{"id":2386,"date":"2016-09-01T08:23:43","date_gmt":"2016-09-01T12:23:43","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=2386"},"modified":"2020-02-26T18:39:03","modified_gmt":"2020-02-26T15:39:03","slug":"dropbox-hack","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/dropbox-hack\/2386\/","title":{"rendered":"68 Milyon Dropbox hesab\u0131 \u00e7al\u0131nd\u0131 \u2013 bilmeniz gereken her \u015fey burada"},"content":{"rendered":"<p>Haftan\u0131n ba\u015flar\u0131nda i\u015f arkada\u015f\u0131m\u0131z <a href=\"https:\/\/twitter.com\/brokenfuses\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Chris<\/a>, Threatpost\u2019ta Dropbox\u2019\u0131n 2012\u2019den beri parolalar\u0131n\u0131 de\u011fi\u015ftirmemi\u015f kullan\u0131c\u0131lar\u0131 parola de\u011fi\u015ftirmeye <a href=\"https:\/\/threatpost.com\/dropbox-forces-password-reset-for-older-users\/120184\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">zorlamas\u0131<\/a> konusunda bir yaz\u0131 kaleme ald\u0131. Dropbox da bu hareket i\u00e7in \u201dtamamen engelleyici bir tedbir\u201d dedi.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-2387\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2016\/09\/06013945\/dropbox-email-screenshot.png\" alt=\"dropbox-email-screenshot\" width=\"1104\" height=\"900\"><\/p>\n<p>2012\u2019de, Dropbox servisi kullanan kullan\u0131c\u0131lar i\u00e7in spam ve ba\u015f a\u011fr\u0131s\u0131na sebep olan g\u00fcvenlik a\u00e7\u0131\u011f\u0131n\u0131n kurban\u0131 oldu. D\u00f6rt y\u0131l sonra, bu g\u00fcvenlik a\u00e7\u0131\u011f\u0131n\u0131n bilinmeyen taraflar\u0131 Dropbox kullan\u0131c\u0131 kimlikleri \u00e7al\u0131nd\u0131ktan sonra ortaya \u00e7\u0131kt\u0131. Ge\u00e7ti\u011fimiz gece, Motherboard sitesinin yay\u0131nlad\u0131\u011f\u0131 bildiriye g\u00f6re veritabanlar\u0131ndan \u00e7al\u0131nan bilgilerin ticari ama\u00e7l\u0131 sat\u0131lmas\u0131 olay\u0131 ger\u00e7ek, <strong>68 milyondan fazla Dropbox verisi<\/strong> \u00e7al\u0131nd\u0131.<\/p>\n<p>Motherboard g\u00f6nderide Dropbox\u2019a giri\u015f yapan herhangi zararl\u0131 bir hesaba dair ipucu bulunamad\u0131\u011f\u0131n\u0131 belirtti. 68 milyondan fazla hesab\u0131n, tahminen 32 milyonu <a href=\"https:\/\/eksisozluk.com\/bcrypt--2884791\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">bcrypt<\/a> ile; geri kalan\u0131 <a href=\"https:\/\/tr.wikipedia.org\/wiki\/SHA-1\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">SHA-1<\/a> ile korunuyor.<\/p>\n<p><strong>Bu ne anlama geliyor? <\/strong><br>\nMotherboard\u2019\u0131n raporuna g\u00f6re, Dropbox\u2019daki veriler \u015fu an karanl\u0131k internette de\u011fil, b\u00fcy\u00fck ihtimalle parola korumas\u0131 yeteri kadar g\u00fcvenlik sa\u011fl\u0131yor, bu sebeple su\u00e7lular i\u00e7in bu verilerin de\u011feri azal\u0131yor. Durum hakk\u0131ndaki geli\u015fmeler s\u00fcr\u00fcyor, size bu konuyu yak\u0131ndan takip edebilmeniz i\u00e7in Treatpost\u2019u takip etmenizi \u00f6neririm; herhangi bir yenilik olmas\u0131 durumunda h\u0131zl\u0131ca g\u00fcncelleme yap\u0131larak payla\u015f\u0131lacakt\u0131r.<\/p>\n<p><strong>Siz ne yapabilirsiniz?