yubikey firmware. The best value key for business, considering its compatibility with services. yubikey firmware

 
 The best value key for business, considering its compatibility with servicesyubikey firmware FIDO2 authenticators YubiKey 5 Series

All NFC interfaces are turned on in the YubiKey Manager settings. x. Keep your online accounts safe from hackers with the YubiKey. government. Python library and command line tool for configuring any YubiKey over all USB interfaces. The secure session protocol is based on Secure Channel Protocol 3 (SCP03). It will show you the model, firmware version, and serial number of your YubiKey. The series provides a range of authentication choices including strong two-factor, multi-factor and passwordless authentication, and seamless touch-to-sign. co/yubikey-firmwa re-update-5-4. To find compatible accounts and services, use the Works with YubiKey tool below. YubiHSM Auth is supported by YubiKey firmware version 5. To prevent attacks on the YubiKey which might compromise its security, the YubiKey does not permit its firmware to be accessed or altered. Select Add Security Keys . Place. Specifically, the fix was not good for newer Yubikey firmware (like 5. In order to protect your KeePass database using a YubiKey, follow these steps: Start a text editor (like Notepad). These OTP configurations are stored in “OTP Slots”, and the user differentiates which slot to use by how long they touch the gold contact; a short touch (1 2. Select Role-based or feature-based installation, and click Next. 6. These series of keys incorporate a three chip design. 0 and 1. Experience stronger security for online accounts by adding a layer of security beyond passwords. The quickest and most convenient way to determine your device’s firmware version is to use the YubiKey Manager tool (ykman), a lightweight software package installable on any OS. 10. YubiHSM Auth is supported by YubiKey firmware version 5. 4. 4. 27" in the macOS System Report). The company said that its customers would receive new YubiKey FIPS Series keys with firmware version 4. serial-btn-visible: The YubiKey will emit its serial number if the button is pressed during power-up. Note: Some software such as GPG can lock the CCID USB interface, preventing another software from accessing applications that use that mode. Last year we released Yubico Authenticator 5. The remedy is to switch the slots back again using YubiKey Manager or reconfigure the YubiKey for use as second. 1Password in combination with. YubiKeys are available worldwide on our web store and through authorized resellers. 4. Each device has a unique code built on to it, which is used to generate codes that help confirm your identity. Like the Nitrokey, the Librem key is based on open-source firmware. Yubico has started shipping the YubiKey 5 Series with firmware 5. 3+ needed. 3. Yubico announced they have already been working on actively replacing affected keys after discovering. Command APDU infoThe YubiKey 5, YubiKey 4, and YubiKey NEO all support the OpenPGP interface for smart cards. 0 to 5. Personal cybersecurity tool vendors have also begun. That’s why it can act as a WebAuthn/FIDO authenticator, a Smart Card, an OTP device, and much more, all in one device. Remember to. Change. The new implementation has been vetted by the security researchers who. The YubiKey 5 Series Comparison Chart. Yubico Login for Windows is only compatible with machines built on the x86 architecture. Meets the most stringent hardware security requirements with fingerprint templates stored in the secure element on the key. x firmware line. ”. Lr Data SW1 SW1; 0x04:. This situation can be improved upon by enforcing a second authentication factor - a Yubikey. What is PGP? OpenPGP is an open standard for signing and encrypting. You can set this up with Yubikey Manager app. Note: Some software such as GPG can lock the CCID USB interface, preventing another software from accessing applications that use that mode. The good news for Titan and YubiKey owners is that this process usually takes hours to execute, requires expensive gear, and custom software. Today, we are happy to share that the YubiKey 5 Series firmware has completed testing by our NIST accredited testing lab, and has been submitted to the Cryptographic Module Validation Program (CMVP) for FIPS 140-2 certification, Overall Level 2, Physical Security Level 3. Follow the prompts to. The YubiKey 4 & 5 has 15,260 bytes available for storing Certificate Chain Certificates (root and intermediate certificates). Excellent, But Not Future-Proof. More than a million users in 100 countries rely on YubiKey strong two-factor authentication for securing access to computers, mobile devices, networks and online services. These enhancements allow users to review FIDO2 discoverable credentials