Live data from Hacker News

OpenAI mandates hardware-backed passkeys for Trusted Access Cyber members

yubico.com

1–10 of 26 posts

Re: OpenAI mandates hardware-backed passkeys for Trusted Access Cyber members

#7
post #6
post #4

I hope that at some point this is not developing to remote attestation when only "permitted" devices can use the models.

We all know that's where they are going with this.

No, that would almost certainly defeat the point of selling the models.

Hardware 2FA is not a new concept and is recommended by many people for many purposes. Only the authentication token is attested, and that is the purpose of an authentication token.

Re: OpenAI mandates hardware-backed passkeys for Trusted Access Cyber members

#8
post #5

It’s an advertisement by Yubikey - the hardware key manufacturer

I tried enabling their "advanced security" programme on my account and it's currently refusing to continue without at least 2 keys configured.

The first "hardware key" is actually my Bitwarden faking a hardware key (I'm sure they'll start blocking BW because of this in the future) but it doesn't let me add a second one unfortunately.

Re: OpenAI mandates hardware-backed passkeys for Trusted Access Cyber members

#10
post #6
post #4

I hope that at some point this is not developing to remote attestation when only "permitted" devices can use the models.

We all know that's where they are going with this.

If it will, it will be with smartphones. YubiKeys don't quite have the properties sought here.
Post reply on HN