FIDO U2F seems much more secure than one-time-passwords (OTP), especially TOTP, because of the challenge-response architecture. In what ways is a U2F user still vulnerable?
I presume if a user's computer is compromised or the user loses their U2F dongle then all bets are off, right? But phishing no longer works? (I'm not an aspiring hacker, just a guy trying to understand a technology.)
EDIT: There's a related question about U2F linked to in the comments. That question asks how secure U2F is. I'm wondering specifically about vulnerabilities not fixed by U2F.
Thanks.