on their YubiKey and delete individual credentials without requiring a full. Form factor: 0x04: Specifies the form factor of the YubiKey (USB-A, USB-C, Nano, etc. "Most popular security keys, like the Yubikey, are closed sourced which limit their usefulness for hackers like myself. The cryptographic functionality of the YubiKey. Note: Some software such as GPG can lock the CCID USB interface, preventing another software from accessing applications that use that mode. The YubiKey Bio Series is available for purchase on yubico. Yubico offers free and open source software for. Learn more > Yubico announces general availability of next-generation Android and iOS SDKs. Desktop Yubico Authenticator 5. There is a clear. Integrating YubiKey with IAM solutions delivers the most secure level of authentication for all users. Since they are basically picking a PIN number, anything they enter will be accepted and set as the new FIDO2 PIN on the token. 2 are currently validated to support the ACK diagnostic workflow. RESOURCES Buy YubiKeys Blog Newsletter Yubico Forum Archive. Security Advisories issued by Yubico about Yubico's hardware and software solutions. Multi-protocol security key, eliminate account takeovers with strong two-factor, multi-factor and passwordless authentication, and seamless touch-to-sign. Note: This article lists the technical specifications of the FIDO U2F Security Key. To update to 16. Or. 2 or 4. The YubiKey 5 Series eliminates account takeovers by providing strong phishing defense using multi-protocol capabilities that can secure legacy and modern systems. During development of this release we started to feel limited by the existing technical architecture of the app as. 2, Apple provides native support for smart cards, enabling any PIV-compatible smart card to interact with an iPhone without any additional hardware readers or software. Applications using this SDK can now use the YubiKey's FIDO U2F. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Windows, macOS, and Linux operating systems. The first YubiKeys that implemented PIV only supported five of the slots. Follow the. ykman fido access change-pin [OPTIONS] ykman fido access unlock [OPTIONS] (Deprecated) ykman fido access verify-pin [OPTIONS] ykman fido credentials [OPTIONS] COMMAND [ARGS]…. 0 interface. Outdated Firmware With more recent hardware and operating systems, outdated YubiKey firmware can cause compatibility problems. There are many differences between the Yubico Authenticator and other authenticators. Introduction Yubico Login for Windows adds the Challenge-Response capability of the YubiKey as a second factor for authenticating to local Windows. Run: sudo add-apt-repository ppa:yubico/stable && sudo apt-get update. com --recv-keys 32CBA1A9. You will need SSH 8. 6 (released 2021-09-08) Improve handling of YubiKey device reboots. 3. ykman fido credentials delete [OPTIONS] QUERY. The "fix" actually affects other versions of Yubikey firmware, unfortunately. YubiKey Manager (ykman) The YubiKey Manager is a tool for configuring all aspects of 5 Series YubiKeys and for determining the model of YubiKey and the firmware running on the YubiKey. 4. The Yubico Authenticator adds a layer of security for your online accounts. Right, the YubiKey firmware destroys* the keys after 8 unsuccessful PIN attempts in a row. The YubiKey Technical Manual / covers the following Yubico product series: YubiKey 5 Series; YubiKey 5 FIPS Series; YubiKey 5 CSPN Series; YubiKey Bio Series; Security Key Series;. 2 does not support OpenPGP. For the Touch-Triggered OTP functions, the YubiKey can hold up to two different configurations. Add your credential to the YubiKey with touch or NFC-enabled tap. YubiKey5SeriesTechnicalManual 1. As a result, FIDO2 security keys like the YubiKey are now. Importance of having a spare; think of your YubiKey as you would any other key. As of today, we're starting to ship the YubiKey 5 Series with firmware 5. Use YubiKey Manager to check your YubiKey's firmware version. So it's essentially a biometric-protected private key. The YubiKey was created to make stronger authentication available and easy to use for all. To prevent attacks on the YubiKey which might compromise its security, the YubiKey. With the latest SDK libraries, tools, and the new 2. 0 interface as well as an Apple Lightning® interface. YubiKey 5C NFC. This means that whatever firmware the Yubikey shipped with when you made your order, is the firmware you will keep. not a genuine YubiKey. Each Security Key must be registered individually. ssh but only works together with the YubiKey. 8 (I upgraded while I was working this out. This new firmware release will enable easier integration with Credential Management System (CMS) solutions, secure remote. Open Server Manager and choose Add roles and features, and click Next. The next major release of the YubiKey Validation Server will become available by July 2020. Yubico Authenticator for Desktop (Windows, macOS and Linux) and Android. 