{"id":18192,"date":"2023-11-20T01:00:00","date_gmt":"2023-11-19T22:00:00","guid":{"rendered":"https:\/\/rockvell.com\/?p=18192"},"modified":"2023-11-20T09:45:08","modified_gmt":"2023-11-20T06:45:08","slug":"kaspersky-nin-mur%c9%99kk%c9%99b-hucumlarin-2024-cu-il-ucun-umumi-m%c9%99nz%c9%99r%c9%99si-bar%c9%99d%c9%99-proqnozlari","status":"publish","type":"post","link":"https:\/\/rockvell.com\/?p=18192","title":{"rendered":"\u201cKaspersky\u201d-nin m\u00fcr\u0259kk\u0259b h\u00fccumlar\u0131n 2024-c\u00fc il \u00fc\u00e7\u00fcn \u00fcmumi m\u0259nz\u0259r\u0259si bar\u0259d\u0259 proqnozlar\u0131"},"content":{"rendered":"\n<p class=\"has-medium-font-size\"><strong>\u201cKaspersky<\/strong><strong>\u201d m\u00fcr\u0259kk\u0259b h\u00fccumlar\u0131n 2024-c\u00fc il \u00fc\u00e7\u00fcn \u00fcmumi m\u0259nz\u0259r\u0259si bar\u0259d\u0259 proqnozlar\u0131n\u0131 t\u0259qdim edib <\/strong><strong><\/strong><\/p>\n\n\n\n<p>\u201cKaspersky\u201dnin Qlobal T\u0259dqiqat v\u0259 T\u0259hlil T\u0259hdid M\u0259rk\u0259zinin (GReAT) ekspertl\u0259ri 2024-c\u00fc ild\u0259 mobil, geyil\u0259 bil\u0259n v\u0259 a\u011f\u0131ll\u0131 cihazlara qar\u015f\u0131 <a href=\"https:\/\/securelist.ru\/trng-2023\/\" target=\"_blank\" rel=\"noopener\" title=\"\">Trianqulyasiya \u018fm\u0259liyyat\u0131na<\/a> b\u0259nz\u0259r h\u0259d\u0259fli h\u00fccumlar\u0131n daha tez-tez ba\u015f ver\u0259c\u0259yini proqnozla\u015fd\u0131r\u0131r. H\u0259m\u00e7inin, t\u0259dqiqat\u00e7\u0131lar\u0131n fikrinc\u0259, t\u0259cav\u00fczkarlar t\u0259chizat z\u0259ncirl\u0259rin\u0259 h\u00fccum \u00fcsullar\u0131n\u0131 t\u0259kmill\u0259\u015fdir\u0259c\u0259k v\u0259 daha effektiv fi\u015finq t\u0259hdidl\u0259ri \u00fc\u00e7\u00fcn ma\u015f\u0131n \u00f6yr\u0259nm\u0259 texnologiyalar\u0131ndan istifad\u0259 ed\u0259c\u0259kl\u0259r. B\u00fct\u00fcn bunlar siyasi motivli h\u00fccumlar\u0131n v\u0259 kibercinay\u0259tkar h\u00fccumlar\u0131n\u0131n say\u0131n\u0131n artmas\u0131na g\u0259tirib \u00e7\u0131xara bil\u0259r.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2.png\" alt=\"\" class=\"wp-image-8743\" width=\"460\" height=\"306\" srcset=\"https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2.png 1024w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-300x200.png 300w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-768x512.png 768w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-360x240.png 360w\" sizes=\"(max-width: 460px) 100vw, 460px\" \/><\/figure><\/div>\n\n\n<p><strong>Mobil cihazlar \u00fc\u00e7\u00fcn yeni istismarlar (exploit), fi\u015finq \u00fc\u00e7\u00fcn ma\u015f\u0131n \u00f6yr\u0259nm\u0259si<\/strong>. \u201c<a href=\"https:\/\/securelist.ru\/trng-2023\/\" target=\"_blank\" rel=\"noopener\" title=\"\">Trianqulyasiya \u018fm\u0259liyyat\u0131<\/a>\u201d haqq\u0131nda