"Intercepting" a funscript download from IVDB tokens?

I saw someone on a reddit post say this (but I can’t find the reddit post again) that it was possible to use the token linked scripts from IVDB and have the full script that was downloaded to the handy as a file itself. I can’t seem to find any info on this, but this probably isn’t possible right?

1 Like

Nearly impossible without real hacking.
tokens are never shared with your device. They’re shared with the handy only.
You could in theory setup a man in the middle with the handy but you have some challenges preventing that.

Mainly deep packet inspection requires you to decrypt the internet traffic transparently on your firewall, which won’t work unless you install a custom cert on the handy itself.

I figured as much. Thanks for the detailed reply

This topic was automatically closed 3 days after the last reply. New replies are no longer allowed.