<?xml version="1.0" encoding="UTF-8" standalone="yes"?><oembed><version><![CDATA[1.0]]></version><provider_name><![CDATA[Ascender: The Blog]]></provider_name><provider_url><![CDATA[https://ascendergame.wordpress.com]]></provider_url><author_name><![CDATA[Ascender The Game]]></author_name><author_url><![CDATA[https://ascendergame.wordpress.com/author/ascenderthegame/]]></author_url><title><![CDATA[DEVLOG#03 &#8211; Hackers Gonna Hack Hack&nbsp;Hack]]></title><type><![CDATA[link]]></type><html><![CDATA[<p>Ascenderians!</p>
<p>I&#8217;m Garnet who take charge in story and web development. The most annoying thing for me just happened this week. Our website <a href="http://www.ascenderthegame.com" rel="nofollow">http://www.ascenderthegame.com</a> has been hacked twice in two days by some irresponsible hacker groups.</p>
<div data-shortcode="caption" id="attachment_27" style="width: 1376px" class="wp-caption aligncenter"><a href="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png"><img loading="lazy" aria-describedby="caption-attachment-27" data-attachment-id="27" data-permalink="https://ascendergame.wordpress.com/2015/09/03/hackers-gonna-hack-hack-hack/ascender_original/" data-orig-file="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png" data-orig-size="1366,643" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="Original Web Screenshot" data-image-description="&lt;p&gt;The original Ascender The Game Home Site. Before it was hacked.&lt;/p&gt;
" data-image-caption="&lt;p&gt;How the web supposed to show&lt;/p&gt;
" data-medium-file="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=300" data-large-file="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=1024" class="wp-image-27 size-full" src="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=1366&#038;h=643" alt="Original Web Screen Shot" width="1366" height="643" srcset="https://ascendergame.files.wordpress.com/2015/09/ascender_original.png 1366w, https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=150&amp;h=71 150w, https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=300&amp;h=141 300w, https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=768&amp;h=362 768w, https://ascendergame.files.wordpress.com/2015/09/ascender_original.png?w=1024&amp;h=482 1024w" sizes="(max-width: 1366px) 100vw, 1366px" /></a><p id="caption-attachment-27" class="wp-caption-text">How the web supposed to show</p></div>
<p>First attack was identified by Citrine, Lead Sound Design and Marketing, after he got a report from Australian named Zack in Indie Game Marketing Facebook Group on Tuesday, 1 September 2015, at 6.15 in the morning. I already woke up in that time, read LINE message from Citrine and he sent me the hacked web screenshot. The first hackers launched a Defacing Attack!</p>
<div data-shortcode="caption" id="attachment_28" style="width: 670px" class="wp-caption aligncenter"><a href="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png"><img loading="lazy" aria-describedby="caption-attachment-28" data-attachment-id="28" data-permalink="https://ascendergame.wordpress.com/2015/09/03/hackers-gonna-hack-hack-hack/ascender-1st-time-hacked/" data-orig-file="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png" data-orig-size="1019,587" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="Ascender 1st time hacked" data-image-description="&lt;p&gt;Ascender The Game Home Site is being hacked by someone with a codename xr00tx!&lt;/p&gt;
" data-image-caption="&lt;p&gt;The First Defacing Attack on Ascender The Game Home Site&lt;/p&gt;
" data-medium-file="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=300" data-large-file="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=1019" class="size-full wp-image-28" src="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=660&#038;h=380" alt="1st time hacked site" width="660" height="380" srcset="https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=660&amp;h=380 660w, https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=150&amp;h=86 150w, https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=300&amp;h=173 300w, https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png?w=768&amp;h=442 768w, https://ascendergame.files.wordpress.com/2015/09/ascender-1st-time-hacked.png 1019w" sizes="(max-width: 660px) 100vw, 660px" /></a><p id="caption-attachment-28" class="wp-caption-text">The First Defacing Attack on Ascender The Game Home Site</p></div>
<p>In a second, I checked our administrator area in the site, I try to make things right and make the home page right but I didn&#8217;t notice that our first devlog already defaced too. I analyzed this attack, it&#8217;s not really a harmful attack because its only change the look in our website, anything else (files,codes,images) was completely safe, so I replace the index file and modify .htaccess back to normal. But, I suspected they already put a backdoor (that are related to the next attack).  I tried to track down the hackers and in a short time with our networking (friends of friends of friends) + IP tracker tools, we found out the suspect who responsible for defacing our website.</p>
