Yubico Announces Upgraded YubiKey 5 FIPS Series, Now FIPS 140-3 Validated
YubiKey 5 FIPS Series uniquely recognized in
Yubico (
“Yubico is setting a new standard for high-assurance authentication, combining government-grade compliance with hardware-backed passkeys,” said
For organizations responsible for protecting sensitive information – including
The FIPS 140-3 framework aligns closely with the international ISO/IEC 19790:2012 cryptographic standard, helping global enterprises and government agencies adopt a unified, modern security baseline across their operations. The upgraded YubiKey 5 FIPS Series meets FIPS 140-3 Overall Level 2, with Physical Security Level 3 – providing high-assurance authentication designed for the most demanding security environments. Additionally, the devices enable compliance with NIST SP 800-63B Authenticator Assurance Level 3 (AAL3) requirements.
Powerful Enterprise-Grade Features for Regulated Environments
Featuring the latest YubiKey 5.7.4 firmware, the YubiKey 5 FIPS Series addresses high assurance enterprise authentication requirements, spanning PKI and modern passkey use cases.
-
Expansion and Enhancement of Public Key Algorithms: Support for larger RSA keys (RSA-3072 and RSA-4096) and Ed25519, enhancing key management functions and flexibility for organizations – aligning with
DoD memo requirements on stronger public key algorithms. - Restricted NFC Usage During Transit: NFC capable YubiKeys have restricted NFC usage to prevent manipulation during transit.
- Enhanced PIN Complexity: Enabled by default across all YubiKey applications, including FIDO2, PIV and OpenPGP.
- FIDO Client to Authenticator Protocol (CTAP) 2.1 implementation: Improvements around the FIDO2 PIN, including Force PIN Change and Minimum PIN Length – addressing PIN requirements in “enroll on behalf” scenarios.
- Expanded Passkey and Passwordless Storage Capabilities: Accommodating up to 100 device-bound passkeys (up from 25), 64 OATH seeds (up from 32) and 24 PIV certificates.
- Enterprise Attestation: Facilitates the retrieval of unique identifiers during FIDO2 registration and streamlining asset tracking by allowing identity providers to read the serial number from the YubiKey during FIDO2 registration.
- New secure channel protocol: The addition of SCP11, which is based on asymmetric cryptography.
The YubiKey 5 FIPS Series will be available in a wide range of form factors – including USB-A, USB-C, NFC, Lightning and Nano – ensuring seamless compatibility across modern laptops, mobile devices and secure closed-network environments.
For more information on the YubiKeys 5 FIPS Series and 140-3 Validation, read Yubico’s blog here or visit: https://www.yubico.com/products/yubikey-fips/
About Yubico
Yubico (
Since 2007, we’ve helped shape global authentication standards, co-created FIDO2, WebAuthn, and FIDO U2F, and introduced the original passkey. Today, our passkey technology secures people and organizations in over 160 countries—transforming how digital identity is protected from onboarding to account recovery.
Trusted by the world’s most security-conscious brands, governments, and institutions, YubiKeys work out of the box with hundreds of apps and services, delivering fast, passwordless access without friction or compromise.
We believe strong security should never be out of reach. Through our philanthropic initiative, Secure it Forward, we donate YubiKeys to nonprofits supporting at-risk communities.
Headquartered in
View source version on businesswire.com: https://www.businesswire.com/news/home/20260526217181/en/
Yubico
Yubico Communications Team
press@yubico.com
Source: Yubico