<\/strong><br>\nOlaya d\u0131\u015far\u0131dan bakt\u0131\u011f\u0131m\u0131z zaman, bu olan veri s\u0131z\u0131nt\u0131s\u0131 gittik\u00e7e b\u00fcy\u00fcyen mega sitelerin ba\u015f\u0131na gelen k\u00f6t\u00fc olaylar listesine eklenecek di\u011fer bir madde oldu. Dropbox da <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/linkedin-password-leak\/2094\/\" target=\"_blank\" rel=\"noopener noreferrer\">LinkedIn<\/a>, <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/myspace-tumbler-data-breach\/2150\/\" target=\"_blank\" rel=\"noopener noreferrer\">Myspace<\/a>, <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/myspace-tumbler-data-breach\/2150\/\" target=\"_blank\" rel=\"noopener noreferrer\">Tumblr<\/a>, <a href=\"https:\/\/www.kaspersky.com\/blog\/oh-no-okcupid\/12152\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">OKCupid<\/a>, <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/change-your-spotify-password-again\/2053\/\" target=\"_blank\" rel=\"noopener noreferrer\">Spotify (2 Defa)<\/a> ve di\u011ferlerinin aras\u0131na eklenmi\u015f oldu. Su\u00e7lular hesaplar i\u00e7erisinde de\u011ferli \u015feyler bulabilir, ve biliyoruz ki hackerlar hack yapmaya devam edecekler. Bizler dijital d\u00fcnyan\u0131n vatanda\u015flar\u0131 olarak dijital hayatlar\u0131m\u0131z\u0131 koruma konusunda ak\u0131ll\u0131 olmal\u0131y\u0131z. Herhangi bir b\u00fcy\u00fck veri s\u0131z\u0131nt\u0131s\u0131na kar\u015f\u0131, s\u00fcrekli \u00f6nerdi\u011fimiz 5 tane temel online g\u00fcvenlik ipucumuz var:<br>\n<strong><br>\n1. G\u00fc\u00e7l\u00fc bir parola olu\u015fturun ve s\u0131kl\u0131kla parolalar\u0131n\u0131z\u0131 de\u011fi\u015ftirin.<\/strong> Hepimiz \u015fu konuda ayn\u0131 fikirde miyiz, ayn\u0131 parolay\u0131 4 y\u0131l kullanmak iyi bir fikir de\u011fil, de\u011fil mi? Bunun da \u00f6tesinde, parolan\u0131z hem g\u00fc\u00e7l\u00fc olmal\u0131 hem de hat\u0131rlanmas\u0131 kolay olmal\u0131 (g\u00fc\u00e7l\u00fc parola olu\u015fturma konusunda yard\u0131m i\u00e7in, parola kontrol arac\u0131m\u0131z\u0131 deneyin).<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Also, for tips on creating secure but memorable passwords, please see <a href=\"http:\/\/t.co\/Q6qWwHUF9v\" target=\"_blank\" rel=\"noopener nofollow\">http:\/\/t.co\/Q6qWwHUF9v<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/carphonewarehouse?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#carphonewarehouse<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/Kaspersky?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#Kaspersky<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/securepasswords?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#securepasswords<\/a><\/p>\n<p>\u2014 David Emm (@emm_david) <a href=\"https:\/\/twitter.com\/emm_david\/status\/630678104441253888?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">August 10, 2015<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Ayn\u0131 zamanda \u00f6nemli sitelerdeki parolalar\u0131n\u0131z\u0131 d\u00fczenli olarak de\u011fi\u015ftirmek de \u00f6nemlidir. Online bankac\u0131l\u0131k, Facebook, LinkedIn ve \u015fahsi mailinizi d\u00fc\u015f\u00fcn\u00fcn. E\u011fer hepsi i\u00e7in parola olu\u015fturmak, de\u011fi\u015ftirmek ve akl\u0131n\u0131zda tutmak zor geliyorsa, parolalar i\u00e7in geli\u015ftirdi\u011fimiz <a href=\"https:\/\/www.kaspersky.com\/tr\/password-manager\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Kaspersky Password Manager<\/a>\u2018i deneyebilirsiniz. <\/p>\n<p><strong>2. Eski hesaplar\u0131n\u0131z\u0131 silin.<\/strong> May\u0131s\u2019ta MySpace raporumuzda kendi i\u00e7imizdeki yaz\u0131\u015fmalarda genel olarak \u201dBir saniye, ger\u00e7ekten insanlar hala MySpace kullan\u0131yor mu?