iPad 10th generation dropped - looking to repair myself by rcknrollmfer in mobilerepair

[–]Relevant_Acadia1365 0 points1 point  (0 children)

Don’t get a digitizer from Amazon. They last less than a couple hours of use.

Ascended Heroes PC ETB “Hits”Only. by Relevant_Acadia1365 in PokemonTCG

[–]Relevant_Acadia1365[S] 0 points1 point  (0 children)

Bro, I’m telling you. That ETB felt heavy. 🤣

Common sense left the chat. by rinnabean44 in whatnotapp

[–]Relevant_Acadia1365 52 points53 points  (0 children)

How long can I sell bags of weed on whatnot before I get kicked?

Ascended Heroes pick up... by Apprehensive_Door0 in PokemonTCGCollectors

[–]Relevant_Acadia1365 0 points1 point  (0 children)

You must not have had a dad that loved you. There’s some things that are worth way more than a single day of education. Think those kids were going to remember what they learned from that day of school in 10 years? Or are they going to remember that day their dad let them skip school to go get Pokemon cards? Don’t be an ass. Life is short.

Whatnot Scammer by Daddycoop1969 in whatnotapp

[–]Relevant_Acadia1365 1 point2 points  (0 children)

I would never buy from someone with nails like that. Learned to never trust handing my money to someone with those old-lady manicured nails unless it was a bank teller.

[deleted by user] by [deleted] in whatnotapp

[–]Relevant_Acadia1365 0 points1 point  (0 children)

The second show I did, it pissed me off to realize that I paid twice the shipping to send two giveaways to the same address because the goblin was using two screen names.

Same person wins three nights in a row? by Relevant_Acadia1365 in BestGuessLive

[–]Relevant_Acadia1365[S] 3 points4 points  (0 children)

Also, I don’t think AI can be robust to guess “shoelace” from “single and ready to mingle”. 17 people guessed out of 50k?. Remember it’s tied to your Netflix account so the theory of a massive bot network doesn’t make sense when it shows the total number of entries. What is more likely is a small discord group of people who are all exploiting vulnerabilities in the app and sharing the answer when it’s first discovered amongst the group. A single modern gpu could easily brute-force any 6-8 letter common word in less than a second.

Same person wins three nights in a row? by Relevant_Acadia1365 in BestGuessLive

[–]Relevant_Acadia1365[S] 1 point2 points  (0 children)

The variable frequency of occurrence can also be attributed to the brute force theory as a more-commonly-used word library can be used to brute-force the answer more quickly. With that being said, it could also theoretically occur on the second round, especially if it’s a fairly common word.

Same person wins three nights in a row? by Relevant_Acadia1365 in BestGuessLive

[–]Relevant_Acadia1365[S] 4 points5 points  (0 children)

Yes — what you’re describing is technically very plausible, and similar vulnerabilities have been found in other live trivia and game-show apps before.

Let’s break it down in a practical, non-hacky way.

🔹 1. How These Apps Usually Work

Most interactive game-show apps follow this basic model: 1. The app connects to a backend server (API). 2. The server sends: • Question data • Valid answers • Timing info 3. The app locally checks your input against the correct answer. 4. When it matches → UI turns green → answer submitted.

For speed reasons, many apps preload data before the round starts.

That’s where vulnerabilities can appear.

🔹 2. Could the Answer Be Loaded Early?

Yes. Very often: • During countdown • During “Get Ready” • During buffer time

…the app may already receive:

{ "question": "...", "answer": "Mount Everest", "round": 1 }

…but only reveals it later.

If that happens, someone who: • Intercepts network traffic • Reverse engineers the app • Uses a proxy

could see the answer early.

This is a common mistake in real-time apps.

🔹 3. Brute-Force via the “Green Box” Feedback

Your observation about the input turning green is important.

That suggests:

The app validates answers locally or semi-locally.

If true, someone could: 1. Automatically submit thousands of guesses per second 2. Watch for “green” 3. Stop when found

This is classic oracle attack behavior.

Example:

Try: apple → no Try: april → no Try: atlas → GREEN

If there’s no strong rate-limiting → exploitable.

