{"id":5601,"date":"2019-01-22T17:45:45","date_gmt":"2019-01-22T14:45:45","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=5601"},"modified":"2019-11-15T14:34:00","modified_gmt":"2019-11-15T11:34:00","slug":"ex-employees-cyberrevenge","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/ex-employees-cyberrevenge\/5601\/","title":{"rendered":"Eski bir \u00e7al\u0131\u015fan\u0131n siber intikam\u0131"},"content":{"rendered":"<p>\u0130\u015ften \u00e7\u0131karma \u00e7al\u0131\u015fma hayat\u0131n\u0131n do\u011fas\u0131nda vard\u0131r. Ancak bu, baz\u0131 durumlarda sanc\u0131l\u0131 olabilir. Durumdan ho\u015fnut olmayan eski \u00e7al\u0131\u015fanlar, y\u00f6neticilerin sinirlerini y\u0131pratmak d\u0131\u015f\u0131nda, \u015firketle hesapla\u015fmak i\u00e7in \u015firketin itibar\u0131n\u0131 ve mali durumunu da zedeleyebilir.<\/p>\n<p>Bu yaz\u0131da, i\u015ften \u00e7\u0131karma sonucu olu\u015fan ho\u015fnutsuzlu\u011fun nelere sebep olabilece\u011fini ve siber intikama kar\u015f\u0131 nas\u0131l \u00f6nlem al\u0131naca\u011f\u0131 konusunu ele alaca\u011f\u0131z.<\/p>\n<h2>200.000 dolarl\u0131k parola<\/h2>\n<p>Amerikan College of Education\u2019\u0131n \u00e7evrimi\u00e7i e\u011fitimi, bu tarz problemlere \u00f6nemli bir \u00f6rnek olu\u015fturuyor. S\u00f6z konusu okulun \u00e7evrimi\u00e7i e\u011fitim y\u00f6netimi ile \u015firket i\u00e7in uzaktan \u00e7al\u0131\u015fan sistem y\u00f6neticisi Triano Williams pek iyi ge\u00e7inemiyordu.<\/p>\n<p>2016\u2019da Williams, \u0131rk ayr\u0131mc\u0131l\u0131\u011f\u0131 yapt\u0131\u011f\u0131 gerek\u00e7esiyle kurum hakk\u0131nda <a href=\"https:\/\/regmedia.co.uk\/2017\/01\/18\/williams_letter.pdf\" target=\"_blank\" rel=\"noopener nofollow\">su\u00e7 duyurusunda bulundu<\/a>. K\u0131sa bir s\u00fcre sonra Williams\u2019a, \u015firketin Indianapolis\u2019teki yerel ofisinde \u00e7al\u0131\u015fma teklifi sunuldu. Williams bu teklifi kabul etmedi; en \u00f6nemli \u015fartlar\u0131ndan biri evden \u00e7al\u0131\u015fma iste\u011fiydi. Sonu\u00e7 olarak, Williams i\u015ften at\u0131ld\u0131. Her ne kadar k\u0131dem tazminat\u0131n\u0131 alm\u0131\u015f olsa da, BT uzman\u0131 Williams durumdan memnun de\u011fildi. \u015eirket hakk\u0131nda su\u00e7 duyurusunda bulundu\u011fu i\u00e7in kendisine uydurma bir i\u015f teklifi sunuldu\u011fu sonucuna vard\u0131. Okuldan intikam almak i\u00e7in, okulun <a href=\"https:\/\/www.inc.com\/gene-marks\/a-fired-it-worker-changes-a-password-and-demands-200k-for-it.html\" target=\"_blank\" rel=\"noopener nofollow\">Google hesab\u0131n\u0131n parolas\u0131n\u0131 de\u011fi\u015ftirdi<\/a> ve b\u00f6ylece eski i\u015f arkada\u015flar\u0131n\u0131n, 2000\u2019den fazla \u00f6\u011frenciye sunulan e-posta ve \u00e7al\u0131\u015fma materyallerine eri\u015fmesini engelledi.<\/p>\n<p>Williams, parolan\u0131n diz\u00fcst\u00fc bilgisayar\u0131nda otomatik olarak kay\u0131tl\u0131 oldu\u011funu ve bu parolay\u0131 kovulduktan k\u0131sa bir s\u00fcre sonra \u015firkete geri verdi\u011fini iddia etti. Ancak \u00fcniversiteye g\u00f6re, eski y\u00f6netici bilgisayar\u0131 geri vermeden \u00f6nce tamamen temizlemi\u015fti.<\/p>\n<p>Kurum, Google\u2019a hesaba tekrar eri\u015fim sa\u011flama talebinde bulundu ancak hesap profilinin \u015firkete de\u011fil, Williams\u2019\u0131n ki\u015fisel hesab\u0131na kay\u0131tl\u0131 oldu\u011fu ortaya \u00e7\u0131kt\u0131. Eski \u00e7al\u0131\u015fan Williams\u2019\u0131n avukat\u0131, m\u00fcvekkilinin 200.000 $ ve \u015firketten pozitif tavsiye almas\u0131 kar\u015f\u0131l\u0131\u011f\u0131nda kay\u0131p parolay\u0131 hat\u0131rlayabilece\u011fi imas\u0131nda bulundu.<\/p>\n<h2>Te\u015fhir niteli\u011finde sald\u0131r\u0131<\/h2>\n<p>Di\u011fer bir \u00f6rnek, \u00e7al\u0131\u015fma s\u00fcreci sonras\u0131 al\u0131nan daha etkin tedbirleri kaps\u0131yor. Bilgi g\u00fcvenli\u011fi \u015firketi Esselar\u2019\u0131n e\u015f kurucusu ve eski BT direkt\u00f6r\u00fc Richard Neale \u015firketten tats\u0131z bir \u015fekilde ayr\u0131ld\u0131 ve alt\u0131 ay boyunca intikam plan\u0131n\u0131 tasarlad\u0131.