Skip to content

YubiKey Firmware Update to Version 5.7 Announced

Yubico unveils the upcoming launch of YubiKey 5.7 firmware for YubiKey 5 Series, Security Key Series, and Security Key Series - Enterprise Edition. According to Yubico, this update reaffirms their dedication to delivering secure, streamlined, and scalable authentication solutions, while...

YubiKey's Latest Firmware Update Revealed: Version 5.7
YubiKey's Latest Firmware Update Revealed: Version 5.7

YubiKey Firmware Update to Version 5.7 Announced

Yubio has made significant strides with the release of the YubiKey 5.7, a versatile and secure authentication device that offers a host of new features and improvements.

Improved Cryptographic Operations

The YubiKey 5.7 has migrated to its own cryptographic library for RSA and Elliptic Curve Cryptography (ECC) operations, ensuring enhanced security and performance.

Wide Range of Form Factors and Connectivity Options

The YubiKey 5.7 is available in various form factors, including the YubiKey 5 NFC, YubiKey 5C NFC, and YubiKey 5C. It also offers USB-C and Near Field Communication (NFC) connectivity options, making it compatible with a wide range of devices.

Increased Security Measures

The YubiKey 5.7 has improved its hardware-based random number generation, providing an increased level of security. It also offers increased resistance to physical attacks with its tamper-evident design. Yubio has enhanced PIN complexity across all YubiKey applications to block simple patterns and common PINs.

Expanded Key Support and Storage

YubiKey 5.7 now supports larger RSA keys (RSA-3072 and RSA-4096), as well as Ed25519 and X25519 key types. It also offers expanded storage for FIDO2 discoverable credentials (passkeys) and One-Time Passwords (OTP).

Enhanced Enterprise Features

The YubiKey 5.7's enterprise attestation capability can streamline asset tracking and account recovery. Working in conjunction with identity providers, enterprise attestation can facilitate the retrieval of unique identifiers during FIDO2 registration. This feature allows organizations to enforce the usage of YubiKeys they purchased via custom programmed keys.

Embracing the Latest Protocols

The YubiKey 5.7 implements FIDO Client-to-Authenticator Protocol (CTAP) 2.1, embracing the latest FIDO2 protocol features. It also supports FIDO2 WebAuthn and CTAP 2.0, FIDO Universal Second Factor (U2F) authentication, and biometrics through the YubiKey Bio.

Cloud-Based Key Management and Self-Service Options

The YubiKey 5.7 supports Yubico's YubiCloud API for cloud-based key management and offers a new feature for YubiKey Personalization Service (YPS) for self-service key management.

Real-World Applications

While the specific organizations using Enterprise Attestation for the YubiKey 5 Series are not explicitly listed, DigiCert appears as a relevant company integrating YubiKey support in their certificate management (Trust Lifecycle Manager), indicating some enterprise-level use by organizations working with DigiCert's services. No direct list of other organizations is provided.

In summary, the YubiKey 5.7 offers a significant leap forward in terms of security, versatility, and functionality, making it an ideal choice for both personal and enterprise-level authentication needs.

Read also:

Latest