{"id":4421,"date":"2017-11-20T10:59:00","date_gmt":"2017-11-20T07:59:00","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=4421"},"modified":"2020-05-14T13:58:09","modified_gmt":"2020-05-14T10:58:09","slug":"ifinsec","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/ifinsec\/4421\/","title":{"rendered":"Finans sekt\u00f6r\u00fc BT g\u00fcvenlik konferans\u0131 ve T\u00fcrkiye&#8217;nin konumu"},"content":{"rendered":"<p>Kaspersky Lab olarak g\u00fcvenlikle alakal\u0131 bir\u00e7ok etkinli\u011fe b\u00fcy\u00fck \u00f6nem veriyoruz. Bu y\u00fczden 14 \u2013 15 Kas\u0131m tarihleri aras\u0131nda <a href=\"http:\/\/www.ifinsec.com\/Default.aspx\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">IFINSEC Finans Sekt\u00f6r\u00fc BT G\u00fcvenlik Konferans\u0131 ve Sergisi<\/a>\u2018nin platin sponsoruyduk ve iki konu\u015fmac\u0131 ile kat\u0131ld\u0131k.<\/p>\n<p>Konu finans sekt\u00f6r\u00fc oldu\u011fu i\u00e7in kripto para birimi konferans\u0131n ilgi \u00e7ekici konular\u0131ndan biriydi ancak takip\u00e7ilerimizin daha \u00f6nceki postlar\u0131m\u0131zdan tan\u0131d\u0131\u011f\u0131 K\u00fcresel Ara\u015ft\u0131rma ve Analiz Ekibi (GReAT) \u00fcyemiz <a href=\"https:\/\/twitter.com\/legezo\" target=\"_blank\" rel=\"noopener nofollow\">Denis Legezo<\/a> daha ilgi \u00e7ekici bir konu hakk\u0131nda ger\u00e7ekten enfes bir sunum yapt\u0131.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4432\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20103850\/IMG_50641.jpg\" alt=\"\" width=\"3604\" height=\"2036\"><\/p>\n<p>\u00d6nce siber su\u00e7lar\u0131n do\u011fas\u0131ndan bahseden Legezo, siber sald\u0131r\u0131lar\u0131n %90\u2019\u0131n\u0131n para kazanmak i\u00e7in yap\u0131ld\u0131\u011f\u0131n\u0131 ve geleneksel y\u00f6ntemlerle yap\u0131ld\u0131\u011f\u0131ndan bahsetti. Bu sald\u0131r\u0131lar\u0131n sadece %9.9\u2019u organizasyonlar\u0131 hedef al\u0131rken, %0,1\u2019i hedefli sald\u0131r\u0131lara yani APT\u2019ye (Advanced Persistent Threat) maruz kal\u0131yor.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4422\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20102533\/Screenshot_11.png\" alt=\"\" width=\"1316\" height=\"740\"><\/p>\n<p>2015\u2019te ya\u015fanan Carbanak olay\u0131n\u0131 biliyorsunuz de\u011fil mi? Siber soygun konusunda en bilinen \u00f6rneklerdendir. Ger\u00e7ekten son derece ilgin\u00e7 ve kar\u0131\u015f\u0131k bir olay. Detayl\u0131 bilgi i\u00e7in <a href=\"https:\/\/securelist.com\/the-great-bank-robbery-the-carbanak-apt\/68732\/\" target=\"_blank\" rel=\"noopener\">yaz\u0131m\u0131za<\/a> g\u00f6z atabilirsiniz.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4424\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20102651\/inf_Carbanak_x1280.png\" alt=\"\" width=\"1280\" height=\"800\"><\/p>\n<p>Banka soygunu bu kadar karl\u0131 bir i\u015fken, siber g\u00fcvenlik tarihinde sadece bir tane b\u00fcy\u00fck \u00e7ete olmas\u0131n\u0131 bekleyemezsiniz. Di\u011fer b\u00fcy\u00fck \u00e7etelerden biri de Lazarus\u2019un \u00e7etesinin bir b\u00f6l\u00fcm\u00fc olan Bluenorroff.