3) NFC Reader: ACR1251 (ACR1251U-A1) Also, I installed the driver for this NFC reader and the Yubikey MiniDriver. The firmware on it is 5. with a yubikey their firmware cannot be updated so the only way to get a newer firmware is to get a new key, do you have a set schedule of when you upgrade keys or do you use a key til it physically fails or breaks? would you upgrade before a failure if a firmware update would give you features you like? would you rather upgrade before a failure so you avoid. 3 and up can utilize longer responses to queries from OpenPGP, allowing more data to be sent per interaction and reduce the overall time for operations, especially in environments where the USB communication latency is the largest bottleneck. Each YubiKey must be registered individually. The 5th generation YubiKey has arrived! Our new YubiKey 5 Series is comprised of four multi-protocol security keys, including two much anticipated new features: FIDO2 / WebAuthn and NFC (near field communication). 2, Apple provides native support for smart cards, enabling any PIV-compatible smart card to interact with an iPhone without any additional hardware readers or software. Applications FIDO2The YubiKey 5Ci has six distinct applications, which are all independent of each other and can be used simultaneously. New feature - no, you have to buy the key yourself if you want the new shiny stuff. YubiKey firmware update: YubiKey 5 Series with firmware 5. Users are being prompted to "Enter your PIN" during the setup/registration of the Yubikey. Warning: This will permanently delete any PGP keys you have on the YubiKey. YubiHSM Auth uses hardware to protect these long-lived credentials. 4. It enables RSA or ECC sign/encrypt operations using a private key stored on a smartcard (such as YubiKeys), through common interfaces like PKCS#11. 2. Read the updated PIN, PUK, and Management Key article for more information. Strong security frees organizations up to become more innovative. YubiKey 4 Series. The YubiKey also allowed for issuing multiple backups to each employee, including one YubiKey nano designed to sit inside the user’s laptop and one YubiKey designed for a keychain. 4. The YubiKey will wait for the user to press the key (within 15 seconds) before answering the challenge. Soon, the YubiKey 5 Series firmware will also be. YUBICO WebAuthn OTP U2F OATH PGP PIV YubiHSM2 Software Projects. 4. Requested by Giampaolo Bellini < [email protected] YubiKey 5 Nano FIPS has five distinct applications, which are all independent of each other and can be used simultaneously. The second paragraph means: when Yubico releases a YubiKey with an updated firmware version, they ensure the compatibility of the supporting software with the old devices (which are not upgradeable). 3. Get answers to commonly asked questions. Open Command Prompt (Windows) or. With the YubiKey software, you can enable or disable features on your YubiKey, like PIV, OATH or OpenPGP. The YubiKey 5 NFC FIPS has v5 printed near the 2D barcode (see image above), but the YubiKey FIPS (4 Series) does not. Operating system and web browser support for FIDO2 and U2F. ) Firmware version: 0x05: The Major. Each YubiKey must be registered individually. This is a non-proprietary FIPS 140-2 Security Policy for the Yubico, Inc. The changes to the new Tool includes new features, improved user interface and, of course, a number of bug fixes. Interface. 2, this marks a major upgrade from three years ago when the original YubiKey FIPS Series was launched with firmware. 7!Yubico is the leading provider of hardware authentication security keys — devices which protect logins to online accounts from phishing, man-in-the-middle, and other threats of account takeover. 3 or higher. Plug in a YubiKey 5Ci. Copyable passkeys can be synced across smartphones, tablets, and laptops/desktops and are primarily meant for. PIV is an application on the YubiKey that gives it smart card capabilities. 4. 3. The YubiKey 5C NFC that I used in this review is priced at $55, and it can be purchased from the Yubico website. Note: Some software such as GPG can lock the CCID USB interface, preventing another software from accessing applications that use that mode. To set up your YubiKey with your Android phone, please refer to service-specific instructions provided via the Works With YubiKey Catalog. The YubiKey Manager has both a. To set and manage the PIN, enroll fingerprints and manage stored credentials, Step 1: Launch the Yubico Authenticator, and select the YubiKey menu option. YubiHSM Auth uses hardware to protect these long-lived credentials. Technically no, although it depends on what you mean by "secure". Read the YubiKey 5 FIPS Series product brief >. 