\u201d diye sorular soruldu. Hay\u0131r, pek kullanan kalmad\u0131 ama hesaplar\u0131 hala duruyor. \u0130nsanlar 2000\u2019lerin ba\u015flar\u0131nda hesap olu\u015fturdu, daha sonra Twitter ve Facebook gibi inan\u0131lmaz parlayan siteler \u00e7\u0131k\u0131nca eski hesaplar\u0131n\u0131 unuttular. <\/p>\n<p>Yapman\u0131z gereken, e\u011fer bir hesab\u0131 kullanm\u0131yorsan\u0131z o hesaptan kurtulmakt\u0131r. \u00c7\u00fcnk\u00fc e\u011fer o hesab\u0131 kullanm\u0131yorsan\u0131z ve \u015fifrelerinizi d\u00fczenli olarak de\u011fi\u015ftirmiyorsan\u0131z, kendinizi riske at\u0131yorsunuz demektir.<br>\n<strong><br>\n3. Bu arada: Ayn\u0131 parolalar\u0131 kullanmay\u0131n. <\/strong>Yaz\u0131n\u0131n buraya kadar olan k\u0131sm\u0131nda birka\u00e7 defa belirtti\u011fimiz gibi, kendi ayr\u0131 maddesini hakeden bir konu. Ayn\u0131 parolay\u0131 tekrar kullanmay\u0131n. Evet, eminiz ki sizin i\u00e7in \u00e7ok daha kolayd\u0131r ama pepe tart\u0131\u015fma platformuna \u00fcye olmak i\u00e7in kulland\u0131\u011f\u0131n\u0131z parolan\u0131z \u00e7al\u0131n\u0131rsa, banka hesab\u0131n\u0131za eri\u015filebilir. <\/p>\n<p><strong>4. \u0130ki a\u015famal\u0131 onay\u0131 aktif edin.<\/strong> Bir\u00e7ok online servis kullan\u0131c\u0131lara <a href=\"https:\/\/www.kaspersky.com\/blog\/multi-factor-authentication\/9669\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">iki a\u015famal\u0131 onay<\/a> imkan\u0131 sunuyor. Bu sistem hesaba girmeye \u00e7al\u0131\u015fan kullan\u0131c\u0131lar\u0131 ya cep telefonu uygulamas\u0131 ile ya da SMS yoluyla  do\u011fruluyor. (Not: Dropbox\u2019\u0131n da bu \u00f6zelli\u011fi var.)<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">What is two-factor authentication and where should you enable it? <a href=\"http:\/\/t.co\/WSvDc9oSvb\" target=\"_blank\" rel=\"noopener nofollow\">http:\/\/t.co\/WSvDc9oSvb<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/passwords?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#passwords<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/privacy?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#privacy<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/security?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#security<\/a><\/p>\n<p>\u2014 Kaspersky (@kaspersky) <a href=\"https:\/\/twitter.com\/kaspersky\/status\/476019700636614656?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">June 9, 2014<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><strong>5. \u00dc\u00e7\u00fcnc\u00fc parti izinlerine dikkat edin.<\/strong> Bir\u00e7ok online servis, mesela Facebook ve Dropbox, \u00fc\u00e7\u00fcnc\u00fc parti servislere ba\u011flanarak extra \u00f6zellikler sunuyor, mesela arkada\u015flar\u0131n\u0131zda oyun oynayabiliyor ya da yar\u0131\u015fabiliyorsunuz. Bu \u00fc\u00e7\u00fcnc\u00fc parti servisleri genellikle hayatlar\u0131m\u0131z\u0131 kolayla\u015ft\u0131r\u0131yor (Ayn\u0131 zamanda \u2018Facebook ile oturum a\u00e7\u2019 gibi se\u00e7enekler de oldu\u011fu i\u00e7in, parola hat\u0131rlama zahmetine katlanm\u0131yorsunuz). Ama olay\u0131n \u00f6teki boyutu ise, bu kolay kullan\u0131m konu g\u00fcvenli\u011fe geldi\u011fi zaman potansiyel tehdite d\u00f6n\u00fc\u015f\u00fcyor.