apar\u0131lan t\u0259dqiqat\u0131n n\u0259tic\u0259l\u0259rin\u0259 \u0259sas\u0259n, ekspertl\u0259r t\u0259cav\u00fczkarlar\u0131n mobil, geyil\u0259 bil\u0259n v\u0259 a\u011f\u0131ll\u0131 cihazlar vasit\u0259sil\u0259 casusluq imkanlar\u0131n\u0131 geni\u015fl\u0259ndir\u0259c\u0259kl\u0259rini g\u00fcman edirl\u0259r. \u201cZero-click\u201d h\u00fccumlar\u0131 (qurbanla qar\u015f\u0131l\u0131ql\u0131 \u0259laq\u0259 olmadan edil\u0259n h\u00fccumlar), SMS v\u0259 ya messencerl\u0259r vasit\u0259sil\u0259 h\u0259yata ke\u00e7iril\u0259n \u201cone-click\u201d h\u00fccumlar\u0131, h\u0259m\u00e7inin \u015f\u0259b\u0259k\u0259 trafikinin \u0259l\u0259 ke\u00e7irilm\u0259si daxil olmaqla, z\u0259iflikl\u0259rd\u0259n v\u0259 istismarlar\u0131n \u00e7atd\u0131r\u0131lmas\u0131n\u0131n az n\u0259z\u0259r\u0259\u00e7arpan \u00fcsullar\u0131ndan istifad\u0259 edilm\u0259si m\u00fcmk\u00fcnd\u00fcr. Cihazlar\u0131n qorunmas\u0131 vacibliyi daha da artacaq.<\/p>\n\n\n\n<p>Ma\u015f\u0131n \u00f6yr\u0259nm\u0259 texnologiyalar\u0131n\u0131n fasil\u0259siz inki\u015faf\u0131 n\u0259tic\u0259sind\u0259 t\u0259cav\u00fczkarlar \u00fc\u00e7\u00fcn fi\u015finq h\u00fccumlar\u0131n\u0131 t\u0259\u015fkil etm\u0259k getdikc\u0259 asanla\u015f\u0131r y\u0259ni onlar h\u0259tta konkret insanlar\u0131n mesajlar\u0131n\u0131 t\u0259qlid ed\u0259, \u015f\u0259b\u0259k\u0259d\u0259n onlar haqq\u0131nda m\u0259lumat toplaya v\u0259 bu m\u0259lumatlar\u0131n k\u00f6m\u0259yi il\u0259 dil modelini \u00f6yr\u0259d\u0259 bil\u0259rl\u0259r.<\/p>\n\n\n\n<p>Geni\u015f yay\u0131lm\u0131\u015f proqram t\u0259minat\u0131 v\u0259 cihazlarda z\u0259iflikl\u0259rin istismar\u0131 monitorinqi \u00fcz\u0259rind\u0259n ke\u00e7ilm\u0259y\u0259c\u0259k ba\u015fqa bir m\u00fch\u00fcm prosesdir. Onlardan b\u0259zil\u0259ri, o c\u00fcml\u0259d\u0259n y\u00fcks\u0259k v\u0259 kritik t\u0259hl\u00fck\u0259 d\u0259r\u0259c\u0259l\u0259rind\u0259 olanlar, b\u0259z\u0259n kifay\u0259t q\u0259d\u0259r \u00f6yr\u0259nilmir v\u0259 aradan qald\u0131r\u0131lmas\u0131 \u00e7ox vaxt apar\u0131r. N\u0259tic\u0259d\u0259, t\u0259cav\u00fczkarlar yeni, geni\u015fmiqyasl\u0131 v\u0259 gizli botnetl\u0259r t\u0259\u015fkil ed\u0259 v\u0259 onlar\u0131n vasit\u0259sil\u0259 h\u0259d\u0259fli h\u00fccumlara ba\u015flaya bil\u0259rl\u0259r.<\/p>\n\n\n\n<p><strong>D\u00f6vl\u0259tl\u0259r t\u0259r\u0259find\u0259n maliyy\u0259l\u0259\u015fdiril\u0259n v\u0259 haktivist kiberh\u00fccumlar\u0131n\u0131n artmas\u0131<\/strong>. Geosiyasi sars\u0131nt\u0131lar fonunda g\u0259l\u0259n il d\u00f6vl\u0259tl\u0259r t\u0259r\u0259find\u0259n d\u0259st\u0259kl\u0259n\u0259n h\u00fccumlar daha tez-tez ba\u015f ver\u0259 bil\u0259r. Onlar\u0131n m\u0259qs\u0259dl\u0259ri m\u0259lumatlar\u0131n o\u011furlanmas\u0131 v\u0259 ya \u015fifr\u0259l\u0259nm\u0259si, \u0130T infrastrukturunun m\u0259hv edilm\u0259si, kibercasusluq v\u0259 kibert\u0259xribat ola bil\u0259r.