4. 0 to 4. Since the Yubikey 4 and NEO came out, I've only ever had one that had a firmware bug, which Yubikey replaced for free, which was in an area I wasn't even using anyway. When developing the YubiKey Bio Series, we challenged ourselves to reimagine the architecture of biometric authentication on a security key. Check out some of the simple ways your organization can now help prevent phishing with CBA. Select Add Security Keys . The former is required for YubiKeys without FIDO2/U2F. Currently, this firmware is only being shipped in the YubiKey 5Ci, however, we expect to roll out this version to all YubiKey 5 Series devices over the next month. 0 interface. Company. 4. Here is the list of new features in this release: Support for Yubikey OTP with public key shorter than 16 bytes. 3 FIPS 140-2 Security Level: 1 1. YubiKeyをタップすれは検証. 2YubiKey5FIPSSeries 1. com at a retail price of $80 for the USB-A form-factor and $85 for the USB-C form-factor. Enter the GPG command: gpg --expert --edit-key 1234ABC (where 1234ABC is the key ID of your key) Enter the passphrase for the key. Try to find out if YubiKey Support have now managed to come up with a firmware update for the key and/or driver that avoids this problem. When we launched the YubiKey 5Ci on August 20, we also introduced a new firmware to the YubiKey 5 Series: version. 4. If the YubiKey is not marked “FIPS” but you suspect it is a FIPS device you can also use YubiKey Manager to confirm the YubiKey model and firmware version. Beyond that, there are also some more. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Microsoft Windows, macOS 10. 2) supposed to support OpenPGP? I have been using a CSPN certified YubiKey 5 NFC running Firmware Version 5. This is the same as the backup and recovery offered by commercial HSMs or the key domains offered by SC-HSM 4K. Contact support. The table below lists all the slots and the firmware version it is first supported. 27" in the macOS System Report). The best security key of 2023 in full: (Image credit: Yubico) 1. Caution might be if a user hasn't been tracking which websites or services he uses Yubikey with and unknowingly registers Yubikey to more than 25 websites/services. 35mm Weight: 3. Obviously, we want users to be able to. The private key is protected by the hardware and software. Enabling or Disabling Interfaces. All of these can be enabled with YubiKeys and Azure AD, all without passwords on your mobile devices:The Security Key Series combines hardware-based authentication with public key cryptography to eliminate account takeovers across desktops, laptops and mobile. Two types of discoverable FIDO credentials enable passwordless authentication; copyable or hardware bound. change working directory where yubikey manager is installed using cd command. Yubico made a security advisory post on their site last Thursday explaining the Yubikey issue, which involved only their FIPS keys (their more hardened keys), specifically ones with firmware versions 4. 2 firmware. YubiKey 5 Series. Secure it Forward: One YubiKey donated for every 20 sold. 4 (there is no released firmware version 4. The YubiKey 4 uses a USB 2. 6 and 5. The Minidriver software is available as both an MSI installer for 32 and 64 bit systems, as well as a CAB file. 5. Experience stronger security for online accounts by adding a layer of security beyond passwords. With the release of the v2. The YubiKey 5Ci with Lightning connector and USB-C connector is priced at $75. 2 and above) have the ability to use AES-based encryption for the management key. Show some information about the connected YubiKey, such as firmware version and serial number Add experimental support for external smart card readers, enabling the use of a YubiKey over NFC Add initial accessability support Version 4. 2. Connector: USB-A Dimensions: 18mm x 45mm x 3. 2. One more data point. 6(orlater. The best security key for most people: YubiKey 5 NFC. 0 interface. Ubuntu is a free open source operating system and Linux distribution based on Debian. You can also use the tool to check the type and firmware of a YubiKey, or to perform batch programming of a large number of YubiKeys. The OTP application allows a user to set optional access codes on OTP slots. Nitrokey's firmware is open source, unlike the YubiKey. The EXTERNAL_AUTHENTICATE command with security level C-DECRYPTION, R-ENCRYPTION, CMAC and R-MAC is the only supported option. 