<\/p>\n<p>Servislere ba\u011flanmadan \u00f6nce tekrar d\u00fc\u015f\u00fcn\u00fcn. Ger\u00e7ekten Facebook ile ba\u011flanman\u0131z gerekli mi \u2013 yoksa yeni bir hesap a\u00e7man\u0131z m\u0131 daha sa\u011fl\u0131kl\u0131 olur? <\/p>\n<p>Son olarak, Dropbox olay\u0131 su\u00e7lular\u0131n dijital kimliklere yapt\u0131\u011f\u0131 sald\u0131r\u0131lar, g\u00f6zlerimizi a\u00e7mam\u0131z i\u00e7in iyi bir \u00f6rnek. Herkese \u0131srarla yukar\u0131da bulunan ipu\u00e7lar\u0131n\u0131 d\u00fczenli olarak uygulamas\u0131n\u0131 \u00f6neriyoruz. Evimizin kap\u0131s\u0131nda nas\u0131l kilit varsa ve g\u00fcvenlik sistemlerinin \u00f6nemini biliyorsak, dijital hayat\u0131m\u0131z i\u00e7in de ayn\u0131 \u015fekilde hassas olmal\u0131y\u0131z. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Haftan\u0131n ba\u015flar\u0131nda i\u015f arkada\u015f\u0131m\u0131z Chris, Threatpost\u2019ta Dropbox\u2019\u0131n 2012\u2019den beri parolalar\u0131n\u0131 de\u011fi\u015ftirmemi\u015f kullan\u0131c\u0131lar\u0131 parola de\u011fi\u015ftirmeye zorlamas\u0131 konusunda bir yaz\u0131 kaleme ald\u0131. Dropbox da bu hareket i\u00e7in \u201dtamamen engelleyici bir tedbir\u201d dedi.<\/p>\n","protected":false},"author":636,"featured_media":2388,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1287,1284,1351],"tags":[18,986,545,519,985,677,851],"class_list":{"0":"post-2386","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-news","8":"category-tips","9":"category-threats","10":"tag-dropbox","11":"tag-guvenlik-sizintisi","12":"tag-hack","13":"tag-ipuclari-2","14":"tag-leak","15":"tag-oneri","16":"tag-sizinti"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/dropbox-hack\/2386\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/dropbox-hack\/7588\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/dropbox-hack\/7614\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/dropbox-hack\/7604\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/dropbox-hack\/9011\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/dropbox-hack\/8875\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/dropbox-hack\/12933\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/dropbox-hack\/12875\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/dropbox-hack\/6022\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/dropbox-hack\/6521\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/dropbox-hack\/5324\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/dropbox-hack\/8563\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/dropbox-hack\/12403\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/dropbox-hack\/12933\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/dropbox-hack\/12875\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/dropbox-hack\/12875\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/dropbox\/","name":"dropbox"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/2386","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/636"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=2386"}],"version-history":[{"count":3,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/2386\/revisions"}],"predecessor-version":[{"id":7838,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/2386\/revisions\/7838"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/2388"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=2386"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=2386"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=2386"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}