mini 🌸
983 posts

mini 🌸
@minisbett
hii, I do lots of stuff for the osu! community ♥️ support me: https://t.co/FRr2a10p2X @aeyriowo 🩷
Hamburg, Germany Katılım Şubat 2021
10 Takip Edilen676 Takipçiler
Sabitlenmiş Tweet

old password: peppy is ranking rates
new password: peak
ERROR: password cannot be the same 😍😍
stupid idoit t@peeholelicker
old password: sniffing her gym socks new password: peak ERROR: password cannot be the same😂😂😂😭😭🚨🚨
English

also saw some 'OSU GACHA DISCORD VERSION PLS' comments lately so mahloola bot is back + here to stay
- server leaderboards
- card trading
- no more downtime probably
mahloola-bot.com
English

@FUMOCUANDOBEBO yup, exactlyyyy. If osu! did not enforce their rules for events/tournaments they officially support, it would be quite a brand risk. This is in place so things like this can be avoided, and people think twice (did not work here) about doing stupid stuff
English
mini 🌸 retweetledi

actually crying at someone making a burner account to leak the vetoers its not that serious just post it on ur main😭
Team Observation@bm6ppysh
hello there. the bn management website on mappers guild website has exposed vetoer identities through its api despite vetoes were intended to be anonymous. up until ~10 hours ago any user could deanonymize every veto by cross referencing two publicly accessible api endpoints. since the hotfix is now in place, vetoer data is now nulled on api requests. but the cat is already out of the box. thank you for playing
English

@minisbett @bm6ppysh Because its fake, nyanaro vetoed wing ny way not dada osu.ppy.sh/beatmapsets/24…
English

hello there. the bn management website on mappers guild website has exposed vetoer identities through its api despite vetoes were intended to be anonymous. up until ~10 hours ago any user could deanonymize every veto by cross referencing two publicly accessible api endpoints. since the hotfix is now in place, vetoer data is now nulled on api requests. but the cat is already out of the box.
thank you for playing

English

@legalizenukez @bm6ppysh ok nvm i just got told how it works, apparently i was fucking blind
English

@legalizenukez @bm6ppysh doubt it, but i genuinely don't know how they associated the names. I had found the vulnerability of veto vote data being exposed on the API endpoint and had reported that to Hivie/pishi, but all you got was a mongodb document id, nothing associated with a username
English

@kippycraft anti cheat at an alltime low, sad state of the game
English














