PDA

View Full Version : Researchers Use PlayStation Cluster to Forge a Web Skeleton Key (Threat Level)



Drew Wilson
December 30th, 2008, 08:07 PM
A powerful digital certificate that can be used to forge the identity of any website on the internet is in the hands of in international band of security researchers, thanks to a sophisticated attack on the ailing MD5 hash algorithm, a slip-up by Verisign, and about 200 PlayStation 3s.

"We can impersonate Amazon.com and you won't notice," says David Molnar, a computer science PhD candidate at UC Berkeley. "The padlock will be there and everything will look like it's a perfectly ordinary certificate."

The security researchers from the U.S., Switzerland and the Netherlands planned to detail their technique Tuesday, at the 25th Chaos Communication Congress in Berlin.

At issue is the crypto technology used to ensure visitors to Amazon.com, for example, are actually connected to the online retailer and not to a fake site erected by a fraudster. That assurance comes from a digital certificate that's vouched for and digitally signed by a trusted authority like Verisign. The certificate is transmitted to a user's browser and automatically verified during SSL connections -- the high-security web links heralded by a locked-padlock icon in the browser.

More... (http://blog.wired.com/27bstroke6/2008/12/berlin.html)

This is what happens when a consol loses the consol wars... they start hacking the internet.

Mels_Smileys45
December 30th, 2008, 08:12 PM
Damn 200 PS3's! Just think what they could do if they would have spent that money to build a real super computer.

kippies
December 31st, 2008, 05:48 AM
There was a story a while back about some researchers using networked PS3's running a linux distro and using the cells for complex computing tasks- I wonder if its the same people?

BTW graphics cards manufacturers are going down this route with systems that use the GPU cores for other tasks other than straightforward graphics- more GPU's = more power to do whatever and the CPU can offload whatever task it needs to them- meaning near supercomputer power in a desk top box

So much for the prediction we would all soon be running thin clients on a network as nobody needs the power of modern systems..

Now how long to encode a decent bit rate Blu Ray on a network of 200 PS3's? :icon_pira