an Authenticator). In that case, you can always keep Microsoft Authenticator as a backup to the 5 NFC. Does that sound right to you?

    • @Camlost03
      @Camlost03 2 года назад +2

      @@AllThingsSecured Yes, I was thinking about it, and so I don't have all my eggs in the same basket. haha thanks

    • @michaelrobsimonbyrne4068
      @michaelrobsimonbyrne4068 2 года назад +2

      i have 5nfc black and 5nfc key for android

    • @michaelrobsimonbyrne4068
      @michaelrobsimonbyrne4068 2 года назад

      i use them all the time for my facebook and twitter and gmail

  • @SusiBeach
    @SusiBeach 2 года назад

    Hi! Can you please answer me two questions?
    Can you please tell me if 3 people can use the same Yubikey with their own accounts? Or each person need to have one different Yubikey?
    And the other question is: We want to use the key mainly for Outlook, PC, Facebook... both on mobile phone and computer. You recommend the 5NFC instead of the Bio, right?
    Thanks so much in advance

    • @SuperNova-py1ec
      @SuperNova-py1ec Год назад

      I think he mentioned the BIO does not support connectivity to mobiles so you would need the 5NFC. Appreciate you question was from 6 months ago so is probably redundant now 😀

  • @dempseyone747
    @dempseyone747 Год назад

    I understand that I will need to get at least two security keys (to keep one as backup) but can I mix the two? Ie one NFC and one Bio? Or do both need to be the same?

  • @librandancer
    @librandancer 2 года назад

    Thank you.

  • @OneEyedLion
    @OneEyedLion 2 года назад

    I've got the Yubikey 5NFC. Is there an adapter for use with a Samsung phone? Or, do I have to replace the keys?

    • @alexandregiguere7077
      @alexandregiguere7077 2 года назад

      Just use the NFC with your Samsung phone instead of the USB port

  • @P3Alex
    @P3Alex Год назад

    Why can't they make a bio with NFC? But the NFC activates only when the finger print has been activated?

  • @Matschbacke25
    @Matschbacke25 2 года назад

    Love my new Yubico 5 NFC

  • @frenchonion4595
    @frenchonion4595 2 года назад +1

    What about the blue regular series ? Would be for coinbase. My phone does not support NFC so i was looking at the cheaper blue series. It is just as secure ? I think it would be. It supports what coinbase want's

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Yes, the blue "Security Key" series is just as secure, but it lacks the ability to create one-time passcodes (OTP) to replace an authenticator app for those online accounts that don't accept 2FA keys. If all you need is something for Coinbase, though, you should be good with the Security Key.

  • @herbsabeast1
    @herbsabeast1 5 месяцев назад

    Man why is it so hard to find video's on yubikeys? I just want to know if I'm getting the actual yubitkey. I bought my yubikey from Amazon for $35 vs if you buy it from pretty much anywhere else it's double what I paid.

  • @danielg2946
    @danielg2946 Год назад

    Yubikey has some apps that are not supported and at present after multiple attempts Yubikey manager will not run on my win 10 laptop.
    Leaving me with default options and zero backups of PUK or PIN.

  • @tonnrak
    @tonnrak 2 года назад +1

    For your back up Yubikey, you registered it as another key or you registered it as a spare key (same key information as the original one)?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      The keys are unique, so there is no such distinction between “another key” and a “spare key”.

    • @tonnrak
      @tonnrak 2 года назад

      @@AllThingsSecured Ok, thanks.

  • @milastran663
    @milastran663 2 года назад +1

    hi, thank you very much...

  • @vikasvg
    @vikasvg 2 года назад

    Thanks

  • @stewartcathey622
    @stewartcathey622 2 года назад

    Which Yubikey is best for the current family of Apple devices ( IPad Pro w/USB-c, IPhone 12Max)

  • @bitcoinwallet-tj5ue
    @bitcoinwallet-tj5ue 2 года назад

    Will the NFC version still be in use for a long time?
    Heard that when the versions fall out of use one has to buy a new one(version)....

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      Yes, the NFC version will work for as long as you have the key. While improvements are being made with new keys, the underlying security encryption for these keys stays the same, so it's hard to have them "fall out of use".

