this post was submitted on 01 Aug 2026
3 points (80.0% liked)

Cybersecurity

10371 readers
62 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 3 years ago
MODERATORS
 

Yubikey and NitroKey offer NFC and non-NFC versions of their flagship hardware security tokens (HSTs).

NFC is convenient, but can under some circumstances send e.g. challenge-response exchanges in clear text.

Smartcards using RFID, a similar though not identical protocol, can be queried from ~100cm away.

  • Are there other ways are NFC HSTs are known to be more risky than their non-NFC counterparts?
  • Should users store NFC HSTs in RFID-blocking pouches, like those used for wireless car keys or contactless bank cards?
you are viewing a single comment's thread
view the rest of the comments
[–] y0kai@anarchist.nexus 1 points 22 hours ago

not an expert on this but i would imagine a Faraday case for it, perhaps with a little flap for ease of access would work?

I would also hope a security company making hardware keys would be aware of and avoid the sending in clear text, as it would be a major vulnerability. Then again, ive never trusted a company to do anything beyond what is absolutely necessary to stay afloat.