LOGO

Yubico Fingerprint Key: Passwordless Login Security

October 5, 2021
Yubico Fingerprint Key: Passwordless Login Security

Yubico Introduces the YubiKey Bio with Biometric Authentication

Yubico, a leading manufacturer of hardware security keys, has announced the release of the YubiKey Bio. This new key represents the company’s first offering to incorporate biometric authentication, supporting both passwordless logins and multifactor authentication (2FA).

The Shift Towards Passwordless Security

The introduction of the YubiKey Bio coincides with a broader industry trend. Major technology companies are actively moving away from traditional password-based login systems, which are frequently targeted by cyberattacks. Recently, Microsoft made a passwordless sign-in option available to all consumer accounts. Furthermore, Google has announced future plans to phase out passwords altogether.

YubiKey Bio: A Natural Progression

First previewed nearly two years ago at Microsoft Ignite in November 2019, the YubiKey Bio integrates a built-in fingerprint reader. Yubico positions this as a logical advancement for the company. Many modern laptops still lack integrated biometric security features, making a dedicated key a valuable solution.

Secure Biometric Data Storage

Once a fingerprint is registered on the device, the biometric data is securely stored within a dedicated secure element. The biometric subsystem operates independently from the key’s primary security functions. Encryption safeguards all communication between the secure element and the rest of the key, mitigating the risk of replay attacks.

Yubico's Commitment to Security

“We are proud to elevate the standard for biometric security keys with the YubiKey Bio Series,” stated Stina Ehrensvärd, CEO and co-founder of Yubico. “This enables both our enterprise clients and individual users to benefit from simple, yet robust, passwordless authentication.”

yubico’s new hardware key features a fingerprint reader for passwordless loginsAddressing Potential Vulnerabilities

While acknowledging that no security system is entirely impenetrable, Yubico emphasizes the physical security aspect. A successful attack involving a fake fingerprint would necessitate physical access to the user’s device. This significantly reduces the risk for typical YubiKey users. Users can also utilize their PINs as a fallback authentication method if biometric scanning is affected by factors like skin moisture or temperature.

Compatibility and Standards Support

The YubiKey Bio, similar to other Yubico hardware security keys like the YubiKey 5C NFC, is designed for ease of use. It’s a plug-and-play device requiring no batteries, drivers, or additional software. It is compatible with macOS, Windows, and Linux operating systems.

YubiKeys support widely adopted open security and authentication standards, including FIDO U2F, FIDO2, and WebAuthn protocols. This ensures interoperability with Macs, iPhones, Windows PCs, Android devices, and applications that natively support FIDO protocols.

Availability and Pricing

The YubiKey Bio is currently available in both USB-A ($80) and USB-C ($85) versions.

#Yubico#hardware key#fingerprint reader#passwordless login#security key#authentication