I've been thinking about buying a YubiKey. Could you elaborate on how U2F protects against MitM and phishing?
(I'm not arguing that PMs are >= to hardware 2FA, but they both will keep this exact thing from happening)
Bytes in a password manager are hard to steal, but if you do steal them, the legitimate owner won't necessarily ever know.
With U2F that failure mode is impossible since you cannot get the private key to shoot yourself in the foot with, even if the phisher successfully convinces you to try.