Our Blogs
Works with YubiKey Spotlight: ‘Secure Your World’ with YubiKeys this Cybersecurity Awareness Month
October is Cybersecurity Awareness Month – an important time of the year dedicated for the public and private sectors to work together to strengthen cybersecurity practices globally. The Cybersecurity and Infrastructure Security Agency (CISA) continues the theme of...
An event(ful) 2024: Get to know Yubico at Oktane, Authenticate and more
As we enter into the last few months of 2024, Yubico has a lot in store with a continued focus on innovation and garnering feedback from our valued community around the world. After an exciting year for the company filled with numerous announcements spanning new and...
2024 Global State of Authentication survey: Q&A with Yubico VP Derek Hanson on a passkey future
In a world that’s more connected than ever before, cyber attacks are more rampant than ever with bad actors continuing to take advantage of human error. Despite ongoing advancements in security technologies and processes, it continues to be fairly simple to compromise...
The clock is ticking: How to prepare for upcoming NIS2 Directive deadline
The October 17, 2024 deadline for European Union (EU) Member States to implement the NIS2 Directive into their respective national legislations is fast approaching. We first highlighted NIS2 and the new requirements in a blog post back in March 2023, and now that the...
Securing America’s future: Implementing M-22-09 by the 2024 deadline
Zero Trust Architecture (ZTA) represents a paradigm shift in cybersecurity strategy, moving away from the traditional perimeter-based security model to one that assumes no implicit trust, even within the network. In compliance with Executive Order 14028 to improve the...
YubiHSM 2 (v2.4) expands to include simplified and secure backups and ‘Bring Your Own Key’ support
As the rate and complexity of credential theft and phishing attacks on enterprises continue to increase rapidly, so do the number of server-based attacks. YubiHSM 2, the leading nano-form factor hardware security module (HSM), offers organizations superior protection...
Q&A with Yubico’s CEO: Reflecting on first half of 2024 and what’s ahead
Yubico has had an impressive first half of the year, with plenty of exciting developments as the company continues to scale. To get the inside scoop, I caught up with Yubico’s CEO, Mattias Danielsson, to chat about the standout moments so far, the current landscape of...
Operational Technology (OT) security: Key risks and mitigation strategies to achieve phishing-resistance
Operational Technology (OT) is a critical component of several industries as it powers the systems that control the distribution of power, water and other utilities, drives the machinery that powers manufacturing, and controls everything from traffic lights to tanker...
Simplifying break glass account security with YubiKeys
Break glass accounts are crucial accounts that provide access to critical systems during a variety of emergencies. Microsoft’s recent announcement on the enforcement of multi-factor authentication (MFA) for Microsoft Entra ID sign-ins highlights the impact on break...
Shipping now: YubiKey Bio Series – FIDO Edition with new features and enhancements fast-tracks users to passwordless
**NOTE: This blog was originally published on August 1, 2024 and has been updated to reflect the shipping timeline of the keys on August 13, 2024 Following the release of 5.7 firmware on the YubiKey 5 Series and Security Key Series in May, we are excited to announce...
Microsoft strengthens phishing-resistant security for Entra ID with FIDO2 provisioning APIs Yubikey
Yubico has worked closely with Microsoft for over a decade to keep businesses around the world and the Microsoft solutions they use both secure and phishing-resistant. Recognizing the importance of multi-factor authentication (MFA), Microsoft recently mandated that MFA be used by all Azure users – a critical move to require stronger authentication for end users
The post Microsoft strengthens phishing-resistant security for Entra ID with FIDO2 provisioning APIs appeared first on Yubico.
Coming soon: YubiKey Bio Series – FIDO Edition with new features and enhancements fast-tracks users to passwordless Yubikey
Following the release of 5.7 firmware on the YubiKey 5 Series and Security Key Series in May, we are excited to announce that YubiKey Bio Series – FIDO Edition keys enhanced with the latest 5.7 firmware are targeted to ship in mid-August. Similar to existing keys with 5.7 updates, YubiKey Bio Series – FIDO Edition
The post Coming soon: YubiKey Bio Series – FIDO Edition with new features and enhancements fast-tracks users to passwordless appeared first on Yubico.
