{"id":9747,"date":"2021-06-17T21:46:15","date_gmt":"2021-06-17T18:46:15","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=9747"},"modified":"2021-06-17T21:47:00","modified_gmt":"2021-06-17T18:47:00","slug":"phishing-on-picture","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/phishing-on-picture\/9747\/","title":{"rendered":"G\u00f6r\u00fcnt\u00fcler \u00fczerinden Office 365 bilgilerinin kimlik av\u0131"},"content":{"rendered":"<p>Modern kimlik av\u0131 kar\u015f\u0131t\u0131 ve istenmeyen e-mail kar\u015f\u0131t\u0131 \u00e7\u00f6z\u00fcmler, daha \u00e7ok \u00e7e\u015fitli yeni makine \u00f6\u011frenimi teknolojilerinin ortaya \u00e7\u0131kmas\u0131na neden oluyor. Metni analiz etmek i\u00e7in n\u00f6ral a\u011f kullanmak bu teknolojilerin kolay kolay kand\u0131r\u0131lmas\u0131n\u0131 \u00f6nl\u00fcyor, bu nedenle sald\u0131rganlar da basit ama etkili bir numara kullanmaya ba\u015flad\u0131. Metni, resmin i\u00e7ine yerle\u015ftiriyorlar. Sonra sald\u0131rganlar resmi, Base64 \u015fifrelemesi kullanarak bir ileti metnine g\u00f6m\u00fcyorlar (genellikle e-mail mesajlar\u0131ndaki g\u00f6r\u00fcnt\u00fclerin sunuculu\u011funu harici bir internet sitesi yapar ve mailin al\u0131c\u0131lar\u0131, \u015firket d\u0131\u015f\u0131nda birinden gelen e-maillerdeki resimleri a\u00e7maz). Bu t\u00fcr e-mailler genellikle kullan\u0131c\u0131lar\u0131n Microsoft Office 365 kimliklerini hedef al\u0131yor.<\/p>\n<h2>Kimlik av\u0131 e-mailleri<\/h2>\n<p>Bu e-mailler asl\u0131nda \u00a0beyaz zemin (b\u00f6ylece Outlook\u2019un varsay\u0131lan aray\u00fcz\u00fcnden ay\u0131rt edilemez) \u00fczerine konmu\u015f resimlerdir. Bunun gibi bir kimlik av\u0131 e-mailine s\u0131k g\u00f6r\u00fclen bir \u00f6rnek:<\/p>\n<div id=\"attachment_9748\" style=\"width: 790px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-9748\" class=\"wp-image-9748 size-full\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2021\/06\/16173810\/phishing-on-picture-letter.jpg\" alt=\"\" width=\"780\" height=\"765\"><p id=\"caption-attachment-9748\" class=\"wp-caption-text\">Otomatik olarak olu\u015fturulmu\u015f bir e-mailin taklidi.<\/p><\/div>\n<p>\u00a0<\/p>\n<p>Her zamanki gibi, mesaj\u0131n her \u00f6gesinin uygun, normal ve akla yatk\u0131n olup olmad\u0131\u011f\u0131n\u0131 d\u00fc\u015f\u00fcnmeliyiz. Burada g\u00f6ze \u00e7arpan tek \u015fey, bi\u00e7im. Bu e-mailin (ya da herhangi bir e-mailin) resim olmas\u0131n\u0131 gerektiren yasal bir neden yok. \u00d6zellikle hesap do\u011frulamalar gibi otomatik olarak olu\u015fturulan e-mailler her zaman metin format\u0131ndad\u0131r. E-mailin resim mi yoksa metin mi oldu\u011funu kontrol etmek \u00e7ok kolay. K\u00f6pr\u00fclerin veya butonlar\u0131n \u00fczerine farenizle gelin ve imlecin de\u011fi\u015fip de\u011fi\u015fmedi\u011fine bak\u0131n. De\u011fi\u015fiyorsa, normal bir metne bak\u0131yorsunuz demektir. Ancak di\u011fer durumda, resmin herhangi bir yerine t\u0131klad\u0131\u011f\u0131n\u0131zda k\u00f6pr\u00fc ba\u011flant\u0131s\u0131 a\u00e7\u0131lacakt\u0131r \u00e7\u00fcnk\u00fc hedef URL burada resme ba\u011fl\u0131d\u0131r. Yani, resmin tamam\u0131 bir buton\/k\u00f6pr\u00fc i\u015flevi g\u00f6r\u00fcr.<\/p>\n<p>\u015e\u00fcphede kal\u0131rsan\u0131z metnin bir k\u0131sm\u0131n\u0131n alt\u0131n\u0131 \u00e7izmeyi veya mail pencerenizin boyutunu de\u011fi\u015ftirmeyi deneyin. Bakt\u0131\u011f\u0131n\u0131z \u015fey bir resimse, i\u00e7indeki hi\u00e7bir kelimenin alt\u0131n\u0131 \u00e7izemezsiniz ve pencerenin boyutunu de\u011fi\u015ftirdi\u011finiz zaman yaz\u0131lar bozulmaz veya uzay\u0131p k\u0131salmaz.