New infosec products of the week​: September 28, 2018

Chronicle announces VirusTotal Enterprise with greater search and analysis capabilities Chronicle, the cybersecurity subsidiary of Google’s parent company Alphabet, has announced VirusTotal Enterprise, which is aimed at helping enterprises protect thei… Continue reading New infosec products of the week​: September 28, 2018

Yubico launches YubiKey 5 Series, the multi-protocol security keys supporting FIDO2

Yubico announced the launch of the YubiKey 5 Series, the multi-protocol security keys supporting FIDO2/WebAuthn. With this new addition, the YubiKey 5 Series has the capability to replace password-based authentication with hardware-based authentication… Continue reading Yubico launches YubiKey 5 Series, the multi-protocol security keys supporting FIDO2

Yubico’s latest authentication keys get the jump on a ‘passwordless’ future

Yubico, the Swedish-American company that helped popularize key-shaped physical authentication tokens, has released a new line of products geared toward passwordless logins that give users secure access to software and online services without typing anything. The company’s fifth generation of YubiKeys work with the new FIDO2 protocol in addition to other authentication methods. The result is that they “can be used alone for strong single-factor authentication, requiring no username or password to login — just tap or touch to authenticate,” Yubico said Monday. Use of FIDO2 is supported by major browsers such as Google Chrome, Mozilla Firefox and Microsoft Edge. YubiKey integration is also available with popular platforms like Google, Facebook and Twitter. FIDO was developed by an alliance of technology companies to allow users to simply plug in or tap an authenticator key instead of using a static password. Companies are now slowly adopting the standard into their products. The combination of methods […]

The post Yubico’s latest authentication keys get the jump on a ‘passwordless’ future appeared first on Cyberscoop.

Continue reading Yubico’s latest authentication keys get the jump on a ‘passwordless’ future

Yubico’s new security keys now support FIDO2

Yubico, the company behind the popular Yubikey security keys, today announced the launch of its 5 Series keys. The company argues that these new keys, which start at $45, are the first multi-protocol securities keys that supports the FIDO2 standard. With this, Yubico argues, the company will be able to replace password-based authentication, which is […] Continue reading Yubico’s new security keys now support FIDO2

Reddit Breach Highlights Limits of SMS-Based Authentication

Reddit.com today disclosed that a data breach exposed some internal data, as well as email addresses and passwords for some Reddit users. As Web site breaches go, this one doesn’t seem too severe. What’s interesting about the incident is that it showca… Continue reading Reddit Breach Highlights Limits of SMS-Based Authentication

Google takes on Yubico and builds its own hardware security keys

Google today announced it is launching its own hardware security keys for two-factor authentication. These so-called Titan Security Keys will go up against similar keys from companies like Yubico, which Google has long championed as the de facto standard for hardware-based two-factor authentication for Gmail and other services. The FIDO-compatible Titan keys will come in […] Continue reading Google takes on Yubico and builds its own hardware security keys

Security keys have been good to Google, so now it’s promoting one of its own

Google says its workforce has been phish-proof for more than a year. The impressive security stat is due to small USB security keys issued to all 85,000 of the company’s employees. Companies that produce these small pieces of hardware, like Yubico, have seen tremendous growth over the last two years thanks to rapidly accelerating adoption — but they will now have fresh competition. Google will soon start widely selling its own Titan Security Key, which includes firmware developed by the omnipresent tech giant itself. The product is available now to Google Cloud customers and will eventually be available to general customers, the company announced Wednesday at its Google Cloud Next conference in San Francisco. Like similar keys from other companies, it will provide a second authentication factor for software use, network access, account management and other services. When the hardware is linked to an account, a password isn’t enough — the user must plug in the […]

The post Security keys have been good to Google, so now it’s promoting one of its own appeared first on Cyberscoop.

Continue reading Security keys have been good to Google, so now it’s promoting one of its own

Golden Tickets, 911 Callers, and Hacking Therapy – Paul’s Security Weekly #565

In the Security News this week, shutting down the Internet to prevent cheating, Yubico claims a bug bounty and upsets researchers, patching MRI scanners, getting your money back after being scammed, and a couple is caught selling golden tickets to heav… Continue reading Golden Tickets, 911 Callers, and Hacking Therapy – Paul’s Security Weekly #565