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4425\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20102841\/Screenshot_31.png\" alt=\"\" width=\"1338\" height=\"754\"><\/p>\n<p>Bluenorroff sadece 2 tane bankaya 30\u2019dan fazla defa sald\u0131rd\u0131.<\/p>\n<p>Peki <a href=\"https:\/\/securelist.com\/lazarus-under-the-hood\/77908\/\" target=\"_blank\" rel=\"noopener\">Lazarus<\/a> kimdir? En son aktiviteleri ne zaman g\u00f6r\u00fcld\u00fc? Lazarus 2014 y\u0131l\u0131nda Sony Pictures\u2019a sald\u0131rd\u0131 ve 2016 y\u0131l\u0131nda da Banglade\u015f Merkez Bankas\u0131n\u0131 soydu. Lazarus\u2019un son aktivitesi de a\u015fa\u011f\u0131daki gibidir.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4426\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20102951\/Screenshot_4.png\" alt=\"\" width=\"1342\" height=\"752\"><\/p>\n<p>Deneme sunucular\u0131yla olan ileti\u015fimine g\u00f6re en son 2018\u2019in Ocak ay\u0131nda aktiftiler. 2 defa VPN \u00fczerinden bir defa da direkt olarak Kuzey Kore\u2019den botunu denedi. Kuzey Kore\u2019nin kapal\u0131 bir \u00fclke oldu\u011funu, VPN hizmeti bulunmad\u0131\u011f\u0131n\u0131 g\u00f6z \u00f6n\u00fcnde bulundurursak, evet Lazarus\u2019un en az bir \u00fcyesi Kuzey Kore\u2019de ve Kuzey Kore h\u00fck\u00fcmeti ile ba\u011flant\u0131s\u0131 var diyebiliriz. Lazarus ekibinin yapt\u0131\u011f\u0131 y\u00fcksek b\u00fct\u00e7eli sald\u0131r\u0131lar\u0131 d\u00fc\u015f\u00fcn\u00fcnce h\u00fck\u00fcmet ba\u011flant\u0131s\u0131 pek \u015fa\u015f\u0131lacak bir olay de\u011fil.<\/p>\n<p>\u015eimdi bu y\u0131l\u0131n May\u0131s ay\u0131na d\u00f6nersek siber d\u00fcnya i\u00e7in en b\u00fcy\u00fck ve \u00f6nemli konu neydi? Evet, WannaCry. Blogumuzdan WannaCry hakk\u0131nda <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/tag\/wannacry\/\" target=\"_blank\" rel=\"noopener\">bir\u00e7ok yaz\u0131 payla\u015ft\u0131k<\/a>. \u00dclkemizde bir\u00e7ok bireysel kullan\u0131c\u0131y\u0131 ve i\u015fletmeyi etkilemi\u015fti. \u00dclkemizde bu kadar \u015fiddetli g\u00f6r\u00fclmesine ra\u011fmen, T\u00fcrkiye en \u00e7ok etkilenen ilk 20 \u00fclke aras\u0131nda bile de\u011fildi.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4427\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20103042\/Screenshot_5.png\" alt=\"\" width=\"1341\" height=\"756\"><\/p>\n<p>Bir Google g\u00fcvenlik ara\u015ft\u0131rmac\u0131s\u0131n\u0131n fark etti\u011fi WannaCry\u2019\u0131n ve Lazarus\u2019un kulland\u0131\u011f\u0131 kodlar\u0131n bu kadar \u00e7ok benzemesi, WannaCry\u2019\u0131n arkas\u0131nda \u00e7ok b\u00fcy\u00fck ihtimalle Lazarus\u2019un oldu\u011funu <a href=\"https:\/\/www.chip.com.tr\/haber\/wannacry-ile-lazarus-group-hakkinda-aciklama-geldi_69573.html\" target=\"_blank\" rel=\"noopener nofollow\">g\u00f6steriyor<\/a>. Sadece biz de\u011fil, ba\u015fka siber g\u00fcvenlik firmalar\u0131 da bizimle ayn\u0131 fikirde.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"tl\" dir=\"ltr\">9c7c7149387a1c79679a87dd1ba755bc @ 0x402560, 0x40F598<br>ac21c8ad899727137c4b94458d7aa8d8 @ 0x10004ba0, 0x10012AA4<a href=\"https:\/\/twitter.com\/hashtag\/WannaCryptAttribution?