TrustRadius: an HG Insights company

Yubico YubiKeys

Score9.1 out of 10

148 Reviews and Ratings

Learn More

Contact about Yubico YubiKeys

Please fill out the form below to get in touch.

Yubico

Connect with Yubico

What are you interested in?

Already have an account?

You hereby consent to have TrustRadius share the information supplied on this form with Yubico so that Yubico and TrustRadius may contact you in regard to the information requested.

What is Yubico YubiKeys?

Yubico YubiKeys make the internet safer with phishing-resistant multi-factor authentication (MFA) by providing simple and secure access to computers, mobile devices, servers, and internet accounts. The Yubico YubiKey stops account takeovers at scale by mitigating phishing and ransomware attacks, and delivers users authentication with a simple touch or tap.

My Experience With Yubico YubiKeys.

Use Cases and Deployment Scope

With Yubico YubiKeys, we've effectively reduced security breaches thanks to the phishing-resistant MFA solution. We have this security solution deployed company-wide, and it prevents account takeovers and ensures compliance with Zero Trust security standards. In addition, Yubico YubiKeys provide fast, secure access thanks to their tap-and-go (passwordless) authentication, improving the user experience.

Pros

  • Phishing resistance works really well.
  • It reduces breach risks by up to 99%.
  • It effectively blocks and stops account takeovers.
  • The MFA is fast and reliable.
  • Passwordless Access works really well - better user experience.

Cons

  • Besides lost keys risks, everything else about Yubico YubiKeys has been smooth.

Most Important Features

  • MFA is fast, reliable and phishing resistant.
  • Tap-and-go ensures fast access and better user experience.
  • Supports privileged access management.

Return on Investment

  • With Yubico YubiKeys, we no longer worry about unauthorized access to business data/resources, which saves us money and protects our business reputation.
  • Fast authentication using MFA and tap-and-go passwordless features ensures a better user experience and fast access.
  • Since we have a hybrid workforce, Yubico YubiKeys make it possible to secure our remote work.

Other Software Used

Avast Email Security, FortiPAM

Yubico YubiKeys Review

Use Cases and Deployment Scope

We're using it for MFA in the business, using it primarily with a password manager, to generate passwords, long and encrypted passwords, and then also to help us protect us with email.

Pros

  • Peace of mind for security, and not worried about whether or not the public key and private key is going to work. Provides another level of confidence for MFA

Cons

  • I can't think of anything.

Return on Investment

  • That's a tough question because right now we haven't had any problems since using it. Again, using with our password managers has just been pretty clean. I haven't had anybody object to using it. They all think it's cool. It could be because they're a bunch of nerds yet.

Other Software Used

Bitwarden, LastPass for Business

YubiKeys - highly recommended

Use Cases and Deployment Scope

We use YubiKeys to secure our access to various cloud platforms with hardware backed passkeys. This creates trust with the customers we service, and ensures that we can recuperate credentials from members that leave our organization. The advantage is that we do not have to rely on additional software and that the YubiKeys are standards compliant. They are also extremely resilient. We used the first generation of keys originally, and almost all of them are still working fine. For us, the one-time cost of a YubiKey is an especially good investment vs the recurring cost of other tooling.

Pros

  • Key management tooling is great and well maintained
  • The form factor is superb
  • Standards compliance
  • Super resilient

Cons

  • The old YubiKey Nanos had a hole for a lanyard, the new ones no longer have that.
  • A quick way to identify the YubiKey by a name would be great

Most Important Features

  • WebAuthN support
  • PKCS11 compliant

Return on Investment

  • Serious risk reduction
  • Less support needed for customers that use YubiKeys
  • Certainty that certain credentials can never be copied

Alternatives Considered

1Password

Secure 2FA

Use Cases and Deployment Scope

We use YubiKeys in our organization as a second factor for user authentication across our systems (M365, VPN, and a few internal apps) with main goal to reduce the risk of phishing attacks and credential theft. Passwords alone just don't cut it i today's world, especially with the increase in MFA fatigue attacks and token grabbing.

Pros

  • Provides 2FA easily
  • Uses something you have (the key) and something you know (the PIN)
  • Compact and portable

Cons

  • No clarity on whether the touch sensor is a fingerprint reader (it isn't, but it's a common assumption from users)
  • USB-C is reversible but touch sensor only on one side
  • Somewhat breakable

Most Important Features

  • Portable
  • Reliable
  • Secure

Return on Investment

  • Increase in helpdesk tickets due to unfamiliarity and confusion
  • Discrepancy between LAN and YubiKey password/PIN
  • General user confusion but strengthened security

Other Software Used

Microsoft 365, Microsoft Azure, Microsoft Entra ID

Fast and Secure Way to MFA - and Password-less, Too!

Use Cases and Deployment Scope

Yubico YubiKeys are an essential part of our logins. When hired, every employee in my business unit receives a YubiKey 5c Nano along with their laptop. Since we are a hybrid workforce and many of us work from home, this allows us to log in with phishing-resistant MFA to all of our SaaS applications that are protected by Duo. Since WebAuthn is the standard from the start, this ensures that the highest level of protection is enforced from an authentication perspective. This has solved the issue of wondering whether or not users are logging in securely from disparate locations. It is also easy for users to authenticate with the tap of a finger to access critical applications - even in a Passwordless workflow!

Pros

  • Ease of use
  • Multiple authentication protocols
  • Cross-compatibility

Cons

  • Reduce the cost of keys
  • Honestly, Yubico YubiKeys are great and have all the features we need
  • No other criticisms - it just works!

Most Important Features

  • Multiple authentication methods supported (FIDO2 + AES/OTP)
  • Ease of use
  • Provisioning/user onboarding

Return on Investment

  • Reducing breaches (phishing-resistant MFA)
  • Passwordless (quicker, easier, safer logins)
  • End user self-enrollment (no administrative setup for WebAuthn)

Alternatives Considered

Cisco Duo

Other Software Used

Cisco Duo, Google Chrome, FreeRADIUS