{"id":9575,"date":"2021-04-28T10:19:58","date_gmt":"2021-04-28T07:19:58","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=9575"},"modified":"2021-04-28T10:19:58","modified_gmt":"2021-04-28T07:19:58","slug":"how-to-protect-from-smishing","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/how-to-protect-from-smishing\/9575\/","title":{"rendered":"Smishing, kimlik av\u0131na kar\u015f\u0131 \u2014 ve Smishing&#8217;e kar\u015f\u0131 korunma y\u00f6ntemleri"},"content":{"rendered":"<p>Smishing\u2019in y\u00fckseli\u015fiyle birlikte <a href=\"https:\/\/localnews8.com\/news\/2021\/04\/01\/ag-nessel-warns-of-smishing-text-message-scams\/\" target=\"_blank\" rel=\"noopener nofollow\">Amerika Birle\u015fik Devletleri<\/a>, <a href=\"https:\/\/www.blmagazine.it\/phishing-smishing-e-come-evitarli-la-truffa-dal-sms-posteinfo\/\" target=\"_blank\" rel=\"noopener nofollow\">\u0130talya<\/a> ve <a href=\"https:\/\/cryptoid.com.br\/identidade-digital-destaques\/smishing-voce-sabe-quando-a-mensagem-e-do-banco\/\" target=\"_blank\" rel=\"noopener nofollow\">Brezilya<\/a> medyas\u0131 bu yeni doland\u0131r\u0131c\u0131l\u0131klarla ilgili endi\u015fe verici hikayelerden ge\u00e7ilmiyor. Alman polisi, bu y\u00f6ntemle ger\u00e7ekle\u015ftirilen bir doland\u0131r\u0131c\u0131l\u0131k giri\u015fimine ili\u015fkin <a href=\"https:\/\/www.rinteln-aktuell.de\/smishing-polizei-warnt-vor-sms-mit-paketbenachrichtigungen\/\" target=\"_blank\" rel=\"noopener nofollow\">resmi bildiri<\/a> bile yay\u0131nlad\u0131.<\/p>\n<p>Bu olay, yap\u0131lan aramalardaki pop\u00fclerli\u011finden de anla\u015f\u0131laca\u011f\u0131 \u00fczere, y\u00fcksek tutarlarda kazan\u00e7 sa\u011fl\u0131yor. Peki nedir bu smishing?<\/p>\n<div id=\"attachment_9577\" style=\"width: 1034px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-9577\" class=\"wp-image-9577 size-large\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2021\/04\/27153136\/how-to-protect-from-smishing-popularity-1024x305.png\" alt=\"\" width=\"1024\" height=\"305\"><p id=\"caption-attachment-9577\" class=\"wp-caption-text\">Son birka\u00e7 y\u0131lda Google\u2019da yap\u0131lan \u201csmishing\u201d aramas\u0131n\u0131n pop\u00fclerli\u011finde ya\u015fanan art\u0131\u015f<\/p><\/div>\n<p>\u00a0<\/p>\n<h2>Nedir bu smishing, nas\u0131l \u00e7al\u0131\u015f\u0131yor?<\/h2>\n<p>Smishing, e-posta yerine k\u0131sa mesaj (SMS) yoluyla yay\u0131lan kimlik av\u0131d\u0131r; dolay\u0131s\u0131yla smishing ad\u0131 SMS + phishing\u2019den (kimlik av\u0131) geliyor. Yap\u0131lan baz\u0131 s\u0131n\u0131fland\u0131rmalarda, mesajla\u015fma uygulamalar\u0131 \u00fczerinden ger\u00e7ekle\u015ftirilen kimlik av\u0131 sald\u0131r\u0131lar\u0131 da smishing\u2019in bir par\u00e7as\u0131 olarak de\u011ferlendiriliyor, ancak bunun ayr\u0131 bir kategori oldu\u011funu d\u00fc\u015f\u00fcn\u00fcyoruz ve bu yaz\u0131da bundan bahsetmeyece\u011fiz.