That's a lot of text to say nothing of interest. I really love how they question the trade offs made in the PCB design, as if these things didn't occur to the designers.
Disappointed that they did nothing to probe the onboard MCUs to see if they could get it to leak anything, and just dismissed that with "we expect it to get high marks there." This seems an awfully low quality report from an infosec company. I was hoping to see an audit of the controllers onboard to see if (and if so, how much effort) they can extract onboard secrets, because after all that's the whole purpose of this device, to act as a secrets repository.
First line of the page: Yubikey is a curiosity-driven side project for us and we have plans to dig a bit further into hardware as time permits. If anybody could confidentially help with NXP datasheets, it would be much appreciated.
I guess they could have waited until they had more to publish it, but I found it interesting regardless
All else being equal it would be nice if the keys' casing were more tamper-resistant. But the article doesn't even touch on the tamper resistance of the NXP A7005, which is the part that actually matters.
I found it interesting since as a user you can't see the PCB. Of course the designers knew about the tradeoffs, it's just nice to know what those tradeoffs were.