• expired

Yubico Yubikey - US$20 off: Any Two Yubikey 5 Series Keys

120

BEST way to protect all your online accounts and make it IMPOSSIBLE for hackers to gain entry to your Google, Gmail, Dropbox, Hotmail, Crypto exchange accounts (Binance, BTCMarkets), etc. They need to physically hold your YubiKey to be able to authenticate and login.

See all apps/sites supporting Yubi: https://www.yubico.com/works-with-yubikey/catalog/

The YubiKey is a hardware authentication device manufactured by Yubico that supports one-time passwords, public-key cryptography and authentication, and the Universal 2nd Factor (U2F) and FIDO2 protocols developed by the FIDO Alliance. It allows users to securely log into their accounts by emitting one-time passwords or using a FIDO-based public/private key pair generated by the device. YubiKey also allows for storing static passwords for use at sites that do not support one-time passwords. Facebook uses YubiKey for employee credentials, and Google supports it for both employees and users. Some password managers support YubiKey.

$5 shipping to Australia. You can also buy YubiSkins for $5 ea, first one 50% off during BF deal.
Works out about $1 cheaper per device compared to the earlier Shopping Express deal: https://www.ozbargain.com.au/node/549741

Related Stores

Yubico
Yubico

closed Comments

  • I wonder if I could get an iPad, use an iSH and set up yubikey authentication on all my servers that I ssh into.

    • Would need to test it, but the RSA keystore on the Yubikey doesn't work with iOS or iPadOS based on the documentation I have read. Same goes to PGP based keys stored in a Yubikey.

      Only U2F based FIDO and FIDO2 auth and OTP is supported by Apple.

  • These keys have a limited amount of storage/accounts you can keep on them. How likely is it the key fills up?

    • I'm no expert but I don't think that's the case at all. My understanding is that nothing is actually stored on the Yubikey. Rather it stores a "Secret Key" that you "enroll" with various supported services.

    • +1

      They don't work like that, each key has its own encryption keys and responds to challenges sent by the site you're using.

  • +6

    Nothing is impossible.

    • +2

      Yup, especially if other 2FA methods are left enabled or cannot be disabled e.g. SMS, Email.

  • There are so many different models and around the same price it’s confusing

  • Simply, how is this better than OTP App on smartphone?

    • Convenience. It's way faster to auth with one of these. They have RFID so work with phones that have that too.

    • It's not going to be stolen, have its' screen smashed, run out of battery, or forgotten to be transferred when upgraded.

  • Here's a comprehensive list of platforms that support 2FA (incl. hardware tokens, e.g. Yubikey). You can see there's lots of gaps, so a bit of a stretch to say you can protect all your online accounts.

    I've got an older 5 series key without NFC and it's cool if the platform is supported, but many aren't.

    • That website doesn't differentiate between types of 2FA, such as SMS, private company app, Google Auth (standard TOTP), or hardware keys.

      • +1

        Not sure where you're looking, but the link provided lists all those different mechanisms, including the type of hardware key. E.g. for Dropbox, SMS, hardware (U2F) key and software key, including additional restrictions noted about hardware 2FA.

        https://twofactorauth.org/#backup

        • Looks like they've added that information, you're right. For the longest time they didn't.

    • Well you can kinda "protect" the ones that don't support it by using a password tool like lastpass to generate max allowed size random passwords for the platform that doesn't support it and use your yubikey to protect access to your lastpass…not as good as individual hardware 2FA but still better than nothing.

  • +3

    Stacks with educational offer. Need a valid student email, contact Yubico if you have any issues signing up.

    https://www.yubico.com/solutions/industries/education/

    • Thanks that got me over the line! Let's hope it doesn't take too long to arrive.

Login or Join to leave a comment