{"id":9677,"date":"2021-06-01T11:32:45","date_gmt":"2021-06-01T08:32:45","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=9677"},"modified":"2021-06-01T11:32:45","modified_gmt":"2021-06-01T08:32:45","slug":"rsa2021-captcha-is-dead","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/rsa2021-captcha-is-dead\/9677\/","title":{"rendered":"HUZUR \u0130\u00c7\u0130NDE UYU, CAPTCHA"},"content":{"rendered":"<p>2021 RSA Konferans\u0131\u2019nda <a href=\"https:\/\/www.rsaconference.com\/usa\/agenda\/session\/web-attacks-and-fraud-lessons-learned-from-the-deep-end-of-the-pool\" target=\"_blank\" rel=\"noopener nofollow\">Web sald\u0131r\u0131lar\u0131 ve \u00e7evrimi\u00e7i doland\u0131r\u0131c\u0131l\u0131k<\/a> konusuna ili\u015fkin d\u00fczenlenen bir panelde ara\u015ft\u0131rmac\u0131lar, b\u00fcy\u00fck kurulu\u015flara y\u00f6nelik siber su\u00e7 taktikleri ve sald\u0131r\u0131lar \u00fczerine y\u00fcr\u00fct\u00fclen \u00e7al\u0131\u015fmalardan \u00e7\u0131kar\u0131lan dersler \u00fczerine konu\u015ftular. Konu\u015fmac\u0131lardan biri olan eski bir kolluk kuvvetleri memuru Dan Woods\u2019du; bir CAPTCHA \u00e7iftli\u011fi \u00e7al\u0131\u015fan\u0131 olarak ald\u0131\u011f\u0131 e\u011fitime ili\u015fkin edindi\u011fi deneyimden bahsetti. \u0130\u015f y\u00fck\u00fc \u00e7ok fazlayd\u0131 ve kar\u015f\u0131l\u0131\u011f\u0131nda ald\u0131\u011f\u0131 \u00fccret (g\u00fcnl\u00fck yakla\u015f\u0131k 3 dolar) yetersizdi; ancak bu konudaki as\u0131l d\u00fc\u015f\u00fcncesi CAPTCHA\u2019n\u0131n art\u0131k i\u015flevini yerine getirmiyor olmas\u0131yd\u0131.<\/p>\n<p>Genel anlamda bir insan\u0131n kullan\u0131m\u0131na y\u00f6nelik bir aray\u00fcz olu\u015fturuluyorsa, bir botun ona eri\u015fmesine gerek yoktur. Programlar birbirleriyle kullan\u0131c\u0131 aray\u00fczleriyle de\u011fil, API\u2019ler arac\u0131l\u0131\u011f\u0131yla ileti\u015fim kurar; bir kullan\u0131c\u0131 aray\u00fcz\u00fc arac\u0131l\u0131\u011f\u0131yla bir \u00e7evrimi\u00e7i kayna\u011fa veya hizmete eri\u015fmeye \u00e7al\u0131\u015fan bir botun, bir a\u00e7\u0131ktan faydalanma giri\u015fiminin par\u00e7as\u0131 olma ihtimali neredeyse %100\u2019d\u00fcr.<\/p>\n<p>Kullan\u0131c\u0131n\u0131n bir insan m\u0131 yoksa bir bilgisayar m\u0131 oldu\u011funu ay\u0131rt etmeye yarayan bir ara\u00e7 olan CAPTCHA, uzun y\u0131llar boyunca yasad\u0131\u015f\u0131 botlara kar\u015f\u0131 bu konuda tek ba\u015f\u0131na sava\u015ft\u0131. \u00c7evrimi\u00e7i bankac\u0131l\u0131k sistemleri ve sadakat programlar\u0131 da dahil olmak \u00fczere bir\u00e7ok servis hala onu kullan\u0131yor. Peki yine de bu konuda CAPTCHA\u2019ya g\u00fcvenebilir miyiz?<\/p>\n<h2>T\u0131klama \u00e7iftli\u011fi nedir?<\/h2>\n<p><em>T\u0131klama \u00e7iftli\u011fi<\/em>, <a href=\"https:\/\/encyclopedia.kaspersky.com\/glossary\/click-fraud\/\" target=\"_blank\" rel=\"noopener\">t\u0131klama sahtekarl\u0131\u011f\u0131n\u0131n<\/a> insan unsurunu ifade eder: T\u0131klama ba\u015f\u0131na \u00f6deme yap\u0131lan reklamlara t\u0131klayan, bir internet sayfas\u0131n\u0131n arama sonu\u00e7lar\u0131ndaki s\u0131ralamas\u0131n\u0131 y\u00fckselten veya be\u011feni ve g\u00f6r\u00fcnt\u00fcleme say\u0131lar\u0131n\u0131, oy oranlar\u0131n\u0131 ve di\u011fer \u00f6l\u00e7\u00fcmleri art\u0131ran \u00e7ok say\u0131da insan\u0131. Eskiden t\u0131klama i\u015fini botlar yapard\u0131 ancak doland\u0131r\u0131c\u0131l\u0131\u011f\u0131n \u00f6nlenmesi konusunda algoritmalar\u0131n kullan\u0131lmas\u0131, doland\u0131r\u0131c\u0131lar\u0131n ger\u00e7ek insanlar\u0131 kullanmas\u0131na neden oldu.<\/p>\n<p>Woods\u2019u i\u015fe alanlar gibi CAPTCHA hizmetlerinde uzmanla\u015fm\u0131\u015f baz\u0131 t\u0131klama \u00e7iftlikleri, do\u011frulama sorunlar\u0131yla kar\u015f\u0131la\u015fan botlar\u0131n g\u00f6revini \u00fcstlendiler.