Earlier quoted context omitted.
>If you've already got a process running on the victim's computer, aren't there easier ways of installing a keylogger? Now system designers have to very seriously consider this risk when building sandboxes or other forms of process isolation. Say the attacker controlled process is in a sandbox and would normally be assumed safe.
If your sandbox gives unfettered access to the GPU, that's not a great sandbox, is it?
Why would you think otherwise?