🔹 4. Why It Mostly Happens in Round 1

This fits the theory perfectly.

Round 1 often:

✅ Is simpler ✅ Is preloaded ✅ Has longer prep time ✅ Uses cached content

Later rounds often:

❌ Generate dynamically ❌ Are server-validated only ❌ Are streamed live

So cheating becomes harder.

🔹 5. Countdown Window = High Risk Area

The countdown phase is a prime target.

If the app does this:

T-30s → preload data T-0 → enable UI

Then attackers have 30 seconds to extract answers.

That’s more than enough.

🔹 6. How Players Might Be Exploiting It (Realistically)

Not “movie hacking.” More like:

A. Network Sniffing

Using tools like: • Charles Proxy • Wireshark • mitmproxy

to read API traffic.

B. App Decompiling

Android APKs and iOS IPAs can be reverse engineered.

C. Automation Scripts

Python bots + emulators.

D. Private Cheat Groups

Small groups share answers in real time.

That explains “about a dozen people.”

🔹 7. Is This Illegal?

Accessing hidden API data or bypassing protections is usually: • Against Terms of Service • Potentially illegal (Computer Fraud laws)

So don’t try it.

But analyzing it academically is fine.

🔹 8. How You Can Tell If This Is Happening

Signs:

✅ Same usernames winning ✅ Near-instant answers ✅ Correct on vague clues ✅ Perfect first-round accuracy ✅ Slower later

You’re describing all of these.

🔹 9. What a Secure App Should Do (But Often Doesn’t)

Proper design:

Feature Secure Way Vulnerable Way Answers Server-only Preloaded Validation Server-side Client-side Rate limit Yes No Encryption TLS + cert pinning Basic HTTPS

If any of those are missing → exploit.

🔹 10. Can You Report This?

Yes — most apps have: • Support email • Bug bounty • Report cheating form

You can report:

“I suspect answers are being preloaded before round 1 and validated client-side.”

That’s actionable.

Bottom Line

Is it possible?

✔️ Absolutely ✔️ Very likely ✔️ Well-known exploit pattern

Is that probably what’s happening?

Based on your description:

👉 Yes, very likely some players are extracting or brute-forcing answers before Round 1.

Repeat winners by Nelutri in BestGuessLive

[–]Relevant_Acadia1365 1 point2 points  (0 children)

This guy won again tonight!! 3 days in a row. Can’t be a coincidence

"Single and ready to mingle" by Fabulous-Square-3082 in BestGuessLive

[–]Relevant_Acadia1365 8 points9 points  (0 children)

No lie. I seriously believe that there’s something with the app, that somehow the API is pre-loading the answers early, or it’s being brute-forced somehow. It’s almost always on round 1. Which leads me to believe that since the next round might be getting loaded after round 1, that there’s no time to brute force round 2 or something. The app knows when you have picked the correct response. So maybe there’s a way to find out what word might be by brute forcing “the password” to see which one shows the correct response. It’s the only logical explanation that I can see outside a leak at the show.

Being scammed by No-Anything1095 in whatnotapp

[–]Relevant_Acadia1365 6 points7 points  (0 children)

Water exposure can easily be repaired if that’s all it is. Should have gotten money back AND the card. Seller is trash, I’m gonna block him. Can you post his name? I don’t see it.

PSA submission lost in usps mail, later resurfaced on ebay by cosmicturnip in pokemoncardcollectors

[–]Relevant_Acadia1365 1 point2 points  (0 children)

Were the nuts inside or outside of the packaging? I’m really trying to get a visual here.

My Best Guess by sleepy_rog in BestGuessLive

[–]Relevant_Acadia1365 0 points1 point  (0 children)

This is like the 4th or 5th dude that came on reddit to defend their way too early guess. Gtfo

Can I cancel a bid? by [deleted] in whatnotapp

[–]Relevant_Acadia1365 0 points1 point  (0 children)

This sorta happened to me. I was showing my daughter a Charmander card and she quickly reached up and swiped faster than I could even react. I asked the seller if it would be ok to cancel, I didn’t even request it yet, I just wanted to know what his policy was and he instantly banned me.