#(+) Exploit Title: WatchDek Social Networking XSRF Vulnerability (Force Delete Victim Inbox) #(+) Author : ^Xecuti0n3r #(+) Date : 7.04.2011 #(+) Hour : 13:37 PM #(+) E-mail : xecutioner()yahoo.com #(+) Category : Web Apps [XSRF] #(+) App website: watchdek.com #All you have to do is save the below code as exploit.html #Then Host a website with the exploit.html file. Any person who visits the website # will see that all the messages in his watchdek inbox is deleted without warning ;) ____________________________________________________________________ ____________________________________________________________________ Code: Watchdek Force Delete Victim Inbox

Watchdek Force Delete Victim Inbox

######################################################################## (+)Exploit Coded by: ^Xecuti0N3r (+)Special Thanks to: MaxCaps, d3M0l!tioN3r, aNnIh!LatioN3r (+)Gr33ts to : -[SiLeNtp0is0n]- , 3thicaln00b, eXes0ul and all Friends at Indian Cyber Army & Indishell Crew ########################################################################