<\/p>\n<p>CAPTCHA \u00e7iftlik \u00e7al\u0131\u015fan\u0131n\u0131n i\u015fi, bu konuda bir makineye g\u00fcvenilemeyecek derecede karma\u015f\u0131k ancak bir insan i\u00e7in olduk\u00e7a basit olan g\u00f6revleri yerine getirmektir. Yang\u0131n muslu\u011funun oldu\u011fu g\u00f6r\u00fcnt\u00fcleri se\u00e7ebilir, kar\u0131\u015f\u0131k bir harf dizisini anlaml\u0131 hale getirebilir, \u00e7ok basit bir aritmetik denklemini \u00e7\u00f6zebilir veya bunlara benzer \u00e7ok say\u0131da i\u015fi yapabilirler.<\/p>\n<p>\u0130nternette dola\u015fan \u015fu resimdeki konsepte sahip bir \u00e7ok farkl\u0131 g\u00f6r\u00fcnt\u00fcyle kar\u015f\u0131la\u015fm\u0131\u015f olabilirsiniz:<\/p>\n<div id=\"attachment_9678\" style=\"width: 1034px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-9678\" class=\"wp-image-9678 size-large\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2021\/05\/26135220\/rsa2021-captcha-is-dead-comics-TR-1024x975.jpg\" alt=\"\" width=\"1024\" height=\"975\"><p id=\"caption-attachment-9678\" class=\"wp-caption-text\">Robotlar ve CAPTCHA\u2019lar hakk\u0131ndaki internet mimi<\/p><\/div>\n<p>\u00a0<\/p>\n<p>Ancak bu sadece bir \u015fakadan ibaret de\u011fil.<\/p>\n<h2>CAPTCHA\u2019ya ihtiyac\u0131n\u0131z var m\u0131?<\/h2>\n<p>Kullan\u0131c\u0131lar\u0131n hi\u00e7bir zaman CAPTCHA kullanma konusunda \u00f6zel bir d\u00fc\u015fk\u00fcnl\u00fc\u011f\u00fc olmad\u0131. CAPTCHA, yanl\u0131\u015fl\u0131kla ba\u015fka bir resme t\u0131klanmas\u0131, arka planda gizlenen bir yang\u0131n muslu\u011funun veya kar\u0131\u015ft\u0131r\u0131lan harflerde ve say\u0131larda bir karakterin eksik olmas\u0131 gibi hatalara a\u00e7\u0131k bir ara\u00e7t\u0131r. Her \u015fey yolunda bile gitse, CAPTCHA s\u00fcreci UX-negatiftir \u2014 yani ak\u0131\u015f\u0131 bozar ve kullan\u0131c\u0131 deneyimini k\u00f6t\u00fc y\u00f6nde etkiler.<\/p>\n<p>Ayr\u0131ca, CAPTCHA odakl\u0131 doland\u0131r\u0131c\u0131lar\u0131n kulland\u0131\u011f\u0131 tek ara\u00e7 CAPTCHA \u00e7iftlikleri de\u011fildir. \u00d6rne\u011fin baz\u0131 doland\u0131r\u0131c\u0131lar hala bu t\u00fcr bilmeceleri \u00e7\u00f6zebilecek bir yapay zeka \u00fczerinde \u00e7al\u0131\u015fmaya devam ediyor. Ne kadar kusurlu olursa olsun, ek bir koruma katman\u0131 olmas\u0131 sebebiyle CAPTCHA kullanmak mant\u0131kl\u0131 gibi g\u00f6r\u00fcnebilir. Ancak hi\u00e7bir \u015fey o kadar basit de\u011fil.<\/p>\n<h2>CAPTCHA\u2019n\u0131n alternatifleri<\/h2>\n<p>CAPTCHA ara\u00e7lar\u0131 art\u0131k davetsiz misafirlere kar\u015f\u0131 g\u00fcvenilir bir \u015fekilde koruma sa\u011flam\u0131yor ve ger\u00e7ek kullan\u0131c\u0131lar\u0131 rahats\u0131z ediyor. Sonu\u00e7 olarak, modas\u0131 ge\u00e7mi\u015f bu arac\u0131 terk etmenin zaman\u0131 gelmi\u015f olabilir.<\/p>\n<p>Neyse ki, bir sisteme eri\u015fmeye \u00e7al\u0131\u015fan\u0131n bir insan m\u0131 yoksa bir makine mi oldu\u011funu belirlemenin tek otomatik yolu CAPTCHA ara\u00e7lar\u0131 de\u011fil. Daha iyi bir alternatif i\u00e7in <a href=\"https:\/\/www.kaspersky.com.tr\/enterprise-security\/fraud-prevention?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">Kaspersky Fraud Prevention<\/a>\u2018\u0131n gereksiz kimlik do\u011frulama ad\u0131mlar\u0131n\u0131 ortadan kald\u0131ran ve sorunsuz bir kullan\u0131c\u0131 deneyimi sunan Geli\u015fmi\u015f Kimlik Do\u011frulama \u00e7\u00f6z\u00fcm\u00fcne bir g\u00f6z atabilirsiniz.