|
|
|
|
|
by lima
3471 days ago
|
|
Those are considered deprecated by now. The most important issue with those devices is that they're not secure against phishing. If you accidentally input your credentials and PIN code in a phishing site, it's game over. With FIDO tokens, this is impossible - authentication is challenge-response based and tied to the encrypted channel. Your device contains a private key which is used to authenticate. This requires two-way communication, so you have to plug in the device. |
|