{"id":7423,"date":"2019-11-26T13:24:14","date_gmt":"2019-11-26T10:24:14","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=7423"},"modified":"2019-11-26T13:24:14","modified_gmt":"2019-11-26T10:24:14","slug":"kaspersky-products-fixed","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/kaspersky-products-fixed\/7423\/","title":{"rendered":"G\u00fcvenlik \u00fcr\u00fcnlerinde g\u00fcvenlik \u2013 \u00e7\u00f6z\u00fcld\u00fc"},"content":{"rendered":"<p>Biz yaz\u0131l\u0131m geli\u015ftiririz. Yani insan\u0131z (hen\u00fcz). Ve b\u00fct\u00fcn insanlar hata yapar. Bu nedenle, d\u00fcnyada \u00fcr\u00fcnleri hatas\u0131z olan bir yaz\u0131l\u0131m geli\u015ftirici bulman\u0131z m\u00fcmk\u00fcn de\u011fildir. Basit\u00e7e s\u00f6ylemek gerekirse: Hatalar olur. Bu normaldir.<\/p>\n<h2>Hata avc\u0131lar\u0131 aran\u0131yor<\/h2>\n<p>Normal olmayan, bu hatalar\u0131 bulmaya ve gidermeye \u00e7al\u0131\u015fmamakt\u0131r. Bu y\u00fczden Kaspersky olarak bu konuda \u00e7ok \u00e7aba harc\u0131yoruz. \u00dcr\u00fcnlerimizdeki g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131n \u00e7o\u011funu i\u00e7 testler s\u0131ras\u0131nda ortadan kald\u0131r\u0131yoruz ve bir\u00e7ok ki\u015finin par\u00e7as\u0131 oldu\u011fu (buna \u00f6zverili <a href=\"https:\/\/www.kasperskyclub.com\" target=\"_blank\" rel=\"noopener nofollow\">Kaspersky Club<\/a> da dahil) \u00e7ok kapsaml\u0131 bir beta test program\u0131 y\u00fcr\u00fct\u00fcyoruz. Ayr\u0131ca g\u00fcvenli geli\u015ftirme d\u00f6ng\u00fcs\u00fcn\u00fc de hayata ge\u00e7irdik. Bunlar\u0131n hepsi, hatalar\u0131 ve g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 en aza indirmemize yard\u0131mc\u0131 oluyor.<\/p>\n<p>Bununla birlikte, \u00f6nleyici tedbirler ne kadar kapsaml\u0131 olursa olsun, k\u00fc\u00e7\u00fck hatalar i\u00e7eri gizlice s\u0131zmay\u0131 ba\u015far\u0131r ve d\u00fcnyadaki hi\u00e7bir yaz\u0131l\u0131m \u00fcr\u00fcn\u00fc \u00f6nleyici a\u015famada onlardan tamamen kurtulamaz. Bu nedenle, yaln\u0131zca s\u00fcr\u00fcmlerimizden sonra onlar\u0131 dikkatle g\u00f6zlemlemeye devam etmekle kalm\u0131yor, bunlar\u0131 ke\u015ffetmeleri ve raporlamalar\u0131 i\u00e7in ba\u011f\u0131ms\u0131z ara\u015ft\u0131rmac\u0131lar\u0131 te\u015fvik ediyoruz. Bu, hatalar\u0131 raporlamak i\u00e7in HackerOne ile birlikte ortaya \u00e7\u0131kar\u0131lm\u0131\u015f, 100.000 dolara kadar <a href=\"https:\/\/hackerone.com\/kaspersky\" target=\"_blank\" rel=\"noopener nofollow\">\u00f6d\u00fcl vaat eden<\/a> ve <a href=\"http:\/\/disclose.io\/\" target=\"_blank\" rel=\"noopener nofollow\">Disclose.io<\/a> ile ara\u015ft\u0131rmac\u0131lara G\u00fcvenli Liman sunan hata bildirme program\u0131m\u0131z\u0131 da kaps\u0131yor. B\u00fct\u00fcn ara\u015ft\u0131rmac\u0131lar\u0131, herhangi bir ileti\u015fim kanal\u0131n\u0131 kullanarak, bulduklar\u0131 herhangi bir hatay\u0131 veya g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 bize iletmeye davet ediyoruz.<\/p>\n<p>Bu nedenle bug\u00fcn, baz\u0131 \u00fcr\u00fcnlerimizdeki g\u00fcvenlik a\u00e7\u0131klar\u0131 hakk\u0131nda bizi bilgilendiren ba\u011f\u0131ms\u0131z bir g\u00fcvenlik ara\u015ft\u0131rmac\u0131s\u0131 olan Wladimir Palant\u2019a te\u015fekk\u00fcr ediyoruz. \u015eimdi Palant\u2019\u0131n ke\u015ffetti\u011fi hatalara, onlar\u0131 nas\u0131l d\u00fczeltti\u011fimize ve \u00fcr\u00fcnlerimizin \u015fu anki durumuna \u0131\u015f\u0131k tutuyoruz.<\/p>\n<h2>Bulundu ve d\u00fczeltildi<\/h2>\n<p>Reklamlar\u0131 ve izleyicileri engellemek, sizi k\u00f6t\u00fc ama\u00e7l\u0131 arama sonu\u00e7lar\u0131 hakk\u0131nda uyarmak da dahil olmak \u00fczere g\u00fcvenli bir internet ba\u011flant\u0131s\u0131 sa\u011flayabilmek i\u00e7in bir taray\u0131c\u0131 uzant\u0131s\u0131 kullan\u0131yoruz. Bu (veya herhangi bir) uzant\u0131y\u0131 kurmay\u0131 reddedebilirsiniz elbette. Uygulamam\u0131z sizi internette korumas\u0131z b\u0131rakmaz, uzant\u0131n\u0131n kurulu olmad\u0131\u011f\u0131n\u0131 alg\u0131lad\u0131\u011f\u0131nda ziyaret etti\u011finiz Web sayfalar\u0131na olas\u0131 tehditleri izlemek i\u00e7in komut dosyalar\u0131 g\u00f6nderir. Bu gibi durumlarda, komut dosyas\u0131 ile g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fcn\u00fcn g\u00f6vdesi aras\u0131nda bir ileti\u015fim kanal\u0131 kurulur.