<\/p>\n<p>Di\u011fer kimlik av\u0131 giri\u015fimlerinde oldu\u011fu gibi ama\u00e7, mesaj\u0131 alan ki\u015fileri, genellikle \u00e7evrimi\u00e7i bankac\u0131l\u0131k parolalar\u0131 veya banka kart\u0131 bilgileri gibi hassas bilgilerini doland\u0131r\u0131c\u0131larla payla\u015fmalar\u0131 i\u00e7in kand\u0131rmakt\u0131r. Bunu yapmak i\u00e7in doland\u0131r\u0131c\u0131lar, genellikle al\u0131c\u0131n\u0131n bir ba\u011flant\u0131ya t\u0131klayarak \u00e7\u00f6zmesi gereken kendi yaratt\u0131klar\u0131 bir sorunla ilgili \u2014 \u00f6rne\u011fin g\u00f6nderiye ili\u015fkin ya\u015fanan bir sorun, \u00f6denmemi\u015f fatura veya bloke edilmi\u015f hesap \u2014 k\u0131sa mesajlar g\u00f6nderirler. Bundan sonraki a\u015famada iki se\u00e7enek vard\u0131r:<\/p>\n<p>Birinci senaryoda kurbana, \u00f6nemli bilgilerin talep edildi\u011fi yasal bir uygulama olarak gizlenmi\u015f k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131mlar bula\u015ft\u0131r\u0131l\u0131r;<\/p>\n<p>\u0130kinci senaryoda ise kurban\u0131n, \u00f6nemli bilgilerin talep edildi\u011fi yasal bir internet sitesi olarak gizlenmi\u015f bir internet sayfas\u0131na girmesi sa\u011flan\u0131r.<\/p>\n<p>Se\u00e7ilecek senaryo, doland\u0131r\u0131c\u0131n\u0131n k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131mlar ve sahte internet siteleri aras\u0131nda kendini tarafta rahat hissetti\u011fine ba\u011fl\u0131d\u0131r. Her iki durumda da kurbandan elde edilen sonu\u00e7 ayn\u0131d\u0131r. Benzer doland\u0131r\u0131c\u0131l\u0131klar da binlerce <a href=\"https:\/\/www.9news.com.au\/national\/australia-post-scam-circulating-asks-people-to-pay-postage-fee-steals-credit-card\/221a5f34-251f-480b-801c-905c8398baaa\" target=\"_blank\" rel=\"noopener nofollow\">dolar<\/a>, <a href=\"https:\/\/www.thejournal.ie\/bank-of-ireland-text-scam-2-5169511-Aug2020\/\" target=\"_blank\" rel=\"noopener nofollow\">euro<\/a> ve <a href=\"https:\/\/www.yourmoney.com\/household-bills\/more-than-240000-lost-through-fake-parcel-delivery-note-scam\/\" target=\"_blank\" rel=\"noopener nofollow\">pound<\/a>\u2018un \u00e7al\u0131nmas\u0131n\u0131 sa\u011fl\u0131yor. Peki son zamanlarda SMS kimlik av\u0131n\u0131n bu kadar pop\u00fcler hale gelmesinin nedeni ve bunu tipik kimlik av\u0131ndan daha tehlikeli yapan nedir?<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kisa-generic-2\">\n<h2>Smishing\u2019i tipik kimlik av\u0131ndan daha tehlikeli yapan nedir?<\/h2>\n<p>\u00c7o\u011fumuz e-posta doland\u0131r\u0131c\u0131l\u0131\u011f\u0131na az \u00e7ok al\u0131\u015ft\u0131k ve genellikle art\u0131k insanlar bu doland\u0131r\u0131c\u0131l\u0131k giri\u015fimlerini nas\u0131l tan\u0131yacaklar\u0131n\u0131 ve \u00f6nleyeceklerini biliyorlar. Doland\u0131r\u0131c\u0131l\u0131k amac\u0131yla k\u0131sa mesaj kullan\u0131lmas\u0131 \u00e7ok da tercih edilen bir yol de\u011fildir, bu nedenle insanlar\u0131n gelen k\u0131sa mesaj\u0131n bir doland\u0131r\u0131c\u0131l\u0131k giri\u015fimi oldu\u011funu d\u00fc\u015f\u00fcnme olas\u0131l\u0131\u011f\u0131 daha d\u00fc\u015f\u00fckt\u00fcr.