    • @bitcoinwallet-tj5ue
      @bitcoinwallet-tj5ue 2 года назад

      @@AllThingsSecured Thanks for taking the time to answer.

  • @KIFIDOR
    @KIFIDOR Год назад

    I've been trying to get the answer, but I don't seem to find it anywhere. If your PC/Device gets hacked or if it's infected, is that aa problem for the 2fa? Will it get infected too?

    • @AllThingsSecured
      @AllThingsSecured  Год назад +1

      No, a 2FA device cannot be infected.

    • @KIFIDOR
      @KIFIDOR Год назад

      @@AllThingsSecured Thanks for the answer sir

  • @vicm1819
    @vicm1819 2 года назад +1

    regarding setting up the backup key: how many backups can you have? For example, could I have a backup I keep at home, and a third key I keep off site?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +3

      It seems to depend on the service. Google, for example, has allowed me to have 5 different keys associated with my online account. There may be a limit, but I’m not sure what it is.

    • @peterkwolek2265
      @peterkwolek2265 2 года назад +3

      depending on the service you can have many keys. (Lastpass for example lets you add 5 but you have to pay for premium AND NOTE Bio doesn't work with Lastpass but 5 series does.

    • @vicm1819
      @vicm1819 2 года назад +1

      Thanks guys! Appreciate the info!

  • @ranamohsen9114
    @ranamohsen9114 2 года назад

    What can i do if i lost my security key?

  • @iOSINT
    @iOSINT 2 года назад

    I still do not understand whether it is possible to unlock Windows 11 using YubiKey Bio, the site says in the compatibility list that it is not, but at the same time on their RUclips channel they add the key in the Windows Control Panel.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      I think it is, but I don’t use Windows, so I’m not for sure.

  • @vr6200
    @vr6200 2 года назад

    What is the stronger way authentification between totp like Google auth and yubikey ?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      There is no "stronger" since it's the same algorithm and the same authentication. However, one is kept on your phone via a company like Google and another is kept on an offline key via a company like Yubico. So...it's really up to you to decide which you trust more.

  • @arniinberlin3837
    @arniinberlin3837 2 года назад +2

    Very helpful video - thank you. Do you know how this adds security to my smartphone on my google account? On the google account I cannot log out but only remove the account from the smartphone. So - if I'm always logged on, therefore 2FA authenticated - is not that even worse? Cause if the phone is stolen its stolen with the 2FA on.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      I'm not sure I understand completely. Your phone should be locked and you can always log the phone out of your Google account remotely if it is stolen/lost.

    • @arniinberlin3837
      @arniinberlin3837 2 года назад +1

      @@AllThingsSecured Hi, sorry if I cannot express my concern in a more clear way. Yes the phone is locked but I'm confident the usual street thiefs can find a way to crack that. Regarding log out the Smartphone from the Google Account remotely via a PC log-on. I tried that. And - suprise...I'm still logged on on the smartphone. Google is like HIV. You can't get rid of it.

  • @russell7489
    @russell7489 Год назад

    Well Done

  • @jvianneyjr
    @jvianneyjr 10 месяцев назад

    What's the Best yubikey 5 NFC or yubikey NFC?

  • @jeffpearson1863
    @jeffpearson1863 18 дней назад

    I heard they dont work on banking sites. Is that true?

  • @talamakara
    @talamakara Год назад

    Please explain to me how a "Security Expert" recommends NFC, a protocol with 0 security?

  • @chinmayakulkarni2560
    @chinmayakulkarni2560 Год назад

    Thanks for this great video. I'm trying to understand why some services work with the 5 series but not the Bio. Is it just because they use TOTPs instead of FIDO2/U2F? My understanding of FIDO is that the biometric stuff is entirely local, and once that layer of authn is completed, the flow is the same as it would be with a Yubikey 5.

    • @AllThingsSecured
      @AllThingsSecured  Год назад

      Correct. It’s not about the biometrics, it’s about which security protocols the key supports.

    • @chinmayakulkarni2560
      @chinmayakulkarni2560 Год назад

      @@AllThingsSecured Thank you, appreciate you taking the time to respond.

  • @andd124
    @andd124 Год назад

    i had the two step verification and yet a got hacked without my phone notifying me . is the yubikey more secure than the sms verification ?

