Hacker News new | ask | show | jobs
by SkyMarshal 1434 days ago
Yeah, for example: https://support.yubico.com/hc/en-us/articles/360018695819-Ub...
1 comments

What would keep a side-channel attacker from reading your YubiKey PIN from kernel memory, and then racing all your authentication attempts until it manages to win the physical button event?
Nothing maybe. But if a side-channel attack gains access to kernel memory, they can do just about anything, and no login scheme is secure against that.