@gavin57@becomingwisest That makes replacing existing Yubikeys ever more important. Like I said, I'm sure newly made units are going to be patched but the ones already in the wild aren't.
@becomingwisest@joeo10 Yup, it also requires the user to be really careless with their key around someone capable of fabricating a clone, whilst also handing that person their password. A bit of a storm in a teacup and they’re still safer than not using one.
@joeo10@becomingwisest The unaffected firmware has been available for months. Worth upgrading for the first extra capacity anyway, but mine are thankfully unaffected —not that I plan to leave them lying around.