Live data from Hacker News

Yubico announces tiny, cheap YubiHSM 2

yubico.com

81–90 of 94 posts

Re: Yubico announces tiny, cheap YubiHSM 2

#81
post #22

How useful are such measures when Intel has backdoored each and everyone of their CPUs with its "Intel Management Engine" [0] (and AMD has a similar mechanism)? If Intel/AMD have a backdoor into every PC and server, then so does the US gov't (NSA, CIA, FBI, etc.) and of course other uninvited hackers from even hostile countries. And how did Western society just accept all of this anti-democratic craziness? [0] https:…

So I guess you just use 12345678 as your password everywhere?

Or they mailed a letter to a stranger with a wad of cash asking them to post this comment so they can avoid using computers completely

Re: Yubico announces tiny, cheap YubiHSM 2

#82
post #48
post #45

Earlier quoted context omitted.

> How useful are such measures when Intel has backdoored each and everyone of their CPUs with its "Intel Management Engine" [0] (and AMD has a similar mechanism)? If you trust this YubiHSM but not Intel CPUs, then it is very useful since encryption/decryption occurs on the YubiHSM, not the connected CPU. Just plug it into a computer with a CPU you do trust first to get the official public key(s) for future verificati…

If an attacker controls your computer, there is always the possibility of a man in the middle, even if you use a Yubikey. The attacker could simply wait for a request to the HSM and intercept the response.

[deleted]

Re: Yubico announces tiny, cheap YubiHSM 2

#83
post #52
post #50

Earlier quoted context omitted.

But they don't have the private key, that's the whole point of the hardware device! They can't MITM the encrypted data without it. plaintext crypto blob *compromised server/anything but quantum computing* blob crypto / YubiHSM Edit: I'm not talking about this: *my compromised PC* plaintext crypto blob crypto / Yubikey In practice, getting anything done involves some CPU doing something useful with plaintext, if that'…

There are two potential attack scenarios, assuming some attacker A has full control of the PC connected to the Yubikey: 1. A somehow convinces the remote party that the actual public key is X' instead of X. Ciphertext comes in, attacker decrypts it. Done. 2. A intercepts ciphertext, feeds it to Yubikey for decryption, and gets the resulting plaintext over USB (or whatever). Note: this is assuming that the Yubikey doe…

The only advantage of the Yubikey is absolutely massive though. It means not having to worry about revocating private keys or dealing with recurring forgeries after a security breach.

As long as you mitigate the current exploit, you've stopped any forgeries from that point forward.

Re: Yubico announces tiny, cheap YubiHSM 2

#84
post #9

How much of a market is there for HSMs that are not FIPS 140-2 certified?

Everything in the mid to small market commercial space, basically.

I've worked on several FIPS projects, and there's not a big demand for FIPS 140-2 unless the customer is handling government contracts and/or data. It's a good checkmark to have though.

Re: Yubico announces tiny, cheap YubiHSM 2

#85
post #2

$650 is cheap?

Yup. Hsm pcie cards are around $5k, maybe more. The pizza box versions are upwards of 10k... that’s the last price I seen.

Well, certainly the number of keys you can manage is the downside here.

This HSM has limited key storage capabilities to a hundred or so security objects.

The "pizza box vendors" stores hundreds to thousands of keys.

We typically employ key wrapping to reduce HSM key storage requirements, but only in certain situations.

Re: Yubico announces tiny, cheap YubiHSM 2

#87
post #45
post #22

How useful are such measures when Intel has backdoored each and everyone of their CPUs with its "Intel Management Engine" [0] (and AMD has a similar mechanism)? If Intel/AMD have a backdoor into every PC and server, then so does the US gov't (NSA, CIA, FBI, etc.) and of course other uninvited hackers from even hostile countries. And how did Western society just accept all of this anti-democratic craziness? [0] https:…

> How useful are such measures when Intel has backdoored each and everyone of their CPUs with its "Intel Management Engine" [0] (and AMD has a similar mechanism)? If you trust this YubiHSM but not Intel CPUs, then it is very useful since encryption/decryption occurs on the YubiHSM, not the connected CPU. Just plug it into a computer with a CPU you do trust first to get the official public key(s) for future verificati…

If your computer is backdoored, then a HSM does not protect effectively against that attacker. At some point the computer will see the data, at which point it can be extracted. The key is not important to the attacker which can read the unencrypted data.

A HSM does make attacks more difficult, and that is important. On the other hand, computers without backdoors would be _the_ significant step, though, to change the game.

I fundamentally dislike Intel and AMD for their stance on this. And I'm not alone.

Re: Yubico announces tiny, cheap YubiHSM 2

#88
post #87
post #45

Earlier quoted context omitted.

> How useful are such measures when Intel has backdoored each and everyone of their CPUs with its "Intel Management Engine" [0] (and AMD has a similar mechanism)? If you trust this YubiHSM but not Intel CPUs, then it is very useful since encryption/decryption occurs on the YubiHSM, not the connected CPU. Just plug it into a computer with a CPU you do trust first to get the official public key(s) for future verificati…

If your computer is backdoored, then a HSM does not protect effectively against that attacker. At some point the computer will see the data, at which point it can be extracted. The key is not important to the attacker which can read the unencrypted data. A HSM does make attacks more difficult, and that is important. On the other hand, computers without backdoors would be _the_ significant step, though, to change the…

[deleted]

Re: Yubico announces tiny, cheap YubiHSM 2

#90
post #89
post #86

An even lower cost (and open-source) alternative: https://sc4.us/hsm The SC4-HSM also includes dedicated I/O (a display and two buttons) which makes it more secure than the Yubikey. Disclosure: this is my product.

[edit] Disclosure?

Done. It's my product.
Post reply on HN