    • @AllThingsSecured
      @AllThingsSecured  Год назад +1

      Absolutely yes. Considerably more secure than SMS.

  • @neilquinn
    @neilquinn Год назад

    Curious if you find yourself still using the bio at all now in 2022? I have a pair of 5C NFC but can get 2 keys for free. Debating which to get. Might just get nanos for laptop use.

  • @antonkukoba3378
    @antonkukoba3378 2 года назад

    If fingerprint is stored on the device then why there's a generic windows prompt for scanning the fingerprint? Seems like it's Windows which does fingerprint check all the time.

  • @oracle_0183
    @oracle_0183 2 года назад +1

    Hi Josh, I have a Yubikey so I am all for the 2FA method of security. However; how is this more secure than a simple 2FA sms message with a code to login? Thanks very much, JR (United Kingdom)

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Check out this video on SIM swapping: ruclips.net/video/64p_WkYc9d0/видео.html

    • @oracle_0183
      @oracle_0183 Год назад

      @@AllThingsSecured , Thanks Josh, that's amazing!

  • @SebastianSack
    @SebastianSack 2 года назад

    I have a short question: If I can circumvent the finger print with a pin, then this would be the same with the normal Yubikey 5 (because it has a pin too). Am I thinking wrong here?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Not entirely. The Yubikey 5 series simply requires you to plug in the key for it to work. There is no PIN. The difference is that the Bio requires some additional form of verification, be that your fingerprint or your PIN.

    • @SebastianSack
      @SebastianSack 2 года назад

      @@AllThingsSecured Of course there is a pin at the Yubikey 5 NFC ;)

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      What PIN are you referring to? I’ve never used a PIN with the 5 NFC…you just plug it in.

    • @SebastianSack
      @SebastianSack 2 года назад

      @@AllThingsSecured Ok, I think, I got you wrong. You don't need a pin to generate the OTP. But there is a pin, when you use the stick itself for authentication (e.g. at Google or Microsoft)

  • @stefandjordjevic9
    @stefandjordjevic9 Год назад +1

    What about PIN cracker tools?

  • @MrFloRolf
    @MrFloRolf 2 года назад +2

    Would've loved some more focus on the different protocols here. As far as I know the bio doesn't support OTP for example.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      It doesn’t. I thought I made that clear, so my apologies.

    • @LimitedWard
      @LimitedWard 2 года назад +2

      He indirectly expresses that at 6:19, but he doesn't explicitly state why those services are incompatible.

    • @mrtechie6810
      @mrtechie6810 2 года назад

      @@AllThingsSecured you should make this clear. Add it to the description.

  • @perez-gaara
    @perez-gaara 2 года назад

    Would sub c work if I get adapter to work on USB/computer

  • @tomfaulkner5841
    @tomfaulkner5841 Год назад

    Does the key store your password, too? Do you have too have password manager too?

    • @AllThingsSecured
      @AllThingsSecured  Год назад

      No, and that's why it's a "second" form of authentication. You have to know your password and then you confirm with the key.

  • @davorinrusevljan6440
    @davorinrusevljan6440 2 года назад

    What technology bio supports in contrast to nfc?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      You can check here on the Yubikey website: www.yubico.com/works-with-yubikey/catalog/?sort=popular

  • @linuxnovice69
    @linuxnovice69 2 года назад

    I have a question, you have yubikey bio with type c then can you use that key on mobile devices?
    I have a laptop with type c port, android device with type c port that's why i asked.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      Yes, it will work, but Yubico has confirmed to me that it wasn't designed for mobile devices, so use with caution.

    • @linuxnovice69
      @linuxnovice69 2 года назад

      Thank you. Can you please elaborate why you said "so use with caution"?
      Can also make a video about supporting website/services for yubikey bio vs yubikey 5 nfc ?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      It simply means that it wasn’t designed for mobile, so it might not be equipped to handle certain loopholes only on mobile. As for supporting websites/apps, I think the Yubico website does a good enough job with that.

    • @dubmob151
      @dubmob151 Год назад

      @@AllThingsSecured is there any interaction with firmware that is updated periodically as bug fixes or improvements, or is the device fixed and unchanging once it's purchased?
      Is the caution required because it can change after the original installation and suddenly be rendered inoperative if they change the requirements, without the guaranteed support?