2 and 4. Device type: YubiKey NEO Serial number: X Firmware version: 3. YubiKey 4 Series. Matt Davey COO, 1Password. Run: pamu2fcfg > ~/. GTIN: 5060408462331. Interface. Yubico’s YubiKey 5 NFC — which uses both a USB-A connector and wireless NFC — is the best key for logging into your online accounts. The Kensington VeriMark Guard USB-C Fingerprint Key is $69. The May 2021 Biden executive order urged all Federal as well as State and Local agencies, and any private sector organization serving these agencies to modernize cybersecurity with phishing-resistant multi-factor authentication (MFA). PGP is a crypto toolbox that can be used to perform all common operations. The replacement is free and you don't need to turn in your old device. Flexible. 3. Yubikey FIPS vulnerability. YubiKey BIO supports biometric authentication (I presume with on-board fingerprint verification) to use the device's keys. YubiKey 5 Series; YubiKey 5 FIPS Series; Security Key Series; YubiKey Bio Series; YubiKey 5 CSPN Series; What’s New?. The YubiKey NEO-n has a USB 2. 0. Command APDU info. Since my YubiKey's Firmware Version is listed as 5. YubiKey 4 Series. Interface. Download and install YubiKey Manager. Description. CLA INS P1 P2 Lc Data; 0x00: 0x01: 0x14: 0x00 (absent) (absent) Response APDU info. Physical Specifications Form Factor. It allows users to securely log into. YubiHSM Auth is supported by YubiKey firmware version 5. Yubico's "updated pricing strategy" of increasing cost on all keys and trying to push subscriptions is ridiculous in light of FEITIAN and others' pricing. The YubiKey 5 NFC uses a USB 2. if your YubiKey firmware version is newer than 5. The YubiKey NEO has a maximum certificate size of 2024 bytes in DER format. The YubiKey 5 Series supports most modern and legacy authentication standards. If you're looking for setup instructions for your YubiKey. Commits a configuration to one of two programmable slots. If YubiKey Manager or another Yubico configuration software is used to switch the contents of slot 1 and slot 2 after a YubiKey has been configured for Yubico Login for Windows, the YubiKey will not work with Yubico Login for Windows. Yubikey is just a keyboard. You can also use the tool to check the type and firmware of a. 0 – 5. 4. アプリを開いたりコードを入力したりするためにスマートフォンを手に取る必要はありません。. Connector: USB-C Dimensions: 18mm x 45mm x 3. YubiKey PIV introduction; Releases. Allows HMAC-SHA1 with a static secret. In addition, you can use the extended settings to specify other features, such as to disable fast triggering, which prevents the accidental triggering of the nano-sized YubiKeys when only slot 1 is configured. Engage with Yubico subject matter experts who can support any technical integration of YubiKeys with your existing systems. For YubiKey version 5: $ ykman info Device type: YubiKey 5 NFC Serial number: XXXXXXXXX Firmware version: 5. 2. Learn more > Knowledge base. 4 firmware enables easier integration with Credential Management System solutions, secure remote provisioning of YubiKeys, and expanded methods for PIV management. The YubiKey 4 and YubiKey NEO have five separate applets, all of which have different processes for being reset. 4. 3. YubiKeys support multiple authentication protocols so you are able to use them across any tech stack, legacy or modern. 2. FriendlyName -like "*YubiKey*"} | Select-Object -ExpandProperty FriendlyName. Use YubiKey Manager to check your YubiKey's firmware version. YubiHSM Auth uses hardware to protect these long-lived credentials. CHEATSHEETS. Use YubiKey Manager to check your YubiKey's firmware version. A phone can get stolen, sold, infected by malware, have its storage read by a connected computer. de (sold by Amazon) and the firmware is 5. Phoenix Software enables digital transformation in the workplace. YubiKey Manager can be installed independently of platform by using pip (or equivalent): pip install --user yubikey-manager. Combined with leading password managers, social login and enterprise single sign on systems the YubiKey enables secure access to millions of online services. 2 Enhancements to OpenPGP 3. 4. Keep your online accounts safe from hackers with the YubiKey. Read the updated PIN, PUK, and Management Key article for more information. This access code is intended to prevent unauthorized changes to OTP configurations. Most of the time there is no need for installation of softwares or drivers for the. Download and install YubiKey Manager. (note there is a Security advisory YSA-2019-02 on 4. You can also use the tool to check the type and firmware of a YubiKey, or to perform batch programming of a large number of YubiKeys. YubiKey SDKs. You also have a dedicated OATH app. What’s New in YubiKey Firmware 5. PIV: FIPS 140-2 with YubiKey 5 FIPS Series. which uses open-source hardware and firmware, and the $24. For each service you set up, have your spare YubiKey ready and add it right after the first one before moving to the next. Works out-of-the-box with operating systems and. 5. This will create an SSH key on your local system in ~/. The YubiKey 5C Nano has six distinct applications, which are all independent of each other and can be used simultaneously. 