{"id":5507,"date":"2018-12-26T18:11:26","date_gmt":"2018-12-26T15:11:26","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=5507"},"modified":"2019-11-15T14:34:58","modified_gmt":"2019-11-15T11:34:58","slug":"phishing-spam-hooks","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/phishing-spam-hooks\/5507\/","title":{"rendered":"\u00c7evrimi\u00e7i doland\u0131r\u0131c\u0131l\u0131k En yayg\u0131n 5 istenmeyen e-posta hilesi"},"content":{"rendered":"<p>\u0130stenmeyen e-postalar ve kimlik av\u0131 sald\u0131r\u0131lar\u0131 genellikle birlikte kullan\u0131l\u0131r: Doland\u0131r\u0131c\u0131lar, ki\u015filerden bilgi \u00e7almak i\u00e7in toplu e-postalar g\u00f6nderir. Hem s\u00fcrekli olarak bas\u0131nda yer alan haberler hem de kendi istenmeyen e-posta ak\u0131\u015f analizlerimiz taraf\u0131ndan teyit edildi\u011fi \u00fczere doland\u0131r\u0131c\u0131lar i\u00e7in kullan\u0131c\u0131lar\u0131n ki\u015fisel bilgileri \u00e7ok de\u011ferli ve elde edilmesi arzu edilen verilerdir. \u0130stenmeyen e-postalar\u0131n genel amac\u0131, e-posta kimlik av\u0131 ve sosyal m\u00fchendislik teknikleri ile hesaplar\u0131n\u0131za veya banka kart\u0131 numaralar\u0131n\u0131za eri\u015fmektir.<\/p>\n Bu yaz\u0131da, doland\u0131r\u0131c\u0131lar taraf\u0131ndan en \u00e7ok kullan\u0131lan be\u015f hileyi ele alaca\u011f\u0131z.\n<p>\u00a0<\/p>\n<h2>1. Sosyal a\u011flardan gelen sahte bildirimler<\/h2>\n<p>Doland\u0131r\u0131c\u0131lar, pop\u00fcler sosyal a\u011flardan gelmi\u015f gibi g\u00f6r\u00fcnen ve yeni arkada\u015flar, bunlar\u0131n etkinlikleri, yorumlar\u0131, be\u011fenileri gibi konular hakk\u0131ndaki sahte bildirimleri aktif olarak g\u00f6nderir. Bu t\u00fcr mesajlar genellikle ger\u00e7eklerinden ay\u0131rt edilemez. Tek fark, \u00e7o\u011funlukla tespit edilmesi kolay olmayan kimlik av\u0131 ba\u011flant\u0131lar\u0131 i\u00e7ermeleridir. Ba\u011flant\u0131y\u0131 takip eden kullan\u0131c\u0131dan, kullan\u0131c\u0131 ad\u0131n\u0131 ve \u015fifresini sahte bir oturum a\u00e7ma sayfas\u0131na girmesi istenir.<\/p>\n<p>Bir di\u011fer yayg\u0131n kullan\u0131m ise s\u00f6zde sosyal a\u011flardan gelen ve \u00f6rne\u011fin hesab\u0131n\u0131zda \u015f\u00fcpheli bir etkinli\u011fin tespit edildi\u011fini veya yeni bir \u00f6zelli\u011fin kullan\u0131ma sunuldu\u011funu ve \u015fartlar\u0131 onaylamayan kullan\u0131c\u0131lar\u0131n hesaplar\u0131n\u0131n engellenece\u011fi tehdidini i\u00e7eren mesajlard\u0131r. Durum ne olursa olsun, mesajda kimlik av\u0131 giri\u015f sayfas\u0131n\u0131n ba\u011flant\u0131s\u0131na sahip bir d\u00fc\u011fme yer al\u0131r.<\/p>\n<div id=\"attachment_5509\" style=\"width: 1012px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5509\" class=\"wp-image-5509 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2018\/12\/21205633\/phishing-spam-hooks-screen1.png\" alt=\"\" width=\"1002\" height=\"604\"><p id=\"caption-attachment-5509\" class=\"wp-caption-text\">Kimlik h\u0131rs\u0131zlar\u0131n\u0131n en pop\u00fcler hileleri: Sosyal a\u011flardan gelen sahte bildirimler<\/p><\/div>\n<p>\u00a0<\/p>\n<h2>2. Bankac\u0131l\u0131k kimlik av\u0131<\/h2>\n<p>Kullan\u0131c\u0131lar\u0131n banka kart\u0131 bilgilerini \u00e7almay\u0131 ama\u00e7layan kimlik av\u0131 sald\u0131r\u0131lar\u0131 hala en pop\u00fcler doland\u0131r\u0131c\u0131l\u0131k t\u00fcr\u00fcd\u00fcr. Sahte mesajlar, banka veya \u00f6deme sistemleri ad\u0131na g\u00f6nderilebilir. En yayg\u0131n mesaj konular\u0131, m\u00fc\u015fterinin ki\u015fisel hesab\u0131n\u0131n engellenmesi veya hesapta \u201c\u015f\u00fcpheli hareket\u201d tespit edilmesi ile ilgilidir.