<\/p>\n<p>Bunun da \u00f6tesinde, insanlar k\u0131sa mesajlara daha \u00e7ok g\u00fcvenmelerine ra\u011fmen k\u0131sa mesajlar e-postadan daha az g\u00fcvenli olma e\u011filimindedir. G\u00fcn\u00fcm\u00fczde, her d\u00fczg\u00fcn say\u0131labilecek e-posta hizmetinde yerle\u015fik bir ak\u0131ll\u0131 spam filtresi bulunuyor. Bu filtreler elbette m\u00fckemmel de\u011fildir ancak doland\u0131r\u0131c\u0131lar\u0131n onlar\u0131 a\u015fmak i\u00e7in s\u00fcrekli <a href=\"https:\/\/www.kaspersky.com.tr\/blog\/delayed-phishing-countermeasures\/8856\/\" target=\"_blank\" rel=\"noopener\">yeni y\u00f6ntemler<\/a> geli\u015ftirmeleri gerekir. Ne yaz\u0131k ki s\u00f6z konusu esneklik ve do\u011fruluk oldu\u011funda, mobil operat\u00f6rlerin spam filtreleri \u00e7ok yetersizdir.<\/p>\n<p>Ayr\u0131ca insanlar k\u0131sa mesajlar\u0131 genellikle hareket halindeyken veya ba\u015fka \u015feylerle u\u011fra\u015ft\u0131klar\u0131 s\u0131rada okurlar. Bu durum, k\u0131sa mesajlar\u0131n daha az tehlikeli oldu\u011fu d\u00fc\u015f\u00fcncesiyle ile bir araya geldi\u011finde, insanlar\u0131n bunlara daha az dikkat etme e\u011filiminde olduklar\u0131 anlam\u0131na gelir ve bu da sald\u0131r\u0131n\u0131n ba\u015far\u0131 olas\u0131l\u0131\u011f\u0131n\u0131 art\u0131r\u0131r. Di\u011fer bir deyi\u015fle, insanlar bir mesaj ald\u0131klar\u0131nda, ak\u0131llar\u0131ndaki tehlike i\u015faretlerine ili\u015fkin kontrol mekanizmas\u0131n\u0131 dikkate almazlar ve mesajda yer alan ba\u011flant\u0131ya t\u0131klarlar.<\/p>\n<p>Son olarak da SMS mesajlar\u0131, bir doland\u0131r\u0131c\u0131l\u0131\u011f\u0131 tan\u0131man\u0131za yard\u0131mc\u0131 olacak daha az tehlike i\u015faretine sahiptir. Bir e-posta ald\u0131\u011f\u0131n\u0131zda, g\u00f6nderenin adresine bakabilir, tasar\u0131m ve d\u00fczenini de\u011ferlendirebilir ve e-postan\u0131n genel anlamda ne kadar mant\u0131kl\u0131 oldu\u011funu d\u00fc\u015f\u00fcnebilirsiniz \u2014 k\u0131sacas\u0131, standart tehlike i\u015faretlerine bakabilirsiniz.<\/p>\n<p>Ancak s\u00f6z konusu k\u0131sa mesajlar oldu\u011funda, yasal mesajlar bile birbirine \u00e7ok benzerdir, genellikle standart olmayan bir dil kullan\u0131l\u0131r ve bir tasar\u0131mdan bahsedilemez; ve teknik becerilere sahip doland\u0131r\u0131c\u0131lar, g\u00f6nderenin ger\u00e7ek numaras\u0131n\u0131 sahte bir numara ile de\u011fi\u015ftirerek g\u00f6nderenin bilgilerini ger\u00e7ek\u00e7i bir \u015fekilde <a href=\"https:\/\/www.which.co.uk\/news\/2017\/10\/revealed-how-text-message-scammers-pose-as-your-bank-to-rip-you-off\/\" target=\"_blank\" rel=\"noopener nofollow\">taklit<\/a> edebilir.<\/p>\n<h2>Smishing\u2019 kar\u015f\u0131 kendinizi nas\u0131l koruyabilirsiniz<\/h2>\n<p>Geleneksel kimlik av\u0131nda oldu\u011fu gibi, smishing\u2019e kar\u015f\u0131 da g\u00fc\u00e7l\u00fc savunmalara sahipsiniz.<\/p>\n<ul>\n<li>K\u0131sa mesajlarda yer alan ba\u011flant\u0131lara t\u0131klamay\u0131n veya mesaj i\u00e7inde sahip oldu\u011funuz herhangi bir bilgiden bahsetmeyin. Genel bir kural olarak, ne kadar az, o kadar iyi;<\/li>\n<li>\u0130mkan\u0131n\u0131z olan her durumda iki fakt\u00f6rl\u00fc kimlik do\u011frulamay\u0131 kullan\u0131n. Bu y\u00f6ntemi kulland\u0131\u011f\u0131n\u0131zda, su\u00e7lular\u0131n \u00e7al\u0131nan parolan\u0131za sahip olmas\u0131 bile hesab\u0131n\u0131z\u0131 ele ge\u00e7irmeleri konusunda onlara bir fayda sa\u011flamaz.