{"id":8365,"date":"2020-05-28T17:41:04","date_gmt":"2020-05-28T14:41:04","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=8365"},"modified":"2020-05-28T17:41:04","modified_gmt":"2020-05-28T14:41:04","slug":"atm-protection-updated","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/atm-protection-updated\/8365\/","title":{"rendered":"ATM&#8217;lerin de karantinaya ihtiyac\u0131 var!"},"content":{"rendered":"<p>Bir y\u0131lda ortalama y\u00fczden fazla u\u00e7u\u015f yap\u0131yorum. Genellikle seyahatlerimde bana e\u015flik edenler olur, <a href=\"https:\/\/eugene.kaspersky.com\/2020\/01\/23\/the-extraordinary-things-ive-done-and-seen-in-the-year-of-the-lord-of-twenty-nineteen\/\" target=\"_blank\" rel=\"noopener\">d\u00fcnyan\u0131n her yerine u\u00e7ar\u0131m<\/a> ve yurt d\u0131\u015f\u0131ndayken, hemen hemen her yerde genellikle Apple veya Google Pay gibi temass\u0131z hizmetler arac\u0131l\u0131\u011f\u0131yla kart veya telefonla \u00f6deme yapar\u0131m. \u00c7in\u2019de WeChat\u2019i pazarlardaki ninelerden meyve ve sebze almak i\u00e7in bile kullanabilirsiniz. Ayr\u0131ca mevcut koronavir\u00fcs pandemisi sanal para kullan\u0131m\u0131n\u0131 daha da pop\u00fcler hale getirdi.<\/p>\n<p>Yelpazenin di\u011fer ucunda ise tuhaf bir s\u00fcrprizle kar\u015f\u0131la\u015f\u0131yoruz: \u0130nan\u0131l\u0131r gibi de\u011fil fakat Hong Kong\u2019da taksiler SADECE nakit \u00f6deme al\u0131yor ve ge\u00e7en y\u0131l nakit gerektiren iki Frankfurt restoran\u0131nda yemek yedim. Nas\u0131l yani?!! Ak\u015fam yeme\u011finden sonra konyaklar\u0131m\u0131z\u0131n tad\u0131n\u0131 \u00e7\u0131karmak yerine uzun bir ATM aray\u0131\u015f\u0131na \u00e7\u0131kmak ve avro \u00e7ekmek zorunda kald\u0131k. Korkun\u00e7 bir durum! (Soru: Bug\u00fcnlerde yersiz seyahat s\u00fcrprizlerini \u00f6zl\u00fcyor muyum? Cevap: Hem de nas\u0131l!)<\/p>\n<p>Her neyse, t\u00fcm bunlar, d\u00fcnyan\u0131n d\u00f6rt bir yan\u0131nda yenilik\u00e7i \u00f6deme sistemlerinin yerle\u015fmi\u015f olmas\u0131na ra\u011fmen, eski dostlar\u0131m\u0131z ATM\u2019lerin kolay kolay ortadan kalkmayaca\u011f\u0131n\u0131 g\u00f6steriyor.<\/p>\n<p>Peki, laf\u0131 nereye getirmeye \u00e7al\u0131\u015f\u0131yorum? Tabii ki <em>siber g\u00fcvenlik<\/em>!<\/p>\n<p>ATM\u2019ler para demektir. Hacklendiler, hala hackleniyorlar ve hacklenmeye devam edecekler. Ger\u00e7ekten de, hacklenme a\u00e7\u0131s\u0131ndan durumlar\u0131 daha da k\u00f6t\u00fcye gidiyor: <a href=\"https:\/\/securelist.com\/atm-pos-malware-landscape-2017-2019\/96750\/\" target=\"_blank\" rel=\"noopener\">Ara\u015ft\u0131rmam\u0131z<\/a> k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131mla sald\u0131r\u0131lan ATM\u2019lerin say\u0131s\u0131n\u0131n 2017\u2019den 2019\u2019a iki kat\u0131ndan fazla artt\u0131\u011f\u0131n\u0131 g\u00f6steriyor.<\/p>\n<p>Peki, ATM\u2019ler i\u00e7ten ve d\u0131\u015ftan s\u00fcrekli olarak izlenebilir mi? Asl\u0131nda hay\u0131r.<\/p>\n<p>Halen sokaklarda, ma\u011fazalarda, metro istasyonlar\u0131nda ve \u00e7ok say\u0131da i\u015flek ve \u00fccra noktalar\u0131n \u00e7evresine da\u011f\u0131t\u0131lm\u0131\u015f \u00e7ok yava\u015f ba\u011flant\u0131lar\u0131 olan \u00e7ok say\u0131da ATM bulabilirsiniz. Baz\u0131lar\u0131, etraflar\u0131nda olup bitenleri izlemek \u015f\u00f6yle dursun, ancak i\u015flemlerini y\u00f6netmek i\u00e7in yeterli bant geni\u015fli\u011fine sahip.