{"id":4437,"date":"2017-11-20T13:55:11","date_gmt":"2017-11-20T10:55:11","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=4437"},"modified":"2019-11-15T14:46:27","modified_gmt":"2019-11-15T11:46:27","slug":"from-ransomware-to-webminers","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/from-ransomware-to-webminers\/4437\/","title":{"rendered":"Fidye yaz\u0131l\u0131mlar\u0131ndan Web madencilerine"},"content":{"rendered":"<p>Art\u0131k yaln\u0131zca teknoloji merakl\u0131lar\u0131n\u0131n uzmanl\u0131k alan\u0131 olmaktan \u00e7\u0131kan kripto para birimleri, s\u0131radan insanlar\u0131n hayat\u0131n\u0131 bu insanlar\u0131n d\u00fc\u015f\u00fcnd\u00fcklerinden \u00e7ok daha fazla etkilemeye ba\u015flad\u0131. Kripto para kullanmasan\u0131z bile bu para birimiyle ilgili sorunlar sizi de etkiliyor.<\/p>\n<h2>Fidye yaz\u0131l\u0131m\u0131<\/h2>\n<p>Bitcoinin ne oldu\u011fu bilmiyor veya bununla ilgilenmiyor olabilirsiniz ancak bir g\u00fcn bir yabanc\u0131 sizi bu paray\u0131 kullanmaya zorlayabilir. Asl\u0131nda kripto para birimleri k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m olu\u015fturucular\u0131n para kazanmas\u0131n\u0131 hi\u00e7 olmad\u0131\u011f\u0131 kadar kolayla\u015ft\u0131rd\u0131.<\/p>\n<p>Be\u015f y\u0131l \u00f6ncesini d\u00fc\u015f\u00fcn\u00fcn. Ge\u00e7mi\u015fte k\u00f6t\u00fc ama\u00e7l\u0131 engelleyiciler kurban\u0131n ekran\u0131nda istenmeyen resimler g\u00f6sterir, sistemlerine ve dosyalar\u0131na eri\u015fimi \u00f6nler ve \u00f6zel bir telefon numaras\u0131na g\u00f6nderilen \u00fccretli SMS mesaj\u0131 \u015feklinde bir fidye isterlerdi.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4439\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20134111\/ransomware-blocker-scr.png\" alt=\"\" width=\"978\" height=\"574\"><\/p>\n<p>Bu durum sald\u0131rganlar i\u00e7in s\u0131k\u0131nt\u0131l\u0131 bir i\u015flemdi. Ba\u015far\u0131l\u0131 olsalar bile paran\u0131n yar\u0131s\u0131n\u0131 telekom \u015firketi al\u0131yordu. Ayr\u0131ca \u00f6zel telefon numaralar\u0131 ve paran\u0131n topland\u0131\u011f\u0131 ilgili hesaplar bloke edilebiliyordu. Son olarak sald\u0131rganlar paray\u0131 nakde \u00e7evirirken polise yakalanma riskini g\u00f6ze almak zorundayd\u0131.<\/p>\n<p>Kripto para birimlerinin hayat\u0131m\u0131za girmesiyle her \u015fey de\u011fi\u015fti. G\u00fcn\u00fcm\u00fczde \u015fifreleyici fidye yaz\u0131l\u0131mlar\u0131 iyi siber g\u00fcvenlik kullanmayan kullan\u0131c\u0131lar\u0131n ba\u015f belas\u0131 haline geldi. Bu t\u00fcr fidye yaz\u0131l\u0131mlar\u0131, kullan\u0131c\u0131 verilerini \u015fifreler ve kripto para biriminde \u00f6denebilir bir fidye ister. Sald\u0131rganlar, ancak \u00f6deme yap\u0131ld\u0131ktan sonra dosyalara eri\u015fimi sa\u011flayan bir \u015fifre \u00e7\u00f6zme anahtar\u0131n\u0131 g\u00f6nderir (bazen de g\u00f6ndermez). Siber tehditler d\u00fcnyas\u0131ndan \u00e7ok uzak olan ki\u015filer bile <a href=\"https:\/\/securelist.com\/wannacry-ransomware-used-in-widespread-attacks-all-over-the-world\/78351\/\" target=\"_blank\" rel=\"noopener\">WannaCry<\/a> yaz\u0131l\u0131m\u0131n\u0131 duymu\u015ftur.<\/p>\n<div id=\"attachment_4440\" style=\"width: 1034px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-4440\" class=\"wp-image-4440 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2017\/11\/20134208\/wannacry-ransom-note.png\" alt=\"\" width=\"1024\" height=\"774\"><p id=\"caption-attachment-4440\" class=\"wp-caption-text\"><a href=\"https:\/\/securelist.com\/a-kings-ransom-it-is-not\/79057\/\" target=\"_blank\" rel=\"noopener\">WannaCry asl\u0131nda bir t\u00fcr wiper (silici)<\/a> olmas\u0131na ra\u011fmen \u015fifreleyici fidye yaz\u0131l\u0131m\u0131 olarak nam sald\u0131.