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#WannaCryptAttribution<\/a><\/p>\n<p>\u2014 Neel Mehta (@neelmehta) <a href=\"https:\/\/twitter.com\/neelmehta\/status\/864164081116225536?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">May 15, 2017<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Yaz\u0131n\u0131n sonlar\u0131na yakla\u015f\u0131rken sizinle biraz T\u00fcrkiye hakk\u0131nda bilgiler payla\u015fmak istiyoruz.<\/p>\n<p>18 Eyl\u00fcl \u2013 17 Ekim aras\u0131ndaki veriye bakarsak, T\u00fcrkiye\u2019deki cihazlar\u0131n %21\u2019ine \u2013 neredeyse be\u015fte birine \u2013 \u00e7\u0131kar\u0131labilir diskler, flash bellekler, a\u011f payla\u015f\u0131mlar\u0131 vs ile zararl\u0131 yaz\u0131l\u0131m bula\u015ft\u0131\u011f\u0131n\u0131 g\u00f6r\u00fcyoruz. As\u0131l e\u011flenceli k\u0131s\u0131m g\u00f6rselin alt\u0131ndaki ini\u015fli \u00e7\u0131k\u0131\u015fl\u0131 tablodaki ini\u015f k\u0131s\u0131mlar\u0131 hafta sonlar\u0131n\u0131 temsil ediyor. Yani insanlar i\u015f bilgisayarlar\u0131na zararl\u0131 yaz\u0131l\u0131m bula\u015ft\u0131rmaya daha meyilli.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4428\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20103138\/Screenshot_6.png\" alt=\"\" width=\"670\" height=\"576\"><\/p>\n<p>Ayn\u0131 tarihler aras\u0131ndaki zararl\u0131 linklere t\u0131klama oran\u0131 ise %10, yani her 10 cihazdan bir tanesine zararl\u0131 yaz\u0131l\u0131mlar linkler arac\u0131l\u0131\u011f\u0131yla bula\u015fm\u0131\u015f veya bula\u015fmay\u0131 denemi\u015f. A\u015fa\u011f\u0131da bulunan g\u00f6rseldeki grafi\u011fin stabil olmamas\u0131 da s\u0131rf i\u015f bilgisayarlar\u0131n\u0131n hatta sadece bilgisayarlar\u0131n de\u011fil, linklere t\u0131klad\u0131\u011f\u0131n\u0131z her cihaz\u0131n tehlikede oldu\u011funu g\u00f6steriyor.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4429\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20103222\/Screenshot_7.png\" alt=\"\" width=\"694\" height=\"591\"><\/p>\n<p>Peki hedefli sald\u0131r\u0131lar T\u00fcrkiye\u2019ye en \u00e7ok nereden geliyor? T\u00fcrkiye\u2019ye en \u00e7ok sald\u0131r\u0131y\u0131 Korece konu\u015fan sald\u0131r\u0131 gruplar\u0131 maddi kazan\u00e7 i\u00e7in yap\u0131yor. Daha sonra \u00c7ince konu\u015fan sald\u0131r\u0131 gruplar\u0131, \u00fc\u00e7\u00fcnc\u00fc s\u0131rada Rus\u00e7a konu\u015fan sald\u0131r\u0131 gruplar\u0131 (ki bu Rus gruplar\u0131n baz\u0131lar\u0131n\u0131n amac\u0131 maddi, baz\u0131lar\u0131 maddi olmayan sebepler), \u0130ngilizce konu\u015fan sald\u0131r\u0131 gruplar\u0131, Orta Do\u011fu\u2019dan sald\u0131ran gruplar ve G\u00fcney Do\u011fu Asya\u2019dan ger\u00e7ekle\u015ftiriliyor.<\/p>\n<p>\u0130\u015fletmenizin, verilerinizin ve cihazlar\u0131n\u0131z\u0131n g\u00fcvende kalmas\u0131n\u0131 sa\u011flayacak birka\u00e7 ipucu;<\/p>\n<ol>\n<li>\u00c7al\u0131\u015fan fark\u0131ndal\u0131\u011f\u0131n\u0131 artt\u0131rmak i\u00e7in e\u011fitim oturumlar\u0131 ve uygulamal\u0131 e\u011fitimler ger\u00e7ekle\u015ftirin. \u00d6rne\u011fin Kaspersky Security Awareness \u00e7\u00f6z\u00fcm\u00fcne g\u00f6z atabilirsiniz. Bu \u00e7\u00f6z\u00fcm, tehditler hakk\u0131nda bir dizi dersten de\u011fil daha \u00e7ok \u00e7al\u0131\u015fanlar\u0131n pratik becerilerini geli\u015ftirebilece\u011fi sald\u0131r\u0131 simulasyonlar\u0131ndan olu\u015fan uygulamal\u0131 al\u0131\u015ft\u0131rmalara dayan\u0131r. (T\u00fcrk\u00e7e bilgi almak i\u00e7in sosyal medya \u00fczerinden bizimle ileti\u015fime ge\u00e7ebilirsiniz.)