Yubico - A great new way to handle our online world

Yubico is a brand new start-up company out of Sweden that I just found out about through listening to the weekly podcast, Security Now.  Steve Gibson relates the story of making a startling find at the RSA Conference 2008 when he came across the CEO, founder, and inventor of the device that Yubico has created to revolutionize pretty much every kind of computer transaction that requires a password.

 

The "YubiKey", as the device is called, is a small, cheap dongle for one's keychain which transforms the keyboard of the hardware that the YubiKey is inserted into, using a standard USB port, into an encrypted, visually hidden, and high security 2-factor authentication keyboard. Basically, it seems that this replaces the standard RSA KeyFOB concept with a KeyFOB that 1) doesn't need an internal power source, and 2) doesn't require manually inputting a password every time you use it to authenticate with a website, bank ATM, etc. More details are available on the site, but I think this little device could really revolutionize the 2-factor authentication that banks are supposed to provide to customers, but generally do a terrible job at by requiring you to come up with a bunch of other things to remember besides your password, like your brother's middle name, your father's city of birth, and your high school's mascot between the years 1925 and 1932.