<\/p>\n<p>Palant\u2019\u0131n tespit etti\u011fi g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131n b\u00fcy\u00fck k\u0131sm\u0131 bu ileti\u015fim kanal\u0131ndayd\u0131. Teoride, bir sald\u0131rgan bu kanala sald\u0131r\u0131rsa, kanal ana uygulamay\u0131 kumanda etmek i\u00e7in kullan\u0131labilir. Palant, Kaspersky Internet Security 2019\u2019u etkileyen sorunu Aral\u0131k 2018\u2019de ke\u015ffetti ve hata \u00f6d\u00fcl program\u0131 arac\u0131l\u0131\u011f\u0131yla bize bildirdi. Hemen sorun \u00fczerinde \u00e7al\u0131\u015fmaya ba\u015flad\u0131k.<\/p>\n<p>Palant\u2019\u0131n bulgular\u0131ndan bir di\u011feri, Kaspersky g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fc \u00fcr\u00fcn kimli\u011fi, \u00fcr\u00fcn s\u00fcr\u00fcm\u00fc ve i\u015fletim sistemi s\u00fcr\u00fcm\u00fc gibi \u00f6nemli verilere eri\u015fmek i\u00e7in, taray\u0131c\u0131 uzant\u0131s\u0131 ile \u00fcr\u00fcn aras\u0131ndaki ileti\u015fim kanal\u0131n\u0131 kullanan potansiyel bir istismard\u0131. Bu sorunu da \u00e7\u00f6zd\u00fck.<\/p>\n<p>Son olarak, c\u2019t dergisinden Ronald Eikenberg bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 ke\u015ffetti.<\/p>\n<p>Bu a\u00e7\u0131k, Kaspersky \u00fcr\u00fcnlerini kullananlar\u0131n ziyaret etti\u011fi web sitelerine benzersiz kimlikleri <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/tracking-ids-bug\/6345\/\" target=\"_blank\" rel=\"noopener\">bildiriyordu<\/a>. Bu sorunu temmuz ay\u0131nda d\u00fczelttik, a\u011fustos ay\u0131nda t\u00fcm kullan\u0131c\u0131lar\u0131m\u0131za ula\u015ft\u0131. Daha sonra Palant bu t\u00fcrden ba\u015fka bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 buldu ve sorun Kas\u0131m 2019\u2019da d\u00fczeltildi.<\/p>\n<h3>Neden bu teknolojiyi kullan\u0131yoruz?<\/h3>\n<p>Yukar\u0131da anlatt\u0131\u011f\u0131m\u0131z t\u00fcrde komut dosyalar\u0131, antivir\u00fcs d\u00fcnyas\u0131nda \u00e7ok s\u0131k kullan\u0131l\u0131r; ancak her sat\u0131c\u0131 bunlar\u0131 kullanmaz. Biz ise, komut dosyas\u0131 ekleme teknolojisini yaln\u0131zca taray\u0131c\u0131 uzant\u0131m\u0131z\u0131 etkinle\u015ftirmediyseniz kullan\u0131r\u0131z. Uzant\u0131y\u0131 kullanman\u0131z\u0131 \u00f6neririz. Ancak, kullanmamaya karar verseniz bile, size iyi bir kullan\u0131c\u0131 deneyimi ve koruma sa\u011flamak i\u00e7in elimizden gelenin en iyisini yap\u0131yoruz.<\/p>\n<p>Komut dosyalar\u0131, temel olarak kullan\u0131c\u0131 deneyimini geli\u015ftirmek i\u00e7in kullan\u0131l\u0131r \u2014 \u00f6rne\u011fin, reklamlar\u0131 engellemeye yard\u0131mc\u0131 olurlar \u2014 ancak buna ek olarak kullan\u0131c\u0131lar\u0131, Kaspersky Protection uzant\u0131s\u0131 devre d\u0131\u015f\u0131 b\u0131rak\u0131ld\u0131\u011f\u0131nda ba\u015fka t\u00fcrl\u00fc alg\u0131lanamayan dinamik Web sayfalar\u0131yla yap\u0131lan sald\u0131r\u0131lara kar\u015f\u0131 korurlar. Ayr\u0131ca, kimlik av\u0131 korumas\u0131 ve ebeveyn kontrol\u00fc gibi bile\u015fenler, \u00e7al\u0131\u015fmak i\u00e7in komut dosyalar\u0131na g\u00fcvenir.<\/p>\n<p>Wladimir Palant sayesinde, komut dosyalar\u0131 veya eklenti ve ana uygulama aras\u0131ndaki ileti\u015fim kanal\u0131n\u0131n korumas\u0131n\u0131 \u00f6nemli \u00f6l\u00e7\u00fcde geli\u015ftirebildik.<\/p>\n<h3>Birlikte in\u015fa ediyoruz<\/h3>\n<p>\u015eu an itibariyle, ke\u015ffedilen t\u00fcm g\u00fcvenlik a\u00e7\u0131klar\u0131 kapat\u0131ld\u0131 ve sald\u0131r\u0131 zemini \u00f6nemli \u00f6l\u00e7\u00fcde daralt\u0131ld\u0131. Kaspersky Protection taray\u0131c\u0131 eklentisi ile birlikte kullansan\u0131z da kullanmasan\u0131z da, \u00fcr\u00fcnlerimiz g\u00fcvenlidir.