  • @RogerioLecariaoLeite
    @RogerioLecariaoLeite Год назад

    Hello!
    The authentication process must be an anonymous cross-system process. For the guarantee of security must not collect any identity from individuals needs your security. Attackers can find ways to identify the target user. So it's very clear to me that a fingerprint option is not a viable option.

  • @simongrushka983
    @simongrushka983 2 года назад +1

    thanks for the video, can those keys be used to store pgp keys (for securing emails) as well as to login in linux systems (instead of passwords)?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +2

      For PGP keys, it depends on the series of Yubikey (see more here: support.yubico.com/hc/en-us/articles/360013790259-Using-Your-YubiKey-with-OpenPGP). For Linux, yes you can.

  • @TheCrusaderRabbits
    @TheCrusaderRabbits 6 месяцев назад

    So the Bio won't work with Android?

  • @dolbrechts1980
    @dolbrechts1980 2 года назад

    Passless use is for the moment only Microsoft by my knowledge or are there others?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      What do you mean?

    • @dolbrechts1980
      @dolbrechts1980 2 года назад

      @@AllThingsSecured i Mean that you have An option to not use password so you just put in the key and you even don't to have to Remember your mailadres and password you can just select the one you want to use and you login just by pushing a Button on the yubikey! Nu Google for example you still have to type you're mailadress and pass before you can use the Key

  • @johnh4957
    @johnh4957 2 года назад +2

    does this negate needing a password manager?

    • @CyberMedics
      @CyberMedics 2 года назад +2

      You should still use strong passwords. A password manager will help with this.

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +2

      I agree with CyberMedics. This doesn't replace your first line of defense (i.e. a good password), it simply add another layer of protection for those accounts that are more sensitive than others.

  • @mrtechie6810
    @mrtechie6810 Год назад

    I want one with a PIN.
    How about OnlyKey?

  • @TheDennisgrass
    @TheDennisgrass 2 года назад

    What if someone has the fingerprint, from the cellophane tape a person used while wrapping a present?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      Wow. Then you’re REALLY screwed.

    • @TheDennisgrass
      @TheDennisgrass 2 года назад

      @@AllThingsSecured If that is the case, someone could blow up a photo of a person's finger to obtain a fingerprint which would work?
      Sounds like a product to keep honest people honest. Something like front door house locks installed 40 years ago.

  • @okoeroo
    @okoeroo 2 года назад +1

    I use my yubikey with a USB C adapter on my phone, works great

    • @AllThingsSecured
      @AllThingsSecured  2 года назад +1

      That's good to hear! I've spoken with Yubico and they tell me that it should work, but that's not what it was designed for.

  • @soonerborn9073
    @soonerborn9073 2 года назад

    Yubikey even says the bio version is for shared workstation scenarios, not for the normal individual. Just get the 5 NFC.

  • @smokyviking2101
    @smokyviking2101 Год назад

    Like you can set up a security key for your iCloud account can you do the same with Samsung for your Samsung account I personally haven't seen an option in settings all I can see is backup codes authenticator app SMS text which I hate and that's pretty much it there's no option for security key I hope Samsung address this I hope Samsung add an option for for security keys like Google and apple and so on

  • @ragon747
    @ragon747 2 года назад

    Yubikey "blue" also have NFC, right? The blue one just have less protocols I guess

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      Yes, the blue Security Key has NFC capabilities.

  • @newbeginnings9457
    @newbeginnings9457 2 года назад

    If I buy key for iPhone? What happens if I don’t have key for my computer? Will I be able to access my email?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      The same key you use for your phone, you can also use for your computer.

  • @aknorth1053
    @aknorth1053 Год назад

    a good use case would be if you wanted leaved one at a semi secure location like your work computer

  • @martinlutherkingjr.5582
    @martinlutherkingjr.5582 2 года назад

    Can the pin be brute forced? How many characters?

    • @AllThingsSecured
      @AllThingsSecured  2 года назад

      I guess it could. But they would have to have physically stolen the key.

  • @sporthaas
    @sporthaas 9 месяцев назад

    Why would this key be more secure than my authenticator app on my phone?