<\/p>\n<p>Eski i\u015f arkada\u015flar\u0131n\u0131n itibar\u0131n\u0131 zedelemek i\u00e7in \u015firketin \u00f6nemli bir m\u00fc\u015fterisi olan sigorta \u015firketi Aviva\u2019ya sunaca\u011f\u0131 hizmetleri tan\u0131taca\u011f\u0131 g\u00fcn\u00fc bekledi. Tan\u0131t\u0131m\u0131n hemen \u00f6ncesinde Neale,<a href=\"https:\/\/www.dailymail.co.uk\/news\/article-3209256\/Computer-firm-boss-hacked-900-mobile-phones-belonging-Aviva-insurance-employees-act-revenge-leaving-job-bad-terms-jailed-18-months.html\" target=\"_blank\" rel=\"noopener nofollow\"> 900 Aviva \u00e7al\u0131\u015fan\u0131n\u0131n cep telefonlar\u0131n\u0131 hackledi ve cihazlar\u0131ndan b\u00fct\u00fcn bilgileri sildi<\/a>.<\/p>\n<p>Olay sonras\u0131 Aviva, Esselar ile ba\u011flar\u0131n\u0131 kopard\u0131 ve 70.000 \u00a3 tazminat talebinde bulundu. Ancak Neale\u2019nin eski partnerlerine g\u00f6re, itibar kayb\u0131 ve potansiyel zarar 500.000 \u00a3 olarak tahmin ediliyordu. \u015eirkete g\u00f6re, Neale\u2019nin eylemleri \u015firketi \u00f6yle b\u00fcy\u00fck bir zarara u\u011fratt\u0131 ki, Esselar markan\u0131n ismini de\u011fi\u015ftirme fikrini de\u011ferlendirmeye ba\u015flad\u0131.<\/p>\n<h2>H\u0131zl\u0131 ve olduk\u00e7a maliyetli veri temizleme<\/h2>\n<p>\u0130\u015ften at\u0131laca\u011f\u0131ndan \u015f\u00fcphelenen \u00e7al\u0131\u015fanlar da \u00f6nemli bir tehlike olu\u015fturuyor. Bir mimarl\u0131k \u015firketinde y\u00f6netici yard\u0131mc\u0131s\u0131 olarak \u00e7al\u0131\u015fan Mary Lupe Cooley, bir g\u00fcn gazete okurken kendi pozisyonu i\u00e7in eleman arand\u0131\u011f\u0131n\u0131 ve ilan\u0131n alt\u0131nda patronunun ileti\u015fim bilgileri bulundu\u011funu fark eder.<\/p>\n<p>Yak\u0131nda kovulaca\u011f\u0131n\u0131 d\u00fc\u015f\u00fcnen Cooley, <a href=\"http:\/\/www.digitaljournal.com\/article\/249311\" target=\"_blank\" rel=\"noopener nofollow\">yedi y\u0131l \u00f6ncesine dayanan proje verilerini silerek<\/a> \u015firketi tahminen 2,5 milyon dolar zarara u\u011fratm\u0131\u015ft\u0131r. S\u00f6z konusu ilan ise, patronun e\u015finin \u015firketindeki pozisyon a\u00e7\u0131\u011f\u0131 i\u00e7in verilmi\u015fti.<\/p>\n<h2>Siber intikam kurban\u0131 olmamak i\u00e7in ne yapmal\u0131?<\/h2>\n<p>Eski \u00e7al\u0131\u015fanlar\u0131n BT altyap\u0131n\u0131za zarar vermesini \u00f6nlemek i\u00e7in, \u00e7al\u0131\u015fanlar\u0131n hak ve izinlerine ilk g\u00fcnden itibaren dikkat etmeye \u00f6zen g\u00f6sterin. G\u00fcvenli\u011fi sa\u011flamak isteyen \u015firketler i\u00e7in a\u015fa\u011f\u0131da birka\u00e7 kural yer almaktad\u0131r:<\/p>\n<ul>\n<li>\u00c7al\u0131\u015fanlar\u0131n BT haklar\u0131yla beraber, eri\u015febildikleri hesap ve kaynaklar\u0131 kay\u0131t alt\u0131na al\u0131n. \u00c7al\u0131\u015fanlar\u0131n bir hakka ihtiyac\u0131 oldu\u011fundan tamamen emin olmad\u0131k\u00e7a onlara ekstra haklar tan\u0131may\u0131n. Ekstra hak tan\u0131nd\u0131\u011f\u0131 takdirde bu bilgiyi derhal kaydedin.<\/li>\n<li>Hak listesini d\u00fczenli olarak g\u00f6zden ge\u00e7irin ve d\u00fczenleyin. S\u00fcresi dolmu\u015f izinleri iptal etmeyin unutmay\u0131n.<\/li>\n<li>Kurum kaynaklar\u0131n\u0131 yaln\u0131zca kurum hesaplar\u0131na verin. Ki\u015fisel hesap kurman\u0131n avantajlar\u0131 ne olursa olsun veya \u00e7al\u0131\u015fan ne kadar g\u00fcvenilir g\u00f6r\u00fcn\u00fcrse g\u00f6r\u00fcns\u00fcn, \u00e7al\u0131\u015fanlarla er ya da ge\u00e7 kendi do\u011fal seyrini izleyecek bir i\u015f ili\u015fkisi i\u00e7erisinde oldu\u011funuzu unutmay\u0131n. Etki alan\u0131 adlar\u0131, sosyal medya hesaplar\u0131 ve \u0130nternet sitesi kontrol panolar\u0131 nihayetinde birer \u015firket varl\u0131\u011f\u0131 olup, bunlar\u0131n kontrol\u00fcn\u00fc personele b\u0131rakmak uzun vadede tehlikeli olacakt\u0131r.