4. This issue potentially affects developers, partners, and customers who have used a YubiKey Validation Server to build a self-hosted one-time password (OTP) validation service. Check the firmware version for your YubiKey Neo as a security flaw allows a bypass of the PIN. Yubikey. Applications using this SDK can now use the YubiKey's. On Linux platforms you will need pcscd installed and running to be able to communicate with a YubiKey over the SmartCard interface. PGP is not used for web authentication. Issue. For each service you set up, have your spare YubiKey ready and add it right after the first one before moving to the next. Yubico has developed a range of mobile SDKs, such as for iOS and Android, and also desktop SDKs to enable developers to rapidly integrate hardware security into their apps and services, and deliver a high level of security on the range of devices, apps and services users love. 4. The access code is not checked when updating NFC specific components. Instead of a code being texted to you, or generated by an app on your phone, you press a button on your YubiKey. The YubiKey 5 Series is the industry’s first set of multi-protocol security keys to support FIDO2 / WebAuthn, the open. It determines what features the device has. Release version 2023. 1 firmware just released, roadblocks that prevented YubiHSM 2 products integration with more widely available libraries and operating systems have been removed. Turn on/off some applets and modify their configuration. The replacement is free and you don't need to turn in your old device. Support Services. Note: The YubiKey 5 FIPS Series with initial firmware release version 5. And a full range of form factors allows users to secure online accounts on all of the. Start with having your YubiKey (s) handy. YubiKeys support multiple authentication protocols so you are able to use them across any tech stack, legacy or modern. YubiKey NEO. If you have an older device and wish to get the latest firmware, you will need to purchase a separate. Use the YubiKey Personalization Tool to configure the two slots on your YubiKey on Windows, macOS, and Linux operating systems. The new Google Titan Security Keys are priced at $30 for the USB-A/NFC version, and $35. You can also use the tool to check the type and firmware of a YubiKey. Additional installation packages are available from third parties. Criteria¶The YubiKey 5 Nano has six distinct applications, which are all independent of each other and can be used simultaneously. 4. Once an app or service is verified, it can stay trusted. The logic here is that if the issue is with the YubiKey or our software, disabling the OTP would break the PIV functionality even after the reboot. The tool works with any YubiKey (except the Security Key). This is not a problem that you, or us, can solve. Interface. Popular Resources for Business The YubiHSM 2 is a Hardware Security Module that provides advanced cryptography, including hashing, asymmetric and symmetric key cryptography, to protect the cryptographic keys that secure critical applications, identities, and sensitive data in an enterprise for certificate authorities, databases, code signing and more. 4. Up to the tamper-resistance of the HSM and how bug-free its. 2130) GnuPG: 2. Interface. The information provided is based on general availability (GA) product releases and YubiKeys that support the FIDO standards. The Nano model is small enough to stay in the USB port of your computer. 6 (or later) library and command line interface (CLI). Works with YubiKey. The YubiKey secures the software supply chain and 3rd party access with phishing-resistant MFA. Help center. But bug and performance fixes are always welcome if you can't upgrade the firmware. Yubico made a security advisory post on their site last Thursday explaining the Yubikey issue, which involved only their FIPS keys (their more hardened keys), specifically ones with firmware versions 4. YubiHSM, YubiHSM 2, YubiKey 5 Series, YubiKey 4 Series, YubiKey FIPS Series, Security Key by Yubico Series, or previous generation YubiKey devices are not impacted. Interface. Where possible, avoidthehack tries not to recommend closed-source solutions, but Yubikey has a stellar reputation for security. Yubico announced they have already been working on actively replacing affected keys after. The secure session protocol is based on Secure Channel Protocol 3 (SCP03). YubiHSM Auth is a YubiKey CCID application that stores the long-lived credentials used to establish secure sessions with a YubiHSM 2. The YubiKey 5C NFC uses a USB 2. 0 interface. Trustworthy and easy-to-use, it's your key to a safer digital world. 2, this marks a major upgrade from three years ago when the original YubiKey FIPS Series was launched with firmware. What’s New in YubiKey Firmware 5.