{"id":10788,"date":"2022-06-23T15:15:23","date_gmt":"2022-06-23T12:15:23","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=10788"},"modified":"2022-06-23T15:15:23","modified_gmt":"2022-06-23T12:15:23","slug":"initial-access-market-2022","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/initial-access-market-2022\/10788\/","title":{"rendered":"\u0130lk eri\u015fim piyasas\u0131 analizi"},"content":{"rendered":"<p>Medyada bir \u015firketin fidye yaz\u0131l\u0131m\u0131 sald\u0131r\u0131s\u0131na u\u011frad\u0131\u011f\u0131na dair haberler yer ald\u0131\u011f\u0131nda bir\u00e7ok ki\u015finin kafas\u0131nda kurnaz hacker\u2019lar\u0131n \u00f6nce tehlikeli bir k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m yazd\u0131\u011f\u0131, ard\u0131ndan uzun uzun \u015firketi hacklemenin yollar\u0131n\u0131 arad\u0131\u011f\u0131 ve nihayet gizli verilerini \u015fifreledi\u011fi bir senaryo canlan\u0131r. Bu y\u00fczden baz\u0131 i\u015fletme sahipleri hala kendi \u015firketlerinin hacklenmek i\u00e7in bunca kaynak ay\u0131rmaya de\u011fecek kadar ilgi \u00e7ekici olmad\u0131\u011f\u0131n\u0131 d\u00fc\u015f\u00fcn\u00fcr.<\/p>\n<p>Ger\u00e7ekte ise i\u015fler \u00e7ok farkl\u0131d\u0131r. Asl\u0131nda modern bir sald\u0131rgan, k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m\u0131 kendisi yazmaz, kiralar. Hacklemek i\u00e7in de kaynak harcamaz, sadece ilk eri\u015fim komisyoncular\u0131ndan olu\u015fan yasa d\u0131\u015f\u0131 piyasaya g\u00f6z atar. Dijital Ayak \u0130zi \u0130stihbarat Servisi\u2019mizdeki uzmanlar, siber su\u00e7lular \u015firket altyap\u0131lar\u0131na eri\u015fim al\u0131p satarken ne kadar paran\u0131n el de\u011fi\u015ftirdi\u011fini bulmaya karar verdi.<\/p>\n<h2>Eri\u015fim ne kadar tutuyor?<\/h2>\n<p>Peki, sald\u0131rganlar altyap\u0131n\u0131za eri\u015fim sat\u0131n al\u0131rken ne kadar para \u00f6d\u00fcyor? Bu pek \u00e7ok fakt\u00f6re ba\u011fl\u0131 olsa da, bu fakt\u00f6rlerden en \u00f6nemlisi \u015firketinizin kazanc\u0131. Uzmanlar\u0131m\u0131z darknet\u2019te iki y\u00fcz\u00fcn \u00fcst\u00fcnde reklam ilan\u0131n\u0131 analiz ettikten sonra a\u015fa\u011f\u0131daki sonu\u00e7lara vard\u0131:<\/p>\n<ul>\n<li>Reklamlar\u0131n \u00e7o\u011fu k\u00fc\u00e7\u00fck \u015firketlere eri\u015fim sunuyor;<\/li>\n<li>reklamlar\u0131n neredeyse yar\u0131s\u0131 1000 USD\u2019nin alt\u0131nda \u00fccretle eri\u015fim sunuyor;<\/li>\n<li>eri\u015fimin 5000 USD \u00fcst\u00fcnde \u00fccretle sat\u0131ld\u0131\u011f\u0131 \u00f6rneklere \u00e7ok nadir rastlan\u0131yor;<\/li>\n<li>b\u00fcy\u00fck \u015firketlere eri\u015fimin ortalama maliyeti 2000 ila 4000 USD aras\u0131nda de\u011fi\u015fiyor.<\/li>\n<\/ul>\n<p>Bunlar kesinlikle b\u00fcy\u00fck paralar de\u011fil. Fidye yaz\u0131l\u0131m\u0131 operat\u00f6rleri \u015fantajla bundan \u00e7ok daha fazlas\u0131n\u0131 kazanmay\u0131 bekledikleri i\u00e7in, ilk giri\u015fime bu kadar harcama yapmaktan ka\u00e7\u0131nm\u0131yorlar. Bu piyasa fiyatlar\u0131, organik arz-talep dengesi ve yayg\u0131n olarak bilinen sat\u0131n alma g\u00fcc\u00fcyle belirlenmi\u015f gibi g\u00f6r\u00fcn\u00fcyor.<\/p>\n<h2>Neler sat\u0131l\u0131yor?