<\/p>\n<p>\u00dcr\u00fcnlerimizdeki hatalar\u0131 bulmam\u0131za yard\u0131mc\u0131 olan herkese te\u015fekk\u00fcr etmek istiyoruz. Onlar\u0131n yard\u0131mlar\u0131yla, \u00e7\u00f6z\u00fcmlerimiz <a href=\"https:\/\/www.kaspersky.com.tr\/top3\" target=\"_blank\" rel=\"noopener\">farkl\u0131 ba\u011f\u0131ms\u0131z test laboratuvarlar\u0131n\u0131n kan\u0131tlad\u0131\u011f\u0131 \u00fczere en iyi<\/a> devam ediyor ve t\u00fcm g\u00fcvenlik ara\u015ft\u0131rmac\u0131lar\u0131n\u0131 <a href=\"https:\/\/hackerone.com\/kaspersky\" target=\"_blank\" rel=\"noopener nofollow\">hata \u00f6d\u00fcl program\u0131m\u0131za<\/a> kat\u0131lmaya davet ediyoruz.<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kis-top3\">\n<p>Hi\u00e7bir \u015fey tamamen g\u00fcvenli de\u011fildir. \u00d6te yandan, g\u00fcvenlik ara\u015ft\u0131rmac\u0131lar\u0131yla birlikte \u00e7al\u0131\u015farak, g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 en k\u0131sa s\u00fcrede gidererek ve teknolojilerimizi s\u00fcrekli iyile\u015ftirerek, kullan\u0131c\u0131lar\u0131m\u0131za varolan t\u00fcm tehditlere kar\u015f\u0131 en g\u00fc\u00e7l\u00fc korumay\u0131 sunabiliyoruz.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ba\u011f\u0131ms\u0131z g\u00fcvenlik ara\u015ft\u0131rmac\u0131lar\u0131 sayesinde, birka\u00e7 g\u00fcvenlik sorununu \u00e7\u00f6zerek m\u00fc\u015fterileri otomatik olarak korumay\u0131 ba\u015fard\u0131k.<\/p>\n","protected":false},"author":2455,"featured_media":7424,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1285],"tags":[1405,790,2071,28,551],"class_list":{"0":"post-7423","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-products","8":"tag-bug-bounty","9":"tag-guvenlik-aciklari","10":"tag-hata-odulu","11":"tag-kaspersky","12":"tag-urunler-2"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/kaspersky-products-fixed\/7423\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/kaspersky-products-fixed\/18269\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/kaspersky-products-fixed\/15160\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/kaspersky-products-fixed\/19963\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/kaspersky-products-fixed\/18360\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/kaspersky-products-fixed\/16713\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/kaspersky-products-fixed\/20671\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/kaspersky-products-fixed\/19416\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/kaspersky-products-fixed\/25773\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/kaspersky-products-fixed\/31475\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/kaspersky-products-fixed\/13718\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/kaspersky-products-fixed\/11701\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/kaspersky-products-fixed\/21578\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/kaspersky-products-fixed\/24842\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/kaspersky-products-fixed\/20715\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/kaspersky-products-fixed\/25575\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/kaspersky-products-fixed\/25413\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/urunler-2\/","name":"\u00fcr\u00fcnler"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/7423","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2455"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=7423"}],"version-history":[{"count":1,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/7423\/revisions"}],"predecessor-version":[{"id":7425,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/7423\/revisions\/7425"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/7424"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=7423"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=7423"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=7423"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}