Hacker News new | past | comments | ask | show | jobs | submit login

Sounds like an interesting idea but isn't it a bit limited? I can only use it on a computer, not on mobile devices.



Yubikey Neo should provide FIDO U2F over NFC.


So the mobile version of this would be /less/ secure than standard 2FA?


Why? Even if you can eavesdrop on the NFC communication, how does intercepting the challenge/response help you?


I'm just asking, because I have no idea how this works. I figured an assailant could more easily make use of an NFC signal than they could see the code on the front of the device in the short time it takes you to memorize or copy/paste the code.


it uses an OTP so even if they intercepted it, it wouldn't be useful




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: