{"id":8803,"date":"2020-09-14T14:22:18","date_gmt":"2020-09-14T11:22:18","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=8803"},"modified":"2020-09-14T14:22:18","modified_gmt":"2020-09-14T11:22:18","slug":"threats-targeting-linux","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/threats-targeting-linux\/8803\/","title":{"rendered":"Linux ne kadar savunmas\u0131zd\u0131r?"},"content":{"rendered":"<p>Linux k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m i\u00e7ermez \u2014 ya da pek \u00e7ok ki\u015fi taraf\u0131ndan y\u0131llard\u0131r buna inan\u0131l\u0131yor diyelim. Bu inan\u0131\u015f \u00fc\u00e7 temel noktaya dayan\u0131yor. Birincisi Linux, Windows\u2019tan \u00e7ok daha az kullan\u0131lan, ni\u015f bir sistemdi. \u0130kincisi, ortalama bir kullan\u0131c\u0131dan daha fazla bilgi sahibi olan BT uzmanlar\u0131 taraf\u0131ndan kullan\u0131l\u0131yordu. \u00dc\u00e7\u00fcnc\u00fcs\u00fc ise, sistem mimarisinin \u00f6zellikleri g\u00f6z \u00f6n\u00fcne al\u0131nd\u0131\u011f\u0131nda, k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131mlar\u0131n bir hasara neden olmas\u0131 ve sald\u0131r\u0131lar\u0131 b\u00fcy\u00fck \u00f6l\u00e7\u00fcde karma\u015f\u0131kla\u015ft\u0131rmak i\u00e7in bir \u015fekilde k\u00f6k izinleri almas\u0131 gerekiyordu.<\/p>\n<p>Bununla birlikte, zaman de\u011fi\u015fiyor ve g\u00fcn\u00fcm\u00fczde Linux tabanl\u0131 sistemler baz\u0131 alanlarda Windows\u2019a yeti\u015fiyor, baz\u0131lar\u0131nda ise uzun s\u00fcre \u00f6nce yeti\u015fmi\u015f durumda. Dahas\u0131 bir\u00e7ok geli\u015ftirici, ilk bak\u0131\u015fta kullan\u0131m\u0131 kolay Windows sistemlerinden ay\u0131rt edilemeyen grafik aray\u00fczler ve ara\u00e7lar sa\u011flayarak sistemlerini daha kullan\u0131c\u0131 dostu hale getirmeye \u00e7al\u0131\u015f\u0131yor. Bu durum Linux\u2019un pop\u00fclaritesini b\u00fcy\u00fck \u00f6l\u00e7\u00fcde art\u0131r\u0131rken ayn\u0131 zamanda daha fazla hata yapmaya m\u00fcsait kullan\u0131c\u0131n\u0131n ilgisini \u00e7ekmesine neden oldu. Ve Linux\u2019un \u2014 stratejik \u00f6neme sahip sunucu ve i\u015f istasyonlar\u0131 alan\u0131nda \u2014 artan pop\u00fclaritesi, siber su\u00e7lar\u0131n da daha fazla ilgisini \u00e7ekmeye ba\u015flad\u0131.<\/p>\n<p>Ku\u015fkusuz, Linux tabanl\u0131 sistemleri etkileyen b\u00fcy\u00fck \u00f6l\u00e7ekli bir tek salg\u0131nla bile kar\u015f\u0131la\u015fmad\u0131k \u2014 hen\u00fcz. Hedefli ve APT sald\u0131r\u0131lar\u0131n\u0131n arkas\u0131ndaki dehalar, \u00f6zellikle bu i\u015fletim sistemi ailesi i\u00e7in \u00f6zel olarak tasarlanm\u0131\u015f daha fazla ara\u00e7 \u00fcretiyor. Son y\u0131llarda \u00e7ok say\u0131da karma\u015f\u0131k tehdidi analiz ettikten sonra, K\u00fcresel Ara\u015ft\u0131rma ve Analiz Ekibindeki (GReAT) \u00e7al\u0131\u015fma arkada\u015flar\u0131m\u0131z, g\u00fcn\u00fcm\u00fcz\u00fcn sald\u0131r\u0131 gruplar\u0131n\u0131n \u00e7o\u011funun Linux ile ciddi \u015fekilde ilgilendi\u011fini ke\u015ffettiler.<\/p>\n<p>Winniti (APT41 veya Barium olarak da bilinir), Cloud Snooper, DarkHotel, Equation, Lazarus, Sofacy, The Dukes, The Lamberts, Turla, WildNeutron ve di\u011ferleri, Linux tabanl\u0131 makinelere sald\u0131rmak i\u00e7in gereken ara\u00e7lara sahip. Linux\u2019u hedefleyen bir ba\u015fka ara\u00e7 geli\u015ftiricisi, devletlere ve kanun uygulay\u0131c\u0131 kurumlara s\u00f6zde yasal g\u00f6zetim i\u00e7in yaz\u0131l\u0131m satan bir \u015firket olan HackingTeam. Birka\u00e7 y\u0131l \u00f6nce sald\u0131r\u0131ya u\u011frad\u0131 ve bilgi birikiminin bir k\u0131sm\u0131 siber su\u00e7lular\u0131n eline ge\u00e7ti. Sald\u0131rgan gruplar\u0131n\u0131n ve ara\u00e7lar\u0131n\u0131n daha ayr\u0131nt\u0131l\u0131 a\u00e7\u0131klamas\u0131 i\u00e7in <a href=\"https:\/\/securelist.com\/an-overview-of-targeted-attacks-and-apts-on-linux\/98440\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Securelist blog raporumuza g\u00f6z at\u0131n<\/a>.<\/p>\n<p>Linux i\u00e7in g\u00fcvenlik ipu\u00e7lar\u0131<\/p>\n<p>Uzmanlar\u0131m\u0131z, Linux sistemlerine y\u00f6nelik tehditleri en aza indirmeye yard\u0131mc\u0131 olmak i\u00e7in bir dizi \u00f6neri belirledi.