<\/p>\n<p>Hesaba eri\u015fimin yeniden sa\u011flanmas\u0131, kimlik bilgilerinin onaylanmas\u0131 veya yap\u0131lan i\u015flemin iptali bahanesiyle kullan\u0131c\u0131dan sahte banka web sitesine banka kart\u0131 bilgilerini (genellikle CVV\/CVC kodu dahil) girmesi istenir. Bu bilgiler al\u0131nd\u0131\u011f\u0131nda, doland\u0131r\u0131c\u0131lar derhal kurban\u0131n hesab\u0131ndan para \u00e7eker. \u00d6deme sistemlerinde de sistem ayn\u0131 \u015fekilde i\u015fler ancak bu durumlarda, kurbanlardan sadece hesaplar\u0131na giri\u015f yapmalar\u0131 istenir.<\/p>\n<div id=\"attachment_5510\" style=\"width: 1012px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5510\" class=\"wp-image-5510 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2018\/12\/21205712\/phishing-spam-hooks-screen2.png\" alt=\"\" width=\"1002\" height=\"904\"><p id=\"caption-attachment-5510\" class=\"wp-caption-text\">Kimlik h\u0131rs\u0131zlar\u0131n\u0131n en pop\u00fcler hileleri: Bankalardan ve \u00f6deme sistemlerinden gelen sahte bildirimler<\/p><\/div>\n<p>\u00a0<\/p>\n<h2>3. Pop\u00fcler hizmetler ve sat\u0131c\u0131lardan gelen sahte bildirimler<\/h2>\n<p>Benzer \u015fekilde, pop\u00fcler \u00e7evrimi\u00e7i ma\u011fazalar\u0131n, da\u011f\u0131t\u0131m hizmetlerinin, rezervasyon sitelerinin, multimedya platformlar\u0131n\u0131n, i\u015f arama web sitelerinin ve di\u011fer pop\u00fcler \u00e7evrimi\u00e7i hizmetlerin adlar\u0131 kullan\u0131larak sahte bildirimler olu\u015fturulur. Siber su\u00e7lular, mesajlar\u0131n\u0131n bu t\u00fcr hizmetleri kullanan ve panik halinde ne g\u00f6r\u00fcrse g\u00f6rs\u00fcn t\u0131klayacak veya dokunacak olan bir k\u0131s\u0131m kullan\u0131c\u0131lara ula\u015fma ihtimaline g\u00fcvenir.<\/p>\n<div id=\"attachment_5511\" style=\"width: 1012px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5511\" class=\"wp-image-5511 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2018\/12\/21205811\/phishing-spam-hooks-screen3.png\" alt=\"\" width=\"1002\" height=\"793\"><p id=\"caption-attachment-5511\" class=\"wp-caption-text\">Kimlik h\u0131rs\u0131zlar\u0131n\u0131n en pop\u00fcler hileleri: \u00c7e\u015fitli hizmetlerden ve ma\u011fazalardan gelen sahte bildirimler<\/p><\/div>\n<p>\u00a0<\/p>\n<h2>4. E-posta hizmetlerinden gelen sahte bildirimler<\/h2>\n<p>Doland\u0131r\u0131c\u0131lar, bu t\u00fcr istenmeyen e-postalar\u0131, e-posta hizmeti kullan\u0131c\u0131lar\u0131n\u0131n kullan\u0131c\u0131 adlar\u0131n\u0131 ve \u015fifrelerini elde etmek i\u00e7in g\u00f6nderir. Yayg\u0131n olarak kullan\u0131lan iki bahaneden biri \u015fudur: Kullan\u0131c\u0131lar, \u015fifrelerini yenilemeye veya g\u00fcya dolu olan posta kutusunun hacmini art\u0131rmaya y\u00f6nlendirilir. Bahanenin, posta kutusunun hacmini art\u0131rmaya y\u00f6nelik oldu\u011fu durumlarda, kimlik av\u0131 ba\u011flant\u0131s\u0131, depolama kapasitesinde ciddi bir art\u0131\u015f olaca\u011f\u0131n\u0131 vaat eder. Y\u00fcksek miktarda veri depolama ihtiyac\u0131n\u0131n s\u00fcrekli olarak artt\u0131\u011f\u0131 bulut bili\u015fim \u00e7a\u011f\u0131nda, bu vaat pek de \u015f\u00fcpheli g\u00f6r\u00fcnmez.