<\/li>\n<li>Su\u00e7lular\u0131n hesab\u0131n\u0131za eri\u015fti\u011finden \u015f\u00fcpheleniyorsan\u0131z derhal bankan\u0131zla ileti\u015fime ge\u00e7in. Banka, kart\u0131n\u0131z\u0131 bloke edebilir, parolan\u0131z\u0131 de\u011fi\u015ftirebilir ve devam\u0131nda atman\u0131z gereken ad\u0131mlar konusunda size tavsiyelerde bulunabilir.<\/li>\n<\/ul>\n<p>Bir ka\u00e7 s\u0131k\u00e7a sorulan soru ile akl\u0131n\u0131za tak\u0131lan konular\u0131 netle\u015ftirece\u011fiz.<\/p>\n<p><em>Yaln\u0131zca mesaj g\u00f6nderim listesinden \u00e7\u0131karmalar\u0131 amac\u0131yla hileli mesajlara yan\u0131t vermeli miyim?<\/em><\/p>\n<p>Bunu yapmay\u0131n. Gelen mesaja yan\u0131t vermek, yaln\u0131zca telefon numaran\u0131z\u0131n aktif oldu\u011funu onaylad\u0131\u011f\u0131n\u0131z anlam\u0131na gelir. Yasal \u015firketlerin g\u00f6nderim listesinden \u00e7\u0131kmak bile zorken yasay\u0131 \u00e7i\u011fneyen insanlardan d\u00fcr\u00fcst olmalar\u0131n\u0131 bekleyemezsiniz.<\/p>\n<p><em>Peki ya gelen mesaj smishing ama\u00e7l\u0131 de\u011fil de bankamdan gelen \u00f6nemli bir mesajsa?<\/em><\/p>\n<p>E\u011fer gelen mesaj konusunda herhangi bir \u015f\u00fcpheniz varsa do\u011frudan bankan\u0131zla ileti\u015fime ge\u00e7in. Muhtemelen mesaj\u0131 g\u00f6nderen onlard\u0131r. Bu arada bankayla ileti\u015fim kurmaktan bahsederken, bankan\u0131zla ileti\u015fime ge\u00e7ece\u011finiz telefon numaras\u0131n\u0131 bankan\u0131n internet sitesi gibi resmi bir kaynaktan ald\u0131\u011f\u0131n\u0131zdan emin olun. Ne yaparsan\u0131z yap\u0131n, kesinlikle \u015f\u00fcpheli mesajdaki ileti\u015fim bilgilerini kullanmay\u0131n.<\/p>\n<p><em>SMS mesaj\u0131yla ger\u00e7ekle\u015ftirilen kimlik av\u0131n\u0131 otomatik \u015fekilde filtrelemenin bir yolu var m\u0131?<\/em><\/p>\n<p>Elbette var! Bir\u00e7ok g\u00fcvenlik \u00e7\u00f6z\u00fcm\u00fc uzun s\u00fcredir, k\u0131sa mesajlardaki ve mesajla\u015fma uygulamalar\u0131ndaki \u015f\u00fcpheli ba\u011flant\u0131lar\u0131 yakalamak, sizi bunlar hakk\u0131nda uyarmak ve bir anl\u0131k da olsa tedbiri elden b\u0131raksan\u0131z dahi para kaybetmenizi \u00f6nlemek i\u00e7in yerle\u015fik filtreler kullan\u0131yor. \u00d6rne\u011fin,\u00a0<a href=\"https:\/\/www.kaspersky.com.tr\/mobile-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2c_kdaily_wpplaceholder_sm-team___kisa____c8090141bf3f79f6\" target=\"_blank\" rel=\"noopener\">Kaspersky Internet Security for Android<\/a> \u00fcr\u00fcn\u00fcm\u00fcz\u00fc kullanarak bu t\u00fcr filtrelerden yararlanabilirsiniz.<\/p>\n<p><strong><input type=\"hidden\" class=\"category_for_banner\" value=\"android-malware\"><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Doland\u0131r\u0131c\u0131lar, banka kart\u0131 bilgilerini ve \u00e7evrimi\u00e7i bankac\u0131l\u0131k parolalar\u0131n\u0131 almak i\u00e7in SMS mesajlar\u0131n\u0131 kullanma konusunda ba\u015far\u0131ya ula\u015ft\u0131lar.