<br>\nEski \u00e7al\u0131\u015fanlar\u0131n b\u00fct\u00fcn eri\u015fim haklar\u0131n\u0131 ve hesaplar\u0131n\u0131 m\u00fcmk\u00fcn olan en k\u0131sa s\u00fcre i\u00e7inde engelleyin; bunun i\u00e7in en ideal zaman, i\u015ften \u00e7\u0131kar\u0131ld\u0131\u011f\u0131n\u0131 s\u00f6z konusu \u00e7al\u0131\u015fana ilettikten hemen sonrad\u0131r.<\/li>\n<li>Olas\u0131 personel i\u015ften \u00e7\u0131karma ve yeniden yap\u0131land\u0131rma d\u00fc\u015f\u00fcncelerini alenen dile getirmeyin, ayr\u0131ca belli bir pozisyonu doldurmak i\u00e7in i\u015f ilan\u0131 verirken, bu ilan\u0131 sadece adaylar\u0131n de\u011fil \u00e7ok daha geni\u015f bir kitlenin g\u00f6rebilece\u011fini unutmay\u0131n.<\/li>\n<li>T\u00fcm \u00e7al\u0131\u015fanlarla iyi ili\u015fkiler kurup i\u015f yerinde samimi bir ortam olu\u015fturmaya \u00e7al\u0131\u015f\u0131n. Eski i\u015fverene kar\u015f\u0131 siber sald\u0131r\u0131lar, \u00e7o\u011fu zaman a\u00e7g\u00f6zl\u00fcl\u00fckten ziyade incinmi\u015f duygular sebebiyle yap\u0131lmaktad\u0131r.<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u0130\u015ften \u00e7\u0131kart\u0131lan ve durumdan ho\u015fnut olmayan eski \u00e7al\u0131\u015fanlar, y\u00f6neticilerin sinirlerini y\u0131pratmak d\u0131\u015f\u0131nda, \u015firketle hesapla\u015fmak i\u00e7in \u015firketin itibar\u0131n\u0131 ve mali durumunu zedeleyebilir.<\/p>\n","protected":false},"author":2484,"featured_media":5602,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1287],"tags":[1823,744,1824,519,528],"class_list":{"0":"post-5601","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-news","8":"tag-erisim-haklari","9":"tag-guvenlik","10":"tag-insan-faktoru","11":"tag-ipuclari-2","12":"tag-veri-koruma"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/ex-employees-cyberrevenge\/5601\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/ex-employees-cyberrevenge\/15092\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/ex-employees-cyberrevenge\/12670\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/ex-employees-cyberrevenge\/17018\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/ex-employees-cyberrevenge\/15205\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/ex-employees-cyberrevenge\/13953\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/ex-employees-cyberrevenge\/17690\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/ex-employees-cyberrevenge\/16801\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/ex-employees-cyberrevenge\/22132\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/ex-employees-cyberrevenge\/25393\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/ex-employees-cyberrevenge\/11363\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/ex-employees-cyberrevenge\/11393\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/ex-employees-cyberrevenge\/10254\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/ex-employees-cyberrevenge\/18380\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/ex-employees-cyberrevenge\/22270\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/ex-employees-cyberrevenge\/23703\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/ex-employees-cyberrevenge\/17840\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/ex-employees-cyberrevenge\/21975\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/ex-employees-cyberrevenge\/21912\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/insan-faktoru\/","name":"insan fakt\u00f6r\u00fc"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5601","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2484"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=5601"}],"version-history":[{"count":3,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5601\/revisions"}],"predecessor-version":[{"id":6852,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/5601\/revisions\/6852"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/5602"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=5601"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=5601"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=5601"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}