<\/p>\n<div id=\"attachment_5512\" style=\"width: 1012px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5512\" class=\"wp-image-5512 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2018\/12\/21205900\/phishing-spam-hooks-screen4.png\" alt=\"\" width=\"1002\" height=\"539\"><p id=\"caption-attachment-5512\" class=\"wp-caption-text\">Kimlik h\u0131rs\u0131zlar\u0131n\u0131n en pop\u00fcler hileleri: E-posta hizmetlerinden gelen sahte bildirimler<\/p><\/div>\n<p>\u00a0<\/p>\n<h2>5. \u201cNijeryal\u0131 Prens\u201d doland\u0131r\u0131c\u0131l\u0131\u011f\u0131<\/h2>\n<p>Son olarak, en eski istenmeyen e-posta t\u00fcrlerinden biri de hala kullan\u0131lmaya devam etmektedir. Bu doland\u0131r\u0131c\u0131l\u0131k t\u00fcr\u00fcnde \u00f6lm\u00fc\u015f bir milyonerin avukat\u0131 veya bir akrabas\u0131na yap\u0131lacak bir \u00f6deme kar\u015f\u0131l\u0131\u011f\u0131nda bir servet vaat edilir. Ayn\u0131 konunun de\u011fi\u015fik bir versiyonunda doland\u0131r\u0131c\u0131, zor durumdaki bir \u00fcnl\u00fc olarak kar\u015f\u0131m\u0131za \u00e7\u0131kar. Ma\u011fdurlara, banka hesaplar\u0131nda mahsur kalm\u0131\u015f paras\u0131n\u0131 \u00e7ekmek i\u00e7in talihsiz bir milyonere yard\u0131m etmeleri kar\u015f\u0131l\u0131\u011f\u0131nda b\u00fcy\u00fck bir \u00f6d\u00fcl vaat edilir. Bunu yapmak i\u00e7in \u00f6ncelikle, ma\u011fdurlar\u0131n kendileri hakk\u0131nda ayr\u0131nt\u0131l\u0131 bilgiler (pasaport bilgileri, hesap verileri vb.) vermesi ve evrak i\u015fleri i\u00e7in makul bir miktar para g\u00f6ndermesi gereklidir.<\/p>\n<div id=\"attachment_5513\" style=\"width: 1012px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5513\" class=\"wp-image-5513 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2018\/12\/21205947\/phishing-spam-hooks-screen5.png\" alt=\"\" width=\"1002\" height=\"756\"><p id=\"caption-attachment-5513\" class=\"wp-caption-text\">Kimlik h\u0131rs\u0131zlar\u0131n\u0131n en pop\u00fcler hileleri: Nijeryal\u0131 Prens doland\u0131r\u0131c\u0131l\u0131\u011f\u0131<\/p><\/div>\n<p>\u00a0<\/p>\n<p>Doland\u0131r\u0131c\u0131lar\u0131n, favori konular\u0131 ve teknikleri listesi bu kadarla s\u0131n\u0131rl\u0131 de\u011fildir ancak yukar\u0131da a\u00e7\u0131klanan be\u015f y\u00f6ntem en etkili ve en yayg\u0131n olanlar\u0131d\u0131r.<\/p>\n<h2>Bu tuza\u011fa d\u00fc\u015fmeyin<\/h2>\n<p>En iyi tavsiye dikkatli olmakt\u0131r. Ama bu biraz mu\u011flak bir tavsiye oldu\u011fu i\u00e7in i\u015fin \u00f6z\u00fcn\u00fc \u015f\u00f6yle a\u00e7\u0131klayal\u0131m:<\/p>\n<ul>\n<li>Bir \u015firketten veya bir hizmetten gelen bir bildirim mesaj\u0131 ald\u0131\u011f\u0131n\u0131zda, mesaj\u0131n do\u011fru adresten g\u00f6nderilip g\u00f6nderilmedi\u011fini kontrol edin. \u00d6rne\u011fin Google\u2019da, ileti <em>no-reply@accounts<strong>.google.com<\/strong><\/em> adresinden gelmelidir. <em>no-reply@accounts. <strong>google.scroogle.com<\/strong><\/em> ya da buna benzer bir adresten gelmemelidir.<\/li>\n<li>B\u00f6yle bir mesajdaki ba\u011flant\u0131y\u0131 takip etti\u011finizde, yine, sahte bir siteye de\u011fil ger\u00e7ek web sitesine y\u00f6nlendirildi\u011finizden emin olun.