Yubico FIDO Pre-reg expands to Early Access with Okta Yubikey
Last October, we announced Yubico FIDO Pre-reg – an innovative new first-to-market service offering a turnkey passwordless onboarding experience for enterprises – available through our YubiKey as a Service subscription program. With this next milestone, Yubico continues on our mission to deliver market-leading, innovative solutions that cultivate phishing-resistant users who, in turn, create a phishing-resistant
The post Yubico FIDO Pre-reg expands to Early Access with Okta appeared first on Yubico.
Elections 2024: AI’s impact on cybersecurity Yubikey
2024 is proving to be an incredibly important election year, both in the US and around the globe. It’s reported that elections have occurred or will occur in 64 different countries this year alone, which creates ample opportunity for hackers to infiltrate the electoral system. This comes as the skills and tools bad actors use
The post Elections 2024: AI’s impact on cybersecurity appeared first on Yubico.
Works with YubiKey Spotlight: Fortifying Microsoft environments by fostering phishing-resistant users Yubikey
In today’s digitally interconnected world, Microsoft products serve as the backbone for countless industries and innovations. Through a cohesive ecosystem of enterprise-focused tools like Copilot, Microsoft 365, Azure, and Entra ID, Microsoft enables businesses to streamline operations and enhance productivity. These tools have fostered technological innovation, empowering organizations to stay ahead in a competitive landscape
The post Works with YubiKey Spotlight: Fortifying Microsoft environments by fostering phishing-resistant users appeared first on Yubico.
Adapting to new cybersecurity regulations and addressing evolving threats within financial services Yubikey
In late 2023, the U.S. subsidiary of the Industrial and Commercial Bank of China was hit with ransomware, creating a ripple effect across the U.S. Treasury market. In February 2024, Bank of America reported a breach impacting 57,000 account holders related to a compromise with a third-party software provider. And as recently as June, a
The post Adapting to new cybersecurity regulations and addressing evolving threats within financial services appeared first on Yubico.
Securing mobile web app browsing for the U.S. military: Q&A with Jason Christensen and Alex Antrim Yubikey
We’ve heard from customers and Yubico employees that have experienced first hand how difficult it can be for government employees to remotely and securely access essential web services like email, MyPay, and Defense Travel System. In the past, they would typically be required to login to a desktop, making access on the go essentially impossible.
The post Securing mobile web app browsing for the U.S. military: Q&A with Jason Christensen and Alex Antrim appeared first on Yubico.
New FIDO Alliance Design Guidelines: Key takeaways for passkeys and a phishing-resistant user future Yubikey
The FIDO Alliance is an open industry association launched in 2013 whose mission is to develop and promote authentication standards that help reduce the world’s over-reliance on passwords. Yubico has pioneered the development of FIDO authentication standards that the FIDO Alliance has adopted, working to make the internet safer for all. First published in 2022,
The post New FIDO Alliance Design Guidelines: Key takeaways for passkeys and a phishing-resistant user future appeared first on Yubico.
Cybersecurity Compliance: The Key to Safeguarding Your Business
Let’s look at the key aspects of cybersecurity and compliance that every organization needs to understand. But before that: what is cybersecurity compliance? Think about it as a process of protecting your data and assets in line with information security standards,...
Works with YubiKey Spotlight: Securing your password managers with the YubiKey Yubikey
In the ever-evolving digital landscape, safeguarding online identities has become more critical than ever. As we navigate a world filled with accounts, passwords and sensitive information, the need for robust security solutions that center around the user is paramount. Traditionally, the way to gain access to various online sites and services has only been through
The post Works with YubiKey Spotlight: Securing your password managers with the YubiKey appeared first on Yubico.
Red Hat Enterprise Linux 9.4 adds passkey support for centrally managed users, including YubiKeys Yubikey
As a market leader for open source software products, Red Hat is renowned for helping organizations address modern challenges to technology and cybersecurity trends through innovative solutions that meet evolving demands. Specifically, their perpetual dedication to robust security and authentication standards ensures users, enterprises and agencies can carefully monitor and regulate access to their environments
The post Red Hat Enterprise Linux 9.4 adds passkey support for centrally managed users, including YubiKeys appeared first on Yubico.