<\/p>\n\n\n\n<p>Dig\u0259r bir m\u00fch\u00fcm tendensiya haktivizmdir. Haktivistl\u0259r ad\u0259t\u0259n maliyy\u0259 v\u0259 ya dig\u0259r m\u0259nf\u0259\u0259tl\u0259r g\u00fcdm\u00fcrl\u0259r v\u0259 getdikc\u0259 daha \u00e7ox geosiyasi m\u00fcnaqi\u015f\u0259l\u0259rd\u0259 i\u015ftirak edirl\u0259r. Bel\u0259 h\u00fccumlar\u0131n say\u0131 arta bil\u0259r. Bundan ba\u015fqa, haktivistl\u0259rin h\u0259yata ke\u00e7irm\u0259dikl\u0259ri h\u00fccumlar bar\u0259d\u0259 m\u0259lumat verdikl\u0259ri hallar\u0131n say\u0131nda da art\u0131m ola bil\u0259r. Burada \u0259sas m\u0259qs\u0259d t\u0259hl\u00fck\u0259sizlik monitorinq m\u0259rk\u0259zi (SOC) m\u00fct\u0259x\u0259ssisl\u0259rinin v\u0259 informasiya t\u0259hl\u00fck\u0259sizliyi qruplar\u0131n\u0131n diqq\u0259tini real hadis\u0259l\u0259rd\u0259n saxta hadis\u0259l\u0259r\u0259 y\u00f6n\u0259ltm\u0259kdir.<\/p>\n\n\n\n<p>2024-c\u00fc il \u00fc\u00e7\u00fcn dig\u0259r proqnozlara a\u015fa\u011f\u0131dak\u0131lar daxildir:<\/p>\n\n\n\n<ul>\n<li><strong>T\u0259chizat z\u0259nciri bir xidm\u0259t kimi h\u00fccumlar\u0131n h\u0259d\u0259find\u0259<\/strong><\/li>\n<\/ul>\n\n\n\n<p>T\u0259cav\u00fczkarlar b\u00f6y\u00fck m\u00fc\u0259ssis\u0259l\u0259r\u0259 xidm\u0259t g\u00f6st\u0259r\u0259n t\u0259chizat z\u0259ncirl\u0259rin\u0259 h\u00fccum etm\u0259k \u00fc\u00e7\u00fcn ki\u00e7ik \u015firk\u0259tl\u0259ri h\u0259d\u0259f alacaqlar. Motivl\u0259r maliyy\u0259 qazanc\u0131ndan tutmu\u015f casuslu\u011fa q\u0259d\u0259r m\u00fcxt\u0259lif ola bil\u0259r. 2024-c\u00fc ild\u0259 qaranl\u0131q \u015f\u0259b\u0259k\u0259d\u0259 t\u0259chizat z\u0259ncirl\u0259rin\u0259 daha effektiv v\u0259 geni\u015fmiqyasl\u0131 h\u00fccumlara imkan ver\u0259c\u0259k yeni al\u0259tl\u0259rin peyda olmas\u0131 ehtimal\u0131 da n\u0259z\u0259r\u0259 al\u0131nmal\u0131d\u0131r.<\/p>\n\n\n\n<ul>\n<li><strong>Haker xidm\u0259tl\u0259ri t\u0259klif ed\u0259n qruplar\u0131n say\u0131n\u0131n artmas\u0131<\/strong><\/li>\n<\/ul>\n\n\n\n<p>M\u0259lumat o\u011furlu\u011fu xidm\u0259tl\u0259ri t\u0259klif ed\u0259n haker qruplar\u0131n\u0131n say\u0131 artacaq. Bu c\u00fcr xidm\u0259tl\u0259rd\u0259 ad\u0259t\u0259n \u00f6z\u0259l m\u00fcst\u0259ntiql\u0259r, h\u00fcquq firmalar\u0131 v\u0259 biznes r\u0259qibl\u0259ri maraql\u0131 olurlar. Bu c\u00fcr kibermuzdlular \u00f6z xidm\u0259tl\u0259rini a\u00e7\u0131q \u015f\u0259kild\u0259 reklam edirl\u0259r.