Skip to content

ARROW Decrypt Overview

ARROW Decrypt is the password-recovery console of the ARROW suite. You use it to run authorized password audits: feed it the password hashes from an engagement, choose how hard to attack them, and it drives hashcat across your GPU cluster to recover the weak ones. Everything happens from one browser console - queuing jobs, watching rigs, reviewing what cracked, and packaging the results for a client report.

It is built for authorized work only. Every recovered password is scoped to the engagement it came from, usernames are separated from hashes on the way in, and every action is written to an audit log.

  • Queue crack jobs against a hash dump and watch them run live across every GPU in the fleet.
  • Add on-prem GPU rigs, or rent cloud GPUs by the hour to hit a deadline.
  • Keep a shared wordlist library that syncs to every rig automatically.
  • Browse the cluster potfile of everything recovered so far, and export it.
  • Turn a finished engagement into an audit report, and track password trends across engagements.
  • Manage your team, their roles, and two-factor requirements.

The dashboard is where you land after signing in. It answers one question fast: is the fleet healthy and what is it doing right now?

ARROW Decrypt dashboard showing fleet stats, recent recoveries, and active jobs ARROW Decrypt dashboard showing fleet stats, recent recoveries, and active jobs

The dashboard: fleet health, recent recoveries, and active jobs at a glance

ARROW Decrypt dashboard showing fleet stats, recent recoveries, and active jobs ARROW Decrypt dashboard showing fleet stats, recent recoveries, and active jobs

A row of stat cards runs across the top:

CardWhat it shows
Nodes onlineHow many rigs are up, out of the total registered
GPUsTotal GPUs across the whole cluster
Jobs runningHow many crack jobs are active right now
Recovered (cluster pot)Total passwords recovered across every engagement
House corpusSize of the shared password corpus built from past cracks

Below the cards, Recently recovered (live) streams the newest cracked passwords as they land, the Fleet panel lists each node with its GPU model, temperature, and load, and Active jobs shows anything running with its progress.

If you see a banner reading that the cluster has never been benchmarked, run one from Settings. Until you do, job time estimates are rough guesses rather than measured numbers. Use the Refresh button in the top right to force an update at any time; the dashboard also refreshes on its own.

Everything lives behind the icon rail down the left side. Each icon opens one section.

SectionWhat you do there
DashboardFleet overview and recovery activity
NodesGPU rigs, their health, and onboarding new ones
CloudRent ephemeral GPUs from vast.ai for a burst
ClusterCluster members, the elected leader, and replication
JobsCreate crack jobs and review results
RecoveredThe cluster potfile of recovered credentials
WordlistsThe wordlist library that syncs to every rig
ReportsPer-engagement password audit deliverables
TrendsAnalytics across every engagement
ConsoleRead-only diagnostics and a terminal per node
TeamUsers, roles, and invites
SettingsNetwork, policy, notifications, storage, and more

ARROW Decrypt runs in light or dark mode. Toggle it from the theme control on the sign-in screen or under Settings, in Appearance.