<\/p><\/div>\n<p>Kripto para birimleri muhtemelen sald\u0131rganlara tanr\u0131n\u0131n bir hediyesi gibi g\u00f6r\u00fcnm\u00fc\u015ft\u00fcr: Kazan\u00e7lar\u0131n\u0131 payla\u015facak, c\u00fczdanlar\u0131n\u0131 bloke edecek ve en \u00f6nemlisi paralar\u0131n\u0131 nakde \u00e7evirirken onlar\u0131 yakalayacak hi\u00e7 kimse yok. Bitcoin asl\u0131nda <a href=\"https:\/\/www.kaspersky.com\/blog\/bitcoin-blockchain-issues\/18019\/\" target=\"_blank\" rel=\"noopener nofollow\">anonim bir para birimi de\u011fil<\/a>. Ancak sald\u0131rganlar izlenme korkusu olmadan Monero veya ZCash gibi <a href=\"https:\/\/www.kaspersky.com\/blog\/good-good-blockchain\/19575\/\" target=\"_blank\" rel=\"noopener nofollow\">alternatif kripto para birimleri<\/a>ni kullanabilir.<\/p>\n<p>Paraya \u00e7evirme i\u015flemenin kolayla\u015fmas\u0131 fidye yaz\u0131l\u0131mlar\u0131n\u0131n benzersiz bir \u015fekilde yay\u0131lmas\u0131na yol a\u00e7t\u0131.<\/p>\n<h2>K\u00f6t\u00fc ama\u00e7l\u0131 madencilik uygulamalar\u0131<\/h2>\n<p><a href=\"https:\/\/www.kaspersky.com\/blog\/bitcoin-blockchain-issues\/18019\/\" target=\"_blank\" rel=\"noopener nofollow\">Uzun ve karma\u015f\u0131k hesaplamalar sonucunda kripto para toplama<\/a>n\u0131n bir yolu olan madencilik siber su\u00e7 olarak son derece pop\u00fcler. Truva At\u0131 \u015fifreleyicisinin aksine Truva At\u0131 madencisi hi\u00e7bir \u015feyi \u015fifrelemez. Yaln\u0131zca kurban\u0131n i\u015flemci g\u00fcc\u00fcn\u00fc ve elektri\u011fini kullanarak gizlice <a href=\"https:\/\/securelist.com\/miners-on-the-rise\/81706\/\" target=\"_blank\" rel=\"noopener\">kripto para madencili\u011fi yapmaya ba\u015flar<\/a>. Do\u011frusunu s\u00f6ylemek gerekirse bu senaryo ilkine g\u00f6re \u00e7ok daha iyidir. Bilgisayarlar\u0131 yaln\u0131zca gizli madencilik i\u00e7in kullan\u0131lan ve de\u011ferli verileri \u015fifrelenmeyen <a href=\"https:\/\/www.kaspersky.com\/blog\/is-antivirus-really-dead\/13959\/\" target=\"_blank\" rel=\"noopener nofollow\">korunmas\u0131z kullan\u0131c\u0131lar<\/a> kendilerini \u015fansl\u0131 sayabilir.<\/p>\n<p>Yeri gelmi\u015fken 2017 ay\u0131n\u0131n ilk sekiz ay\u0131nda \u00fcr\u00fcnlerimizin<a href=\"https:\/\/securelist.com\/it-threat-evolution-q3-2017\/83076\/\" target=\"_blank\" rel=\"noopener\"> 1,65 milyon kullan\u0131c\u0131y\u0131 k\u00f6t\u00fc ama\u00e7l\u0131 madencilik uygulamalar\u0131nda korudu\u011funu<\/a> ve y\u0131l sonuna kadar bu rakam\u0131n 2 milyona ula\u015fmas\u0131n\u0131 bekledi\u011fimizi s\u00f6ylemeden ge\u00e7meyelim.<\/p>\n<h2>Web madencili\u011fi<\/h2>\n<p>Becerikli geli\u015ftiriciler <a href=\"https:\/\/torrentfreak.com\/new-utorrent-release-breaks-ties-with-bitcoin-miner-150413\/\" target=\"_blank\" rel=\"noopener nofollow\">yaz\u0131l\u0131mlar\u0131na madencilik uygulamalar\u0131 ekleyerek<\/a> projelerine kaynak bulmaya ba\u015flad\u0131lar ancak madencilik do\u011frudan taray\u0131c\u0131 arac\u0131l\u0131\u011f\u0131yla uygulanmaya ba\u015flay\u0131nca Pandora\u2019n\u0131n kutusu a\u00e7\u0131ld\u0131. Bu geli\u015fmeden sonra her \u015fey kolayla\u015ft\u0131. Art\u0131k kullan\u0131c\u0131lar bir web sitesini ziyaret ettiklerinde taray\u0131c\u0131 bilgisayar\u0131n para madencili\u011fi yapmas\u0131na neden olan bir komut indirebilir ve kullan\u0131c\u0131 da madencilik tuza\u011f\u0131na d\u00fc\u015fm\u00fc\u015f olur.<\/p>\n<p>Bu inovasyon \u00e7evrimi\u00e7i para kazanma doland\u0131r\u0131c\u0131l\u0131\u011f\u0131n\u0131 ciddi anlamda yeniden \u015fekillendirmeye ba\u015flad\u0131. Baz\u0131 web siteleri reklam g\u00f6stermeyi durdurdu ve <a href=\"https:\/\/torrentfreak.com\/the-pirate-bay-website-runs-a-cryptocurrency-miner-170916\/\" target=\"_blank\" rel=\"noopener nofollow\">ziyaret\u00e7ilerinin bilgisayarlar\u0131nda madencilik yaparak para kazanmaya ba\u015flad\u0131<\/a>. Botlar\u0131 filtrelemek i\u00e7in CAPTCHA\u2019lar kullanmak yerine bu botlar\u0131 madencilik i\u00e7in kullanmak daha k\u00e2rl\u0131 olabilir. Ayn\u0131 derecede madencilik yapabiliyorlarsa ziyaret\u00e7inin ger\u00e7ek bir insan veya bot olmas\u0131 hi\u00e7 \u00f6nemli de\u011fildir. Hatta kullan\u0131c\u0131lar\u0131n \u00fccret \u00f6demeden film izlemelerine izin verirken arka planda bilgisayarlar\u0131nda madencilik yapmak \u00e7ok daha k\u00e2rl\u0131 olabilir.