<\/p>\n<p>E-mailin genel formu onun g\u00fcvenilir oldu\u011funu g\u00f6stermez. Ayn\u0131 metinde farkl\u0131 yaz\u0131 tipleri, bo\u015fluklar\u0131n ve noktalaman\u0131n yanl\u0131\u015f kullan\u0131lmas\u0131 veya kullan\u0131lan dilin tuhaf olmas\u0131 da doland\u0131r\u0131c\u0131l\u0131k belirtileridir. \u0130nsanlar tabii ki hata yapar; ama Microsoft\u2019un \u015fablonlar\u0131nda genellikle hata olmaz. Herhangi bir e-mailde bu kadar \u00e7ok, bariz hata g\u00f6r\u00fcyorsan\u0131z bu b\u00fcy\u00fck ihtimalle kimlik av\u0131d\u0131r.<\/p>\n<p>Ayr\u0131ca, mailde hesab\u0131n 48 saat i\u00e7inde do\u011frulanmas\u0131 gerekti\u011fi yaz\u0131yorsa bu da sizin i\u00e7in bir uyar\u0131 olmal\u0131d\u0131r. Doland\u0131r\u0131c\u0131lar, genellikle kullan\u0131c\u0131lar\u0131 acele ettirerek dikkatsiz davranmalar\u0131n\u0131 sa\u011flamaya \u00e7al\u0131\u015f\u0131r.<\/p>\n<h2>Kimlik av\u0131 sitesi<\/h2>\n<p>En a\u015fa\u011f\u0131da, e-mailin sizi y\u00f6nlendirdi\u011fi internet sitesi hi\u00e7 mi hi\u00e7 inand\u0131r\u0131c\u0131 de\u011fil. Microsof\u2019ta ait olan yasal bir sitenin sunucusu da Microsoft\u2019tur; ama \u201cWordPress.com ile kendi internet sitenizi olu\u015fturun\u201d banner\u0131, a\u00e7\u0131k\u00e7a sitenin herkese a\u00e7\u0131k sunucu platform WordPress \u00fczerinde oldu\u011funu g\u00f6steriyor.<\/p>\n<div id=\"attachment_9749\" style=\"width: 1034px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-9749\" class=\"wp-image-9749 size-large\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/91\/2021\/06\/16173843\/phishing-on-picture-website-1024x360.jpg\" alt=\"\" width=\"1024\" height=\"360\"><p id=\"caption-attachment-9749\" class=\"wp-caption-text\">Bir Microsoft internet sayfas\u0131n\u0131n k\u00f6t\u00fc bir taklidi.<\/p><\/div>\n<p>\u00a0<\/p>\n<p>B\u00fct\u00fcn olarak bak\u0131ld\u0131\u011f\u0131nda bu internet sitesinin tasar\u0131m\u0131 ger\u00e7ekmi\u015f gibi g\u00f6r\u00fcn\u00fcyor; tabii 25 y\u0131l \u00f6ncesinde olsayd\u0131k. Kar\u015f\u0131la\u015ft\u0131rma i\u00e7in modern Microsoft hizmetleri giri\u015f sayfas\u0131na bakabilirsiniz: <a href=\"https:\/\/login.microsoftonline.com\/\" target=\"_blank\" rel=\"noopener nofollow\">https:\/\/login.microsoftonline.com\/<\/a><\/p>\n<h2>Kendinizi koruman\u0131n yollar\u0131<\/h2>\n<p>G\u00fcvenilir ve koruyucu bir \u00e7\u00f6z\u00fcm, kimlik av\u0131 e-maillerini sadece metin analizi de\u011fil; ba\u015fka bir\u00e7ok etkene dayanarak tespit eder. Bu nedenle biz <a href=\"https:\/\/www.kaspersky.com.tr\/small-to-medium-business-security\/microsoft-office-365-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder____kso365___\" target=\"_blank\" rel=\"noopener\">Kaspersky Security for Microsoft Office 365<\/a> gibi modern mail koruma mekanizmalar\u0131n\u0131 kullanman\u0131z\u0131 \u00f6neririz.<\/p>\n<p>Her \u00e7al\u0131\u015fma yeri ve ba\u011flan\u0131lan cihazda <a href=\"https:\/\/www.kaspersky.com.tr\/small-to-medium-business-security?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______\" target=\"_blank\" rel=\"noopener\">ek g\u00fcvenlik<\/a> de olmal\u0131d\u0131r. B\u00f6ylece kimlik av\u0131 veya di\u011fer numaralara kar\u015f\u0131 fazladan bir koruma sa\u011flayabilirsiniz.