<\/p>\n","protected":false},"author":2548,"featured_media":9576,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1284,1351],"tags":[105,750,1074,665,2409,46],"class_list":{"0":"post-9575","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tips","8":"category-threats","9":"tag-android","10":"tag-ios","11":"tag-kimlik-avi","12":"tag-mobil-cihazlar","13":"tag-smishing","14":"tag-sms"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/how-to-protect-from-smishing\/9575\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/how-to-protect-from-smishing\/22783\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/how-to-protect-from-smishing\/18265\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/how-to-protect-from-smishing\/9204\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/how-to-protect-from-smishing\/24627\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/how-to-protect-from-smishing\/22655\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/how-to-protect-from-smishing\/21733\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/how-to-protect-from-smishing\/25146\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/how-to-protect-from-smishing\/24467\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/how-to-protect-from-smishing\/30558\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/how-to-protect-from-smishing\/39491\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/how-to-protect-from-smishing\/16842\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/how-to-protect-from-smishing\/17378\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/how-to-protect-from-smishing\/14776\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/how-to-protect-from-smishing\/26579\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/how-to-protect-from-smishing\/30600\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/how-to-protect-from-smishing\/26957\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/how-to-protect-from-smishing\/23819\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/how-to-protect-from-smishing\/29158\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/how-to-protect-from-smishing\/28956\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/kimlik-avi\/","name":"kimlik av\u0131"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9575","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2548"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=9575"}],"version-history":[{"count":1,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9575\/revisions"}],"predecessor-version":[{"id":9578,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9575\/revisions\/9578"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/9576"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=9575"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=9575"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=9575"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}