<\/li>\n<li>\u0130\u015fletmenize y\u00f6nelen fidye yaz\u0131l\u0131mlar\u0131na kar\u015f\u0131 korunmak i\u00e7in <a href=\"https:\/\/kas.pr\/848q\" target=\"_blank\" rel=\"noopener\">\u00fccretsiz fidye yaz\u0131l\u0131m\u0131na kar\u015f\u0131 koruma arac\u0131<\/a>m\u0131z\u0131 indirin.<\/li>\n<li>Di\u011fer sald\u0131r\u0131 t\u00fcrlerine kar\u015f\u0131 da savunmas\u0131z kalmamak i\u00e7in <a href=\"https:\/\/kas.pr\/4k8w\" target=\"_blank\" rel=\"noopener\">kurumsal siber g\u00fcvenlik \u00e7\u00f6z\u00fcmlerimize<\/a> g\u00f6z at\u0131n.<\/li>\n<\/ol>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kartb2b\">\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky Lab olarak g\u00fcvenlikle alakal\u0131 bir\u00e7ok etkinli\u011fe b\u00fcy\u00fck \u00f6nem veriyoruz. Bu y\u00fczden 14 \u2013 15 Kas\u0131m tarihleri aras\u0131nda IFINSEC Finans Sekt\u00f6r\u00fc BT G\u00fcvenlik Konferans\u0131 ve Sergisi\u2019nin platin sponsoruyduk ve iki konu\u015fmac\u0131 ile kat\u0131ld\u0131k.<\/p>\n<p>Konu finans sekt\u00f6r\u00fc oldu\u011fu i\u00e7in kripto para birimi konferans\u0131n ilgi \u00e7ekici konular\u0131ndan biriydi ancak takip\u00e7ilerimizin daha \u00f6nceki postlar\u0131m\u0131zdan tan\u0131d\u0131\u011f\u0131 K\u00fcresel Ara\u015ft\u0131rma ve Analiz Ekibi (GReAT) \u00fcyemiz Denis Legezo daha ilgi \u00e7ekici bir konu hakk\u0131nda ger\u00e7ekten enfes bir sunum yapt\u0131.<\/p>\n","protected":false},"author":706,"featured_media":4430,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1194,1352,1727],"tags":[493,1439,1210,591,1452,1430,1454,1227],"class_list":{"0":"post-4421","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-business","8":"category-special-projects","9":"category-smb","10":"tag-apt","11":"tag-carbanak","12":"tag-denis-legezo","13":"tag-fidye-yazilimi","14":"tag-ifinsec","15":"tag-kaspersky-security-awareness","16":"tag-lazarus","17":"tag-wannacry"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/ifinsec\/4421\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/apt\/","name":"APT"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4421","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/706"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=4421"}],"version-history":[{"count":4,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4421\/revisions"}],"predecessor-version":[{"id":8325,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4421\/revisions\/8325"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/4430"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=4421"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=4421"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=4421"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}