<\/p>\n\n\n\n<ul>\n<li><strong>N\u00fcv\u0259 s\u0259viyy\u0259sind\u0259 n\u00fcfuz ed\u0259n rutkitl\u0259r yenid\u0259n trendd\u0259dir<\/strong><\/li>\n<\/ul>\n\n\n\n<p>Rutkitl\u0259r \u0259m\u0259liyyat sisteminin b\u00fct\u00fcn komponentl\u0259rin\u0259 tam giri\u015f h\u00fcquqlar\u0131na malik z\u0259r\u0259rli proqramlard\u0131r. Kompleks h\u0259d\u0259fli h\u00fccumlar\u0131 h\u0259yata ke\u00e7ir\u0259n qruplar h\u0259tta n\u00fcv\u0259 s\u0259viyy\u0259sind\u0259 kodun icras\u0131 (Kernel Mode Code Signing), n\u00fcv\u0259nin t\u0259sdiql\u0259nm\u0259mi\u015f modifikasiyas\u0131na qar\u015f\u0131 m\u00fcdafi\u0259 (PatchGuard), kodun b\u00fct\u00f6vl\u00fcy\u00fcn\u00fcn hipervizor vasit\u0259sil\u0259 qorunmas\u0131 (Hypervisor-Protected Code Integrity) v\u0259 n\u00fcv\u0259 s\u0259viyy\u0259sind\u0259 kodun icras\u0131n\u0131n m\u0259hdudla\u015fd\u0131r\u0131lmas\u0131 (Kernel-Level Code Execution Barriers) kimi m\u00fcasir m\u00fcdafi\u0259 t\u0259dbirl\u0259rd\u0259n bel\u0259 yan ke\u00e7\u0259 bil\u0259rl\u0259r. \u201cWHCP\u201dnin istismar\u0131 s\u0259b\u0259bind\u0259n \u201cWindows\u201d n\u00fcv\u0259si s\u0259viyy\u0259sind\u0259 h\u00fccumlar\u0131 artacaq, \u201cEV\u201d sertifikatlar\u0131 v\u0259 o\u011furlanm\u0131\u015f kod imzalama sertifikatlar\u0131n\u0131n t\u0259klif edildiyi yeralt\u0131 bazarlar\u0131n say\u0131nda da art\u0131m m\u00fc\u015fahid\u0259 edil\u0259c\u0259k. T\u0259cav\u00fczkarlar \u00f6z texnikalar\u0131nda getdikc\u0259 daha \u00e7ox BYOVD (Bring Your Own Vulnerable Driver \u2013 z\u0259if drayverl\u0259r hesab\u0131na m\u00fcdafi\u0259 t\u0259dbirl\u0259rind\u0259n yan ke\u00e7m\u0259k) \u00fcsullar\u0131ndan istifad\u0259 ed\u0259c\u0259kl\u0259r.<\/p>\n\n\n\n<ul>\n<li><strong>H\u00fccumlarda idar\u0259olunan fayl \u00f6t\u00fcr\u00fclm\u0259si sisteml\u0259rind\u0259n (MFT) istifad\u0259.<\/strong><\/li>\n<\/ul>\n\n\n\n<p>Bu tendensiya daha da g\u00fccl\u0259n\u0259c\u0259k, \u00e7\u00fcnki t\u0259cav\u00fczkarlar\u0131n h\u0259d\u0259fl\u0259ri maliyy\u0259 qazanc\u0131 \u0259ld\u0259 etm\u0259k v\u0259 \u0259m\u0259liyyat f\u0259aliyy\u0259tini s\u0131radan \u00e7\u0131xarmaqd\u0131r. Daha geni\u015f \u015f\u0259b\u0259k\u0259l\u0259r\u0259 inteqrasiya olunmu\u015f kompleks MFT arxitekturas\u0131nda z\u0259iflikl\u0259r m\u00f6vcuddur. Buna g\u00f6r\u0259 d\u0259 t\u0259\u015fkilatlar etibarl\u0131 t\u0259hl\u00fck\u0259sizlik t\u0259dbirl\u0259ri, o c\u00fcml\u0259d\u0259n \u201cData Loss Prevention\u201d texnologiyalar\u0131 v\u0259 \u015fifr\u0259l\u0259m\u0259 t\u0259tbiq etm\u0259li, h\u0259m\u00e7inin i\u015f\u00e7il\u0259r aras\u0131nda r\u0259q\u0259msal savadl\u0131l\u0131q s\u0259viyy\u0259sini art\u0131rmal\u0131d\u0131rlar.