Yubico Security Keys with a Crypto Flaw

Wow, is this an embarrassing bug: Yubico is recalling a line of security keys used by the U.S. government due to a firmware flaw. The company issued a security advisory today that warned of an issue in YubiKey FIPS Series devices with firmware versions 4.4.2 and 4.4.4 that reduced the randomness of the cryptographic keys it generates. The security keys… Continue reading Yubico Security Keys with a Crypto Flaw

Quantum Tokens for Digital Signatures

This paper wins "best abstract" award: "Quantum Tokens for Digital Signatures," by Shalev Ben David and Or Sattath: Abstract: The fisherman caught a quantum fish. "Fisherman, please let me go," begged the fish, "and I will grant you three wishes." The fisherman agreed. The fish gave the fisherman a quantum computer, three quantum signing tokens and his classical public key…. Continue reading Quantum Tokens for Digital Signatures