YubiHSM cons No independent whitebox audits No independent blackbox audits probing for implementation issues USB CDC is slow, up to ~500 requests per second sustained throughput Serial interface for block-oriented data is risky "careful design is required not to lose synchronization in a serial byte stream" (Yubico) Not tamper-resistant (physical attacks are outside of the threat model)