<div data-shortcode="caption" id="attachment_30" style="width: 273px" class="wp-caption aligncenter"><a href="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png"><img loading="lazy" aria-describedby="caption-attachment-30" data-attachment-id="30" data-permalink="https://ascendergame.wordpress.com/2015/09/03/hackers-gonna-hack-hack-hack/1st_hacker/" data-orig-file="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png" data-orig-size="263,350" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="1st_Hacker" data-image-description="&lt;p&gt;The man was under Game Changer Team radar of suspect because the same code name that he post in social media&lt;/p&gt;
" data-image-caption="&lt;p&gt;Suspect of first attack on Ascender The Game website in social media&lt;/p&gt;
" data-medium-file="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png?w=225" data-large-file="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png?w=263" class="size-full wp-image-30" src="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png?w=263&#038;h=350" alt="first hacker social media account" width="263" height="350" srcset="https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png 263w, https://ascendergame.files.wordpress.com/2015/09/1st_hacker.png?w=113&amp;h=150 113w" sizes="(max-width: 263px) 100vw, 263px" /></a><p id="caption-attachment-30" class="wp-caption-text">Suspect of first attack on Ascender The Game website in social media</p></div>
<p>Then, 2nd attack happened in Tuesday evening! This attack is stronger than before. They not only took the page of our web, but also delete all the files in our server! Mother Father! Holy Ship! Football Club of United Kingdom!</p>
<div data-shortcode="caption" id="attachment_31" style="width: 670px" class="wp-caption aligncenter"><a href="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg"><img loading="lazy" aria-describedby="caption-attachment-31" data-attachment-id="31" data-permalink="https://ascendergame.wordpress.com/2015/09/03/hackers-gonna-hack-hack-hack/11954703_10204915739002329_3347036929641991746_n/" data-orig-file="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg" data-orig-size="960,519" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="11954703_10204915739002329_3347036929641991746_n" data-image-description="&lt;p&gt;The 2nd Attack Screenshot on Ascender The Game Website&lt;/p&gt;
" data-image-caption="&lt;p&gt;The 2nd Attack Screenshot on Ascender The Game Website&lt;/p&gt;
" data-medium-file="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=300" data-large-file="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=960" class="size-full wp-image-31" src="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=660&#038;h=357" alt="The 2nd Attack Screenshot on Ascender The Game Website" width="660" height="357" srcset="https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=660&amp;h=357 660w, https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=150&amp;h=81 150w, https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=300&amp;h=162 300w, https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?w=768&amp;h=415 768w, https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg 960w" sizes="(max-width: 660px) 100vw, 660px" /></a><p id="caption-attachment-31" class="wp-caption-text">The 2nd Attack Screenshot on Ascender The Game Website</p></div>
<p>After took off from my prime job and got home, I worked on this attack long enough. I&#8217;ve been able to track 4 IPs that are inject some scripts in our web, 2 from Jakarta, 1 from Palembang, and another 1 from East Java. When I was in the administrative mode, they were active also, so I can easily track down the activities and put a bait to know where the hole of our system. I made some backups, took off their shell (hacker) script, and made up some script as a bait.</p>
<p>Guess what??? The hole has been found, they were using our less secure devlog (original devlog) that has been using hosted WordPress. We decided to move the devlog to <a href="http://www.wordpress.com" rel="nofollow">http://www.wordpress.com</a> that a way more secure and reliable than hosted WordPress (in fact, it is because that we only know less about hosted WordPress security, but no doubt with its engine). And, here we are at the new devlog of Ascender The Game! The main website <a href="http://www.ascenderthegame.com" rel="nofollow">http://www.ascenderthegame.com</a> is secured and safe at least for now! Cheerio 🙂</p>
<p>Signing out from Game Changer Team Headquarters! See you in the next story!</p>
<p>Garnet</p>
]]></html><thumbnail_url><![CDATA[https://ascendergame.files.wordpress.com/2015/09/11954703_10204915739002329_3347036929641991746_n.jpg?fit=440%2C330]]></thumbnail_url><thumbnail_width><![CDATA[440]]></thumbnail_width><thumbnail_height><![CDATA[238]]></thumbnail_height></oembed>