Roll20-cheat-dice Site
This report examines technical vulnerabilities and common exploits associated with "roll20-cheat-dice," specifically focusing on client-side manipulation of the Roll20 virtual tabletop platform. Overview of Exploits
Several community-developed projects on platforms like GitHub demonstrate these vulnerabilities for educational or illustrative purposes: roll20-cheat-dice
: Some exploits allow players to "throw away" unfavorable rolls before they are finalized. Since the client reports the final result to the game log, a player can repeatedly roll until a desired number is generated, then only permit that specific packet to reach the server. roll20-cheat-dice
: A showcase repository illustrating how to hijack WebSocket objects to modify client-side dice results. roll20-cheat-dice