<\/p>\n<p>\u0130\u015f burada da bitmiyor. Pop\u00fcler bir kayna\u011f\u0131 hackledikten sonra ziyaret\u00e7ilerin yaz\u0131l\u0131mlar\u0131ndaki g\u00fcvenlik a\u00e7\u0131klar\u0131ndan yararlanmak ve bilgisayarlar\u0131na k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m bula\u015ft\u0131rmaya gerek kalmaz. Neticede her \u015feyin bir \u015fekilde paraya \u00e7evrilmesi gerekir. Hacklenen web sitesine, ziyaret\u00e7ilerin bilgisayarlar\u0131n\u0131 madencilik i\u00e7in kullanmaya zorlayan bir komut y\u00fcklemek \u00e7ok daha kolay ve k\u00e2rl\u0131d\u0131r. Sonu\u00e7 olarak para do\u011frudan hacker\u0131n kripto c\u00fczdan\u0131na gider.<\/p>\n<p>Siber su\u00e7lular en yeni ve en kazan\u00e7l\u0131 y\u00f6nteme ge\u00e7i\u015f yapma konusunda son derece beceriklidir. \u015eimdiden s\u00f6yl\u00fcyorum, muhtemelen gelecek y\u0131l k\u00f6t\u00fc ama\u00e7l\u0131 Web madencilerinin y\u0131l\u0131 olacak. Art\u0131k madencilik, k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m \u00fcreticileri i\u00e7in ak\u0131ll\u0131ca (ve h\u0131zl\u0131) bir para kazanma y\u00f6ntemi.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Art\u0131k yaln\u0131zca teknoloji merakl\u0131lar\u0131n\u0131n uzmanl\u0131k alan\u0131 olmaktan \u00e7\u0131kan kripto para birimleri, s\u0131radan insanlar\u0131n hayat\u0131n\u0131 bu insanlar\u0131n d\u00fc\u015f\u00fcnd\u00fcklerinden \u00e7ok daha fazla etkilemeye ba\u015flad\u0131. Kripto para kullanmasan\u0131z bile bu para birimiyle ilgili sorunlar sizi de etkiliyor.<\/p>\n","protected":false},"author":669,"featured_media":4438,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1351],"tags":[1455,1337,591,1459,1336,1457,36,1458,1456,447,537,1460,553],"class_list":{"0":"post-4437","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-threats","8":"tag-coinhive","9":"tag-cryptocurrencies","10":"tag-fidye-yazilimi","11":"tag-internet-madencileri","12":"tag-kripto-para-birimi","13":"tag-madenci","14":"tag-malware-2","15":"tag-miner","16":"tag-on-goru","17":"tag-ransomware","18":"tag-tehditler","19":"tag-web-miners","20":"tag-zararli-yazilim-2"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/from-ransomware-to-webminers\/4437\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/from-ransomware-to-webminers\/12224\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/from-ransomware-to-webminers\/12063\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/from-ransomware-to-webminers\/14814\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/from-ransomware-to-webminers\/14679\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/from-ransomware-to-webminers\/19186\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/from-ransomware-to-webminers\/20135\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/from-ransomware-to-webminers\/8541\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/from-ransomware-to-webminers\/15281\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/from-ransomware-to-webminers\/18756\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/coinhive\/","name":"coinhive"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4437","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/669"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=4437"}],"version-history":[{"count":3,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4437\/revisions"}],"predecessor-version":[{"id":7003,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/4437\/revisions\/7003"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/4438"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=4437"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=4437"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=4437"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}