Morningstar Yubico Enhances Enrollment Services for Phishing-Resistant Authentication
Article Content
- •Yubico expands its Enrollment services to enhance passwordless authentication.
- •The new YubiKey as a Service - Enroll app is in Limited Early Access for Android.
- •Organizations can choose between managed services or onsite enrollment options.
Yubico announced the expansion of its Enrollment services at the RSA Conference on March 23, 2026. The new services aim to facilitate user enrollment for YubiKeys, particularly for Microsoft and Ping Identity customers, promoting a transition to passwordless authentication. The introduction of the YubiKey as a Service - Enroll app, currently in Limited Early Access for Android users, allows for secure in-the-field enrollment. This initiative is a response to the increasing sophistication of cyber attacks, particularly phishing-based credential theft. Organizations can choose between a fully managed service with pre-configured YubiKeys or an app/SDK for onsite enrollment. The service aims to streamline user onboarding for IT and HR teams, enhancing security across enterprises. Yubico's efforts are part of a broader trend towards eliminating passwords and improving cybersecurity measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…