<\/p>\n<p>Geli\u015fmi\u015f Kimlik Do\u011frulama, makine \u00f6\u011frenimi teknolojileri sayesinde, kapsaml\u0131 kullan\u0131c\u0131 davran\u0131\u015f\u0131 analizi, pasif biyometrik g\u00f6stergeler, kimlik do\u011frulamas\u0131 talep edilen cihazla ilgili veriler, bulundu\u011fu ortam ve daha fazla bile\u015fenden yararlanarak kullan\u0131c\u0131n\u0131n oturum a\u00e7mas\u0131na izin verip vermeyece\u011finize, ek do\u011frulamaya ihtiya\u00e7 olup olmad\u0131\u011f\u0131na veya eri\u015fimin k\u0131s\u0131tlamas\u0131na karar vermenizi sa\u011flar. \u00d6z\u00fcnde, bir hizmete eri\u015fen ki\u015finin bir insan m\u0131 yoksa bir makine mi oldu\u011funu do\u011fru bir \u015fekilde belirleyen teknolojidir.<\/p>\n<p>\u00c7\u00f6z\u00fcm\u00fcm\u00fczle ilgili daha fazla ayr\u0131nt\u0131ya\u00a0<a href=\"https:\/\/www.kaspersky.com.tr\/enterprise-security\/fraud-prevention?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">buradan<\/a> ula\u015fabilirsiniz.<\/p>\n<p><strong><input type=\"hidden\" class=\"category_for_banner\" value=\"kesb-b2b\"><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u00c7evrimi\u00e7i ger\u00e7ekle\u015ftirilen 2021 RSA Konferans\u0131&#8217;nda ara\u015ft\u0131rmac\u0131lar, CAPTCHA \u00e7iftlikleri konusunu ele ald\u0131lar.<\/p>\n","protected":false},"author":700,"featured_media":9683,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194],"tags":[2422,612,1876,2420,815,2094],"class_list":{"0":"post-9677","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"tag-captcha","10":"tag-dolandiricilik","11":"tag-rsa-konferansi","12":"tag-rsa2021","13":"tag-rsac","14":"tag-sahtekarlik"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/rsa2021-captcha-is-dead\/9677\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/rsa2021-captcha-is-dead\/22905\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/rsa2021-captcha-is-dead\/18390\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/rsa2021-captcha-is-dead\/9138\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/rsa2021-captcha-is-dead\/24824\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/rsa2021-captcha-is-dead\/22817\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/rsa2021-captcha-is-dead\/21982\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/rsa2021-captcha-is-dead\/25368\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/rsa2021-captcha-is-dead\/24756\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/rsa2021-captcha-is-dead\/30820\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/rsa2021-captcha-is-dead\/40054\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/rsa2021-captcha-is-dead\/16996\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/rsa2021-captcha-is-dead\/17542\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/rsa2021-captcha-is-dead\/14856\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/rsa2021-captcha-is-dead\/26830\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/rsa2021-captcha-is-dead\/30836\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/rsa2021-captcha-is-dead\/27095\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/rsa2021-captcha-is-dead\/23960\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/rsa2021-captcha-is-dead\/29282\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/rsa2021-captcha-is-dead\/29079\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/rsac\/","name":"RSAC"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9677","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/700"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=9677"}],"version-history":[{"count":1,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9677\/revisions"}],"predecessor-version":[{"id":9679,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9677\/revisions\/9679"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/9683"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=9677"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=9677"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=9677"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}