<\/p>\n<p>\u0130zleme eksikli\u011fini g\u00f6z \u00f6n\u00fcnde bulundurarak bu bo\u015fluklar\u0131 doldurmak ve ATM g\u00fcvenli\u011fini art\u0131rmak i\u00e7in bir ad\u0131m att\u0131k. <a href=\"https:\/\/eugene.kaspersky.com\/2020\/05\/18\/go-easy-on-the-traffic\/\" target=\"_blank\" rel=\"noopener\">En iyi optimizasyon uygulamalar\u0131m\u0131z\u0131<\/a> kulland\u0131k (bu konuda yok yere tevazu g\u00f6stermeden 25 y\u0131ll\u0131k deneyimimizden dolay\u0131 uzman oldu\u011fumuzu s\u00f6yleyebiliriz) ve ayn\u0131 zamanda ATM tehditlerine kar\u015f\u0131 \u00f6zel korumam\u0131z i\u00e7in gereken <a href=\"https:\/\/eugene.kaspersky.com\/2020\/05\/18\/go-easy-on-the-traffic\/\" target=\"_blank\" rel=\"noopener\">trafik<\/a> miktar\u0131n\u0131 b\u00fcy\u00fck \u00f6l\u00e7\u00fcde azaltt\u0131k \u2013 bunun ad\u0131 <a href=\"https:\/\/www.kaspersky.com.tr\/enterprise-security\/embedded-systems?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">Kaspersky Embedded Systems Security<\/a> veya KESS.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-8366\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2020\/05\/28165825\/ATM-protection-updated-screenshot-EN.jpg\" alt=\"\" width=\"959\" height=\"428\"><\/p>\n<p>\u015euna bak\u0131n: KESS\u2019in minimum \u0130nternet ba\u011flant\u0131 h\u0131z\u0131 gereksinimi\u2026 saniyede 56 kilobit. 1998\u2019de 56K \u00e7evirmeli modemim vard\u0131!<\/p>\n<p>Geli\u015fmi\u015f \u00fclkelerde <a href=\"https:\/\/www.speedtest.net\/insights\/blog\/russia-internet-speeds-4g-2019\/\" target=\"_blank\" rel=\"noopener nofollow\">bug\u00fcn 4G \u0130nternetin ortalama<\/a> h\u0131z\u0131 saniyede 30.000 ila 120.000 kilobittir. \u00dcstelik 5G 100.000.000+ kbps vaat ediyor (tabii insanlar o zamana kadar <a href=\"https:\/\/www.businessinsider.com\/attacks-cellphone-towers-coronavirus-5g-conspiracy-2020-4\" target=\"_blank\" rel=\"noopener nofollow\">t\u00fcm kuleleri yerle bir etmezse<\/a>). Ancak tarih \u00f6ncesinden kalma \u0130nternet h\u0131zlar\u0131na bakmay\u0131n, bundan daha iyi bir koruma sa\u011flanamazd\u0131. Bir\u00e7ok etkili y\u00f6netici, kalite kayb\u0131 olmadan optimizasyon hakk\u0131nda bizden bir iki \u015fey \u00f6\u011frenebilir do\u011frusu.<\/p>\n<h2>Kaspersky Embedded Systems Security ATM\u2019leri nas\u0131l korur<\/h2>\n<p>KESS\u2019in <a href=\"https:\/\/media.kaspersky.com\/en\/business-security\/enterprise\/Kaspersky_Embedded_Systems_Security_DS_ENG_final.pdf\" target=\"_blank\" rel=\"noopener nofollow\">mevcut i\u015flevlerine<\/a> ek olarak yeni \u00f6zellikleri de var. KESS art\u0131k \u015funlar\u0131 engelleyebiliyor:<\/p>\n<ul>\n<li>Siber su\u00e7lular\u0131n, ATM\u2019de sanal giri\u015f noktalar\u0131n\u0131n en savunmas\u0131z\u0131n\u0131 bulmak i\u00e7in arama yapt\u0131ktan sonra sald\u0131r\u0131lar\u0131 i\u00e7in kulland\u0131klar\u0131 portlar\u0131;<\/li>\n<li>Bir \u015fifreyi bulman\u0131n en basit ve en yayg\u0131n yollar\u0131ndan biri olan <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/three-little-pigs\/7845\/\" target=\"_blank\" rel=\"noopener\">brute force<\/a> \u2013 kaba kuvvet diyebiliriz. Sald\u0131rganlar olas\u0131 kombinasyonlar\u0131 test etmek i\u00e7in yaz\u0131l\u0131m\u0131 kullan\u0131r ve ne yaz\u0131k ki bu s\u0131k\u00e7a olur;<\/li>\n<li><a href=\"https:\/\/www.kaspersky.com.tr\/blog\/ddos-quiz\/3394\/\" target=\"_blank\" rel=\"noopener\">DoS sald\u0131r\u0131lar\u0131<\/a> ve <a href=\"https:\/\/www.kaspersky.com\/blog\/exploits-problem-explanation\/9448\/\" target=\"_blank\" rel=\"noopener nofollow\">exploit<\/a>\u2018ler yoluyla i\u00e7eri s\u0131zarlar. Doland\u0131r\u0131c\u0131lar bir ATM\u2019ye ba\u011flan\u0131rsa, ATM\u2019nin donan\u0131m\u0131n\u0131n ba\u015f edemeyece\u011fi kadar \u00e7ok veri yollamaya ba\u015flarlar. Bu y\u00fczden bunlara DoS sald\u0131r\u0131lar\u0131 (Denial of Service) denir, bu sald\u0131r\u0131lar\u0131n amac\u0131 en basitinden hedefin hizmet vermeyi durdurmaya zorlanmas\u0131d\u0131r.