<\/p>\n<p>Son olarak, her zamanki \u00f6nerimizi unutmay\u0131n. <a href=\"https:\/\/k-asap.com\/tr\/?icid=tr_kdailyplacehold_acq_ona_smm__onl_b2b_kasperskydaily_wpplaceholder_______&amp;utm_source=kdaily&amp;utm_medium=blog&amp;utm_campaign=tr_wpplaceholder_nv0092&amp;utm_content=link&amp;utm_term=tr_kdaily_organic_avmwswubv8qh92b\" target=\"_blank\" rel=\"noopener\">E\u011fitimler<\/a> ile \u00e7al\u0131\u015fanlar\u0131n siber g\u00fcvenlik fark\u0131ndal\u0131\u011f\u0131n\u0131 geli\u015ftirmeye devam edin. \u0130nsanlar siber su\u00e7lular\u0131n y\u00f6ntemlerini ne kadar iyi anlarsa, kimlik av\u0131 tuzaklar\u0131na d\u00fc\u015fme olas\u0131l\u0131klar\u0131 da o kadar d\u00fc\u015f\u00fck olur.<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kesb-trial-leadgen\">\n","protected":false},"excerpt":{"rendered":"<p>Sald\u0131rganlar, metin analizi mekanizmalar\u0131n\u0131 atlatabilmek i\u00e7in kimlik av\u0131 e-maillerini g\u00f6r\u00fcnt\u00fc format\u0131nda da\u011f\u0131t\u0131yor. Tehlikeden ka\u00e7\u0131nman\u0131n yollar\u0131. <\/p>\n","protected":false},"author":2598,"featured_media":9750,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194],"tags":[1002,1074],"class_list":{"0":"post-9747","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"tag-e-mail","10":"tag-kimlik-avi"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/phishing-on-picture\/9747\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/phishing-on-picture\/22981\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/phishing-on-picture\/18463\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/phishing-on-picture\/9186\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/phishing-on-picture\/24913\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/phishing-on-picture\/22935\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/phishing-on-picture\/22129\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/phishing-on-picture\/25478\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/phishing-on-picture\/24949\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/phishing-on-picture\/30911\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/phishing-on-picture\/40260\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/phishing-on-picture\/17127\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/phishing-on-picture\/17626\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/phishing-on-picture\/14933\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/phishing-on-picture\/31080\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/phishing-on-picture\/27190\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/phishing-on-picture\/24015\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/phishing-on-picture\/29358\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/phishing-on-picture\/29151\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/kimlik-avi\/","name":"kimlik av\u0131"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9747","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2598"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=9747"}],"version-history":[{"count":2,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9747\/revisions"}],"predecessor-version":[{"id":9753,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9747\/revisions\/9753"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/9750"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=9747"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=9747"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=9747"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}