<\/h2>\n<p>Sald\u0131rganlar farkl\u0131 t\u00fcrlerde eri\u015fim sunuyor. Bazen eri\u015fim i\u00e7in k\u00f6t\u00fcye kullan\u0131labilecek bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 hakk\u0131nda bilgi verirken bazen de Citrix\u2019e ya da sitenin bar\u0131nd\u0131rma paneline giri\u015f i\u00e7in kimlik bilgilerini sat\u0131yorlar. Ancak \u00f6rneklerin b\u00fcy\u00fck \u00e7o\u011funlu\u011fu (reklamlar\u0131n %75\u2019inden fazlas\u0131) RDP arac\u0131l\u0131\u011f\u0131yla (bazen bir VPN ile birlikte) bir \u00e7e\u015fit eri\u015fim sunuyorlar. Dolay\u0131s\u0131yla \u015firketin altyap\u0131s\u0131na y\u00f6nelik bu uzaktan eri\u015fim opsiyonu kar\u015f\u0131s\u0131nda \u00e7ok dikkatli olunmal\u0131.<\/p>\n<h2>K\u00f6t\u00fc adamlar eri\u015fimi nas\u0131l ele ge\u00e7iriyor?<\/h2>\n<p>\u0130lk eri\u015fimi ele ge\u00e7irmenin bir\u00e7ok yolu var. Bazen siber su\u00e7lular en basit yol olan parola madencili\u011fini kullan\u0131yor. Ancak \u00e7o\u011funlukla \u00e7al\u0131\u015fanlara kimlik av\u0131 e-postalar\u0131 veya k\u00f6t\u00fc ama\u00e7l\u0131 ekler (\u00f6rne\u011fin casus yaz\u0131l\u0131mlar ya da vir\u00fcsl\u00fc cihazlardan otomatik olarak kimlik bilgisi, yetkilendirme belirteci \u00e7erez vb. toplayan \u00e7alma yaz\u0131l\u0131mlar\u0131) i\u00e7eren e-postalar g\u00f6nderiyorlar. Sald\u0131rganlar bazen de yaz\u0131l\u0131mlarda bilinen g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 y\u00f6neticiler yama yay\u0131nlamadan \u00f6nce k\u00f6t\u00fcye kullanabiliyor.<\/p>\n<p>\u00c7al\u0131\u015fman\u0131n ayr\u0131nt\u0131l\u0131 sonu\u00e7lar\u0131n\u0131 ger\u00e7ek ilk eri\u015fim \u00f6rnekleriyle birlikte <a href=\"https:\/\/securelist.com\/initial-access-data-price-on-the-dark-web\/106740\/\" target=\"_blank\" rel=\"noopener\">Securelist web sitesindeki raporda<\/a> bulabilirsiniz.<\/p>\n<h2>Kendinizi koruman\u0131n yollar\u0131<\/h2>\n<p>En \u00e7ok sat\u0131lan \u015fey bir \u015firketin altyap\u0131s\u0131na RDP arac\u0131l\u0131\u011f\u0131yla eri\u015fim oldu\u011fu i\u00e7in her \u015feyden \u00f6nce buna kar\u015f\u0131 koruma geli\u015ftirilmeli. Uzmanlar\u0131m\u0131z a\u015fa\u011f\u0131daki tavsiyeleri veriyor:<\/p>\n<ul>\n<li>RDP eri\u015fimini yaln\u0131zca VPN \u00fczerinden d\u00fczenleyin;<\/li>\n<li>g\u00fc\u00e7l\u00fc parolalar kullan\u0131n;<\/li>\n<li>A\u011f D\u00fczeyinde Kimlik Do\u011frulama kullan\u0131n (m\u00fcmk\u00fcnse);<\/li>\n<li>t\u00fcm kritik hizmetler i\u00e7in iki fakt\u00f6rl\u00fc kimlik do\u011frulama kullan\u0131n.<\/li>\n<\/ul>\n<p>Parolalar\u0131n kimlik av\u0131yla s\u0131zd\u0131r\u0131lma olas\u0131l\u0131\u011f\u0131n\u0131 azaltmak i\u00e7in hem \u00e7al\u0131\u015fan cihazlar\u0131nda hem de e-posta a\u011f ge\u00e7idi d\u00fczeyinde kimlik av\u0131 \u00f6nleme motoruna sahip g\u00fcvenilir <a href=\"https:\/\/www.kaspersky.com.tr\/small-to-medium-business-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">g\u00fcvenlik \u00e7\u00f6z\u00fcmleri<\/a> kullanman\u0131z\u0131 da \u00f6neririz. G\u00fcvende kalmak i\u00e7in d\u00fczenli aral\u0131klarla <a href=\"https:\/\/k-asap.com\/tr\/?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______&amp;utm_source=kdaily&amp;utm_medium=blog&amp;utm_campaign=tr_wpplaceholder_nv0092&amp;utm_content=link&amp;utm_term=tr_kdaily_organic_avmwswubv8qh92b\" target=\"_blank\" rel=\"noopener\">\u00e7al\u0131\u015fanlar\u0131n\u0131z\u0131n siber g\u00fcvenlik fark\u0131ndal\u0131\u011f\u0131n\u0131 artt\u0131r\u0131n<\/a>.