Hacker News with Generative AI: Yubikey

Offline PKI using 3 Yubikeys and an ARM single board computer (bernat.ch)
An offline PKI enhances security by physically isolating the certificate authority from network threats. A YubiKey is a low-cost solution to store a root certificate. You also need an air-gapped environment to operate the root CA.
Yubikey 5 are vulnerable to side channel cloning attacks (arstechnica.com)
Yubikey Security Advisory YSA-2024-03 Infineon Ecdsa Private Key Recovery (yubico.com)