<\/p>\n\n\n\n<p>\u201c2023-c\u00fc ild\u0259 ma\u015f\u0131n \u00f6yr\u0259nm\u0259 texnologiyalar\u0131na \u0259saslanan al\u0259tl\u0259r daha \u0259l\u00e7atan oldu. M\u00fcr\u0259kk\u0259b h\u0259d\u0259fli h\u00fccumlar t\u0259\u015fkil ed\u0259n kiberqruplar da bundan yararlan\u0131rlar. \u0130nan\u0131r\u0131q ki, g\u0259l\u0259n il onlar t\u0259dar\u00fck z\u0259ncirl\u0259rin\u0259 h\u00fccumlarda \u00f6zl\u0259rinin \u0259vv\u0259ll\u0259r m\u0259lum olmayan \u00fcsullar\u0131n\u0131 da t\u0259tbiq ed\u0259c\u0259k v\u0259 bu yolla s\u0131nd\u0131r\u0131lm\u0131\u015f sisteml\u0259r\u0259 giri\u015fl\u0259ri satacaq v\u0259 istifad\u0259\u00e7i cihazlar\u0131ndak\u0131 z\u0259iflikl\u0259rd\u0259n getdikc\u0259 daha \u00e7ox istifad\u0259 ed\u0259c\u0259kl\u0259r. Biz kibert\u0259hl\u00fck\u0259sizlik m\u00fct\u0259x\u0259ssisl\u0259rini t\u0259cav\u00fczkarlar\u0131 qabaqlama\u011fa v\u0259 kiberh\u00fccumlar\u0131 daha effektiv d\u0259f etm\u0259y\u0259 imkan ver\u0259c\u0259k \u0259n m\u00fcasir m\u0259lumatlarla t\u0259min etm\u0259k \u00fc\u00e7\u00fcn tendensiyalar\u0131 izl\u0259yirik\u201d, &#8211; dey\u0259 \u201cKaspersky\u201dnin Qlobal T\u0259dqiqat v\u0259 T\u0259hdidl\u0259rin T\u0259hlili M\u0259rk\u0259zinin (GreAT) r\u0259hb\u0259ri \u0130qor Kuznetsov bildirir.<\/p>\n\n\n\n<p>Proqnozlar\u0131n haz\u0131rlanmas\u0131 \u00fc\u00e7\u00fcn \u201cKaspersky Threat Intelligence\u201d xidm\u0259tinin k\u00f6m\u0259yi il\u0259 \u0259ld\u0259 edilmi\u015f qlobal m\u0259lumatlardan istifad\u0259 edilib. Proqnozlar\u0131n tam versiyas\u0131n\u0131n \u201cSecurelist\u201dd\u0259 g\u00f6r\u0259 bil\u0259rsiniz: <a href=\"https:\/\/securelist.ru\/kaspersky-security-bulletin-apt-predictions-2024\/108394\/\" target=\"_blank\" rel=\"noopener\" title=\"\">https:\/\/securelist.ru\/kaspersky-security-bulletin-apt-predictions-2024\/108394\/<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u201cKaspersky\u201d m\u00fcr\u0259kk\u0259b h\u00fccumlar\u0131n 2024-c\u00fc il \u00fc\u00e7\u00fcn \u00fcmumi m\u0259nz\u0259r\u0259si bar\u0259d\u0259 proqnozlar\u0131n\u0131 t\u0259qdim edib \u201cKaspersky\u201dnin Qlobal T\u0259dqiqat v\u0259 T\u0259hlil T\u0259hdid M\u0259rk\u0259zinin (GReAT) ekspertl\u0259ri 2024-c\u00fc ild\u0259 mobil, geyil\u0259 bil\u0259n v\u0259 a\u011f\u0131ll\u0131 cihazlara qar\u015f\u0131 Trianqulyasiya \u018fm\u0259liyyat\u0131na b\u0259nz\u0259r h\u0259d\u0259fli h\u00fccumlar\u0131n&#8230;<\/p>\n","protected":false},"author":2,"featured_media":8743,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/18192"}],"collection":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=18192"}],"version-history":[{"count":1,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/18192\/revisions"}],"predecessor-version":[{"id":18193,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/18192\/revisions\/18193"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/media\/8743"}],"wp:attachment":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=18192"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=18192"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=18192"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}