<\/li>\n<\/ul>\n<p>\u015eimdi biraz g\u00f6steri\u015f yapal\u0131m. B\u00fcy\u00fck bankalar, t\u0131pk\u0131 bir\u00e7ok ta\u015f\u0131mac\u0131l\u0131k \u015firketi ve perakende devi gibi, KESS\u2019i d\u00fcnyan\u0131n d\u00f6rt bir yan\u0131ndaki binlerce ATM\u2019de kullan\u0131yor. Bundan dolay\u0131, sald\u0131r\u0131ya u\u011fram\u0131\u015f ATM\u2019lerle ilgili haber \u00f6gelerinin say\u0131s\u0131n\u0131n \u00e7ok yak\u0131nda azalmas\u0131n\u0131 bekleyebilirsiniz.<\/p>\n<p>Hala sorular\u0131n\u0131z m\u0131 var? <a href=\"https:\/\/www.kaspersky.com.tr\/enterprise-security\/embedded-systems?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">Kaspersky Embedded Systems Security<\/a> \u00fcr\u00fcn sayfam\u0131z\u0131 ziyaret edin.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>ATM korumas\u0131 i\u00e7in \u00e7\u00f6z\u00fcm\u00fcm\u00fcz\u00fc nas\u0131l optimize ettik ve bunu neden yapt\u0131k.<\/p>\n","protected":false},"author":13,"featured_media":8367,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194],"tags":[2192,2161],"class_list":{"0":"post-8365","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"tag-atmler","10":"tag-cozumler"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/atm-protection-updated\/8365\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/atm-protection-updated\/21351\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/atm-protection-updated\/16808\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/atm-protection-updated\/22416\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/atm-protection-updated\/20545\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/atm-protection-updated\/18941\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/atm-protection-updated\/22759\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/atm-protection-updated\/21794\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/atm-protection-updated\/28397\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/atm-protection-updated\/35652\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/atm-protection-updated\/14952\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/atm-protection-updated\/15482\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/atm-protection-updated\/13494\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/atm-protection-updated\/24101\/"},{"hreflang":"zh","url":"https:\/\/www.kaspersky.com.cn\/blog\/atm-protection-updated\/12284\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/atm-protection-updated\/25453\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/atm-protection-updated\/22291\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/atm-protection-updated\/27630\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/atm-protection-updated\/27462\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/atmler\/","name":"ATM&#039;ler"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8365","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/13"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=8365"}],"version-history":[{"count":2,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8365\/revisions"}],"predecessor-version":[{"id":8370,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8365\/revisions\/8370"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/8367"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=8365"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=8365"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=8365"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}