<\/p>\n<p>Ayr\u0131ca birilerinin halihaz\u0131rda darknet\u2019ye sizin \u015firketinizin altyap\u0131s\u0131na eri\u015fmenin yollar\u0131n\u0131 tart\u0131\u015f\u0131p tart\u0131\u015fmad\u0131\u011f\u0131n\u0131 bulmak da \u00e7ok i\u015finize yarayabilir, dolay\u0131s\u0131yla bu t\u00fcr aktiviteleri izlemeniz de \u00f6nerilir. <a href=\"https:\/\/www.kaspersky.com.tr\/enterprise-security\/threat-intelligence?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">Dijital Ayak \u0130zi \u0130stihabarat\u0131<\/a> hizmetimiz bu t\u00fcr izlemeler ger\u00e7ekle\u015ftiriyor.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Uzmanlar\u0131m\u0131z kurumsal altyap\u0131lara ilk eri\u015fime y\u00f6nelik yasad\u0131\u015f\u0131 piyasay\u0131 ara\u015ft\u0131rd\u0131.<\/p>\n","protected":false},"author":700,"featured_media":10789,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194],"tags":[2364,1243,537],"class_list":{"0":"post-10788","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"tag-darknet","10":"tag-erisim","11":"tag-tehditler"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/initial-access-market-2022\/10788\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/initial-access-market-2022\/24281\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/initial-access-market-2022\/19754\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/initial-access-market-2022\/9989\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/initial-access-market-2022\/26622\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/initial-access-market-2022\/24564\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/initial-access-market-2022\/24941\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/initial-access-market-2022\/27300\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/initial-access-market-2022\/26868\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/initial-access-market-2022\/33341\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/initial-access-market-2022\/44659\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/initial-access-market-2022\/19049\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/initial-access-market-2022\/19602\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/initial-access-market-2022\/28899\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/initial-access-market-2022\/28326\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/initial-access-market-2022\/25129\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/initial-access-market-2022\/30633\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/initial-access-market-2022\/30382\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/erisim\/","name":"eri\u015fim"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/10788","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/700"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=10788"}],"version-history":[{"count":1,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/10788\/revisions"}],"predecessor-version":[{"id":10790,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/10788\/revisions\/10790"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/10789"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=10788"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=10788"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=10788"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}