<\/p>\n<ul>\n<li>Linux i\u00e7in g\u00fcvenilir yaz\u0131l\u0131m kaynaklar\u0131n\u0131n bir listesini olu\u015fturun ve \u00fc\u00e7\u00fcnc\u00fc taraf kaynaklardan yaz\u0131l\u0131m y\u00fcklemeyi ve komut dosyalar\u0131n\u0131n \u00e7al\u0131\u015ft\u0131r\u0131lmas\u0131n\u0131 engelleyin;<\/li>\n<li>Yaz\u0131l\u0131mlar\u0131 zaman\u0131nda g\u00fcncelleyin \u2014 yaz\u0131l\u0131mlar\u0131 otomatik olarak g\u00fcncellenecek ayarlay\u0131n ve \u015fifrelenmemi\u015f kanallar \u00fczerinden yap\u0131lan g\u00fcncellemelerden uzak durun;<\/li>\n<li>G\u00fcvenlik duvar\u0131n\u0131 dikkatli \u015fekilde yap\u0131land\u0131r\u0131n, g\u00fcnl\u00fck tuttu\u011fundan ve kullan\u0131lmayan t\u00fcm ba\u011flant\u0131 noktalar\u0131n\u0131 engelledi\u011finden emin olun;<\/li>\n<li>\u0130ki fakt\u00f6rl\u00fc kimlik do\u011frulama ve donan\u0131m belirte\u00e7leri (token) kullan\u0131n;<\/li>\n<li>Dahili sald\u0131r\u0131lara haz\u0131rl\u0131kl\u0131 olun: \u015eifreleme, G\u00fcvenilir \u00d6ny\u00fckleme ve donan\u0131m b\u00fct\u00fcnl\u00fc\u011f\u00fc kontrol ara\u00e7lar\u0131n\u0131 kullan\u0131n;<\/li>\n<li>T\u00fcm sistemleri periyodik olarak denetimden ge\u00e7irin, sald\u0131r\u0131 g\u00f6stergeleri i\u00e7in g\u00fcnl\u00fckleri kontrol edin ve s\u0131zma testi yap\u0131n;<\/li>\n<li>Bir Linux sunucusu g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fc kullan\u0131n.<\/li>\n<\/ul>\n<p>\u00d6zellikle kurumsal \u00e7\u00f6z\u00fcm\u00fcm\u00fcz <a href=\"https:\/\/www.kaspersky.com.tr\/small-to-medium-business-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">Kaspersky Total Security for Business<\/a>, e-posta sunucular\u0131n\u0131 ve a\u011f ge\u00e7itlerini korumak i\u00e7in gereken bile\u015fenleri i\u00e7erir. Daha ayr\u0131nt\u0131l\u0131 tavsiye ve \u00f6nerileri bu Securelist g\u00f6nderisinde bulabilirsiniz.<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kesb-trial-leadgen\">\n","protected":false},"excerpt":{"rendered":"<p>Uzmanlar\u0131m\u0131z, Linux&#8217;u hedefleyen komplike sald\u0131r\u0131lar\u0131 ve APT giri\u015fimlerini analiz ettiler ve baz\u0131 g\u00fcvenlik \u00f6nerileri sa\u011flad\u0131lar.<\/p>\n","protected":false},"author":2581,"featured_media":8804,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194],"tags":[493,618,2276],"class_list":{"0":"post-8803","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"tag-apt","10":"tag-hedefli-saldirilar","11":"tag-linux"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/threats-targeting-linux\/8803\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/threats-targeting-linux\/21895\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/threats-targeting-linux\/17369\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/threats-targeting-linux\/8593\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/threats-targeting-linux\/23286\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/threats-targeting-linux\/21471\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/threats-targeting-linux\/20081\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/threats-targeting-linux\/23848\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/threats-targeting-linux\/22799\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/threats-targeting-linux\/29068\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/threats-targeting-linux\/37001\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/threats-targeting-linux\/15657\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/threats-targeting-linux\/16032\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/threats-targeting-linux\/13973\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/threats-targeting-linux\/25138\/"},{"hreflang":"zh","url":"https:\/\/www.kaspersky.com.cn\/blog\/threats-targeting-linux\/11957\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/threats-targeting-linux\/29222\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/threats-targeting-linux\/26066\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/threats-targeting-linux\/22869\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/threats-targeting-linux\/28189\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/threats-targeting-linux\/28021\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/linux\/","name":"Linux"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8803","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2581"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=8803"}],"version-history":[{"count":2,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8803\/revisions"}],"predecessor-version":[{"id":8806,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/8803\/revisions\/8806"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/8804"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=8803"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=8803"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=8803"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}