<\/li>\n<li>\u0130stenmeyen e-postalara ve kimlik av\u0131 sald\u0131r\u0131lar\u0131na kar\u015f\u0131 koruma \u00f6zelli\u011fi olan <a href=\"http:\/\/kas.pr\/kdkistr\" target=\"_blank\" rel=\"noopener\">g\u00fcvenilir bir g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fc kullan\u0131n<\/a>. Bu \u00e7\u00f6z\u00fcm, sahte e-postalar\u0131 tespit edecek ve sizi a\u00e7\u0131k\u00e7a uyaracakt\u0131r.<\/li>\n<\/ul>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"gandalf30\">\n","protected":false},"excerpt":{"rendered":"<p>\u0130stenmeyen e-postalar ve kimlik av\u0131 sald\u0131r\u0131lar\u0131 genellikle birlikte kullan\u0131l\u0131r: Doland\u0131r\u0131c\u0131lar, ki\u015filerden bilgi \u00e7almak i\u00e7in toplu e-postalar g\u00f6nderir. <\/p>\n","protected":false},"author":2495,"featured_media":5508,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1351],"tags":[19,584,240,537],"class_list":{"0":"post-5507","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-threats","8":"tag-email","9":"tag-oltalama","10":"tag-spam","11":"tag-tehditler"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/phishing-spam-hooks\/5507\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/phishing-spam-hooks\/14770\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/phishing-spam-hooks\/12371\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/phishing-spam-hooks\/6129\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/phishing-spam-hooks\/16710\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/phishing-spam-hooks\/14905\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/phishing-spam-hooks\/13853\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/phishing-spam-hooks\/17521\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/phishing-spam-hooks\/16689\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/phishing-spam-hooks\/21850\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/phishing-spam-hooks\/24888\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/phishing-spam-hooks\/11260\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/phishing-spam-hooks\/11174\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/phishing-spam-hooks\/10141\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/phishing-spam-hooks\/18243\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/phishing-spam-hooks\/22134\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/phishing-spam-hooks\/23534\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/phishing-spam-hooks\/17727\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/phishing-spam-hooks\/21620\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/phishing-spam-hooks\/21617\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/oltalama\/","name":"oltalama"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5507","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2495"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=5507"}],"version-history":[{"count":2,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5507\/revisions"}],"predecessor-version":[{"id":6865,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5507\/revisions\/6865"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/5508"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=5507"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=5507"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=5507"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}