I currently use the hf side of my NExT for logging into various things as well as storage for some recovery keys, but I’m looking for the ability to change the serial number (or log in).

I believe the xM1 is what I want but I just wanted to verify that with you guys.

Thanks in advance for any insight you may have.

The xM1 or flexM1 will let you do that, but also I believe the flexMN.

Out of curiosity, why do you need to change the UID?

The ability to change the UID just increase’s their usability should a log in ever become compromised

So I assume you use the chip’s UID as a direct login into your computer using a keyboard wedge, is that it?

In which case, a better solution would be to use a proper reader and a dedicated login program.

This is correct.

Would a dedicated login program render ability to change a UID useless?

Well sorry I should have made my answer more complete.

Changing the UID regularly in and of itself would add an extra layer of security (although “security” in the context of a dumb RFID or NFC chip is all relative). It’s just like passwords really: if you cycle them regularly, they can’t be compromised long term. But it’s not that necessary really.

What the login program brings is decoupling the keyboard input and the chip login itself. That is:

  • You keep your regular login, and you don’t have to use your chip’s UID as a direct password - because quite frankly hex strings are not that easy to remember.

  • You don’t risk autotyping your password in a document, or worse, in a chat window or something if you approach your chip to the reader at the wrong moment

  • You are not at the mercy of the keyboard wedge’s exact output format if you ever change keyboard wedge brand / model and it’s nor programmable

This here post by His Amalness is of interest. Look up the bit that talks about logging in with an ACR122. Assuming you use Windows of course.

This is the where the your password is stored in the hardware that scans your chips to verify?

I have mixed feelings of a separate piece of hardware having the password

Gives me the vibe of exterior lock box’s… just steal the box and get the key

Login programs are installed on your computer and should keep your chip’s UID encrypted - just like they should keep your regular password encrypted also. A hypothetical external box should do the same.

I guess I’d be ok with a program…

Hardware I trust less, just because it could easily be taken?

Obviously you’d notice and immediately change credentials… but seems like adding points of vulnerability

Hence two-factor authentication, if you’re that concerned. The hardware is one part, a password in your noggin is the second part. Authentication occurs when both are present. Think credit card and PIN number.

But consider that if you have a piece of hardware that reacts to one of your implants, it’ll be basically useless without your implant - if it’s properly designed and doesn’t store your implant’s creds in plaintext on a SD card or something. So even with dump chips, in the case of implants, 2FA isn’t as much of a necessity.