New NIST guidance on passkeys: Key takeaways for enterprises Yubikey
NIST recently released an update to SP800-63B to provide guidance on syncable authenticators. As FIDO passkeys continue becoming more adopted and available at a large scale, NIST guidance helps organizations properly position and plan so they can successfully implement synced passkeys both internally and externally. Within the guidance, it’s important to understand the nuance of
The post New NIST guidance on passkeys: Key takeaways for enterprises appeared first on Yubico.
Eliminating enterprise risk: One phishing-resistant user at a time Yubikey
Passwords are ingrained in enterprises with traditional identity lifecycle stages, which exposes them to increasingly sophisticated cyber attacks that rely on stolen login credentials for success like phishing. Phishing is one of the greatest cybersecurity risks that enterprises face – in fact, stolen passwords are one of the largest threat vectors compromising online security today
The post Eliminating enterprise risk: One phishing-resistant user at a time appeared first on Yubico.
How to Ensure Data Security and Sovereignty in Secure Business Messaging
Instant messaging apps used by businesses have been under a lot of scrutiny lately. Why? First, it turned out that regular messaging apps, such as WhatsApp, aren’t compliant with regulations and can’t be audited. Then, when organizations switched to communication...
Now available for purchase: YubiKey 5 Series and Security Key Series with new 5.7 firmware Yubikey
Earlier this month, we announced the launch of Yubico Authenticator 7 as well as the upcoming availability of YubiKey 5.7 firmware. Beginning today, we’re excited to share that YubiKey 5 Series, Security Key Series, and Security Key Series – Enterprise Edition keys purchased and shipped from Yubico will include the new firmware. Keys with the
The post Now available for purchase: YubiKey 5 Series and Security Key Series with new 5.7 firmware appeared first on Yubico.
Empowering enterprise security at scale with new product innovations: YubiKey 5.7 and Yubico Authenticator 7 Yubikey
As phishing attacks evolve and are on the rise, organizations are continuously seeking modern, strong authentication technologies like FIDO-based passwordless logins and smart card solutions to safeguard their digital assets, employees, customers and partners. By embracing passwordless authentication and implementing unmatched security measures, organizations can safeguard their sensitive data and ensure a resilient defense against
The post Empowering enterprise security at scale with new product innovations: YubiKey 5.7 and Yubico Authenticator 7 appeared first on Yubico.
Works with YubiKey Spotlight (World Password Day Edition): Empowering enterprises to a passwordless future through integrated solutions with key partners Yubikey
Today, May 2nd, is World Password Day. Each year, this serves as an annual reminder to take action and steps to ensure our digital lives are secure. Now, more than ever with data breaches relying on poor password management to gain access to sensitive data, this day has become a cornerstone in promoting cybersecurity awareness
The post Works with YubiKey Spotlight (World Password Day Edition): Empowering enterprises to a passwordless future through integrated solutions with key partners appeared first on Yubico.
From passwords to passkeys: Entering a new era in cybersecurity Yubikey
Phishing, a common tactic used by hackers to obtain access to sensitive information, is accredited as a contributing factor in over 80% of all security breaches. Phishing occurs when malicious actors impersonate a legitimate entity to deceive people into providing personal information – typically via email, social media, text messages, or fake websites. Once the
The post From passwords to passkeys: Entering a new era in cybersecurity appeared first on Yubico.
QR codes within enterprise security: Key considerations and best practices Yubikey
Every second, a phishing attack takes place. In fact, over 80% of cyber attacks are a result of stolen login credentials from attacks like phishing – mostly due to the relatively low cost and high success rate to execute these attacks. Unfortunately, this pattern will continue to grow as attackers become more sophisticated, utilizing tools
The post QR codes within enterprise security: Key considerations and best practices appeared first on Yubico.
Yubico joins CISA and the Joint Cyber Defense Collaborative’s High-Risk Communities Protection initiative to continue helping secure high-risk individuals and organizations
Written by: David Treece We’re honored to share that today we are joining the Cybersecurity & Infrastructure Security Agency (CISA) as they launch a new webpage to provide resources for high-risk individuals and organizations to receive the tools they need to...