
5 POST-EXPLOITATION
An interesting aspect of this technology is that it’s used on render farms7. A render
farm is composed of a computer cluster using very powerful hardware, which usu-
ally includes powerful GPUs8such as the ones based on the TESLA family9.
One of the possible scenarios to exploit this computational power is to reuse
such farms to perform password cracking. If you are not familiar with password
cracking, this strategy10 "is the process of recovering passwords from data that have
been stored in or transmitted by a computer system. A common approach (brute-
force attack) is to repeatedly try guesses for the password".
Figure 6: Owning a render farm
Since password cracking can be optimized on GPUs 11 12 13, what about using
a render farm to play with Rainbow tables14 or mining some Bitcoin15 ?
7http://en.wikipedia.org/wiki/Render_farm
8http://en.wikipedia.org/wiki/Graphics_processing_unit
9http://www.nvidia.com/object/tesla-supercomputing-solutions.html
10http://en.wikipedia.org/wiki/Password_cracking
11http://security.stackexchange.com/questions/32816/why-are-gpus-so-good-at-cracking-passwords
12http://blog.erratasec.com/2011/06/password-cracking-mining-and-gpus.html
13http://www.tomshardware.com/reviews/password-recovery-gpu,2945.html
14http://en.wikipedia.org/wiki/Rainbow_table
15http://www.tomshardware.com/reviews/bitcoin-mining-make-money,3514.html
ReVuln - http://revuln.com page 5 of 8