{"id":27469,"date":"2024-08-27T07:00:00","date_gmt":"2024-08-27T04:00:00","guid":{"rendered":"https:\/\/rockvell.com\/?p=27469"},"modified":"2024-08-27T15:16:23","modified_gmt":"2024-08-27T12:16:23","slug":"kaspersky-dunya-uzr%c9%99-kriptovalyuta-v%c9%99-s%c9%99xsi-m%c9%99lumatlari-ogurlayan-kampaniya-askar-edib","status":"publish","type":"post","link":"https:\/\/rockvell.com\/?p=27469","title":{"rendered":"Kaspersky d\u00fcnya \u00fczr\u0259 kriptovalyuta v\u0259 \u015f\u0259xsi m\u0259lumatlar\u0131 o\u011furlayan kampaniya a\u015fkar edib"},"content":{"rendered":"\n<p class=\"has-medium-font-size\"><strong>Kaspersky d\u00fcnya \u00fczr\u0259 kriptovalyuta v\u0259 \u015f\u0259xsi m\u0259lumatlar\u0131 o\u011furlayan kampaniya a\u015fkar edib<\/strong><\/p>\n\n\n\n<p>Kaspersky-nin kiberinsidentl\u0259r\u0259 reaksiya \u00fczr\u0259 qlobal komandas\u0131n\u0131n (Kaspersky Global Emergency Response Team, GERT) ekspertl\u0259ri d\u00fcnya \u00fczr\u0259 \u201cWindows\u201d v\u0259 \u201cMacOS\u201d \u0259m\u0259liyyat sisteml\u0259rinin istifad\u0259\u00e7il\u0259rinin kriptovalyuta v\u0259 \u015f\u0259xsi m\u0259lumatlar\u0131n\u0131n o\u011furlanmas\u0131na y\u00f6n\u0259lmi\u015f saxta kampaniya a\u015fkar edibl\u0259r. Ona \u201cTusk\u201d ad\u0131 verilib. Ehtimallara g\u00f6r\u0259, h\u00fccumlar\u0131n arxas\u0131nda rusdilli t\u0259cav\u00fczkarlar komandas\u0131 dayan\u0131r. M\u0259lumat\u0131 o\u011furlamaq \u00fc\u00e7\u00fcn fi\u015finq resurslar\u0131, infostilerl\u0259r v\u0259 klipperl\u0259rd\u0259n (clipper) istifad\u0259 olunur.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"682\" src=\"https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2.png\" alt=\"\" class=\"wp-image-8743\" style=\"width:458px;height:auto\" srcset=\"https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2.png 1024w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-300x200.png 300w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-768x512.png 768w, https:\/\/rockvell.com\/wp-content\/uploads\/2023\/03\/Kaspersky-2-360x240.png 360w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><\/div>\n\n\n<p><strong>H\u00fccum sxemi<\/strong>. T\u0259cav\u00fczkarlar \u00f6nc\u0259 qurbanlar\u0131 m\u00fcxt\u0259lif qanuni xidm\u0259tl\u0259rin dizayn\u0131n\u0131 v\u0259 interfeysini t\u0259qlid ed\u0259n fi\u015finq saytlar\u0131na c\u0259lb edirl\u0259r. Bunun \u00fc\u00e7\u00fcn web3, kriptovalyuta, s\u00fcni intellekt, onlayn oyunlar kimi m\u0259\u015fhur m\u00f6vzulardan istifad\u0259 edirl\u0259r. B\u0259zi a\u015fkar edilmi\u015f s\u0259hif\u0259l\u0259r kripto platformas\u0131n\u0131, onlayn personaj oyununu v\u0259 Al-t\u0259rc\u00fcm\u0259\u00e7ini t\u0259qlid edir. Fi\u015finq resurslar\u0131n\u0131 diqq\u0259tl\u0259 \u00f6yr\u0259ns\u0259niz, m\u0259s\u0259l\u0259n, ad v\u0259 ya URL-d\u0259 orijinaldan ki\u00e7ik f\u0259rql\u0259r g\u00f6r\u0259 bil\u0259rsiniz. Bununla bel\u0259, \u00fcmumilikd\u0259 onlar \u00e7ox inand\u0131r\u0131c\u0131 g\u00f6r\u00fcn\u00fcrl\u0259r, bu da u\u011furlu h\u00fccum ehtimal\u0131n\u0131 art\u0131r\u0131r.<\/p>\n\n\n\n<p>Fi\u015finq resurslar\u0131 m\u0259xfi m\u0259lumatlar\u0131, m\u0259s\u0259l\u0259n, kripto pul kis\u0259l\u0259ri \u00fc\u00e7\u00fcn \u015f\u0259xsi a\u00e7arlar\u0131 \u0259l\u0259 ke\u00e7irm\u0259y\u0259 v\u0259 z\u0259r\u0259rli proqramlar\u0131 qurban\u0131n cihaz\u0131na endirm\u0259y\u0259 imkan verir. Sonras\u0131nda is\u0259 t\u0259cav\u00fczkarlar saxta internet sayt\u0131 vasit\u0259sil\u0259 kripto pul kis\u0259sin\u0259 giri\u015f \u0259ld\u0259 ed\u0259 v\u0259 oradan v\u0259sait \u00e7\u0131xara v\u0259 ya z\u0259r\u0259rli proqram vasit\u0259sil\u0259 hesab m\u0259lumatlar\u0131n\u0131, pul kis\u0259sinin detallar\u0131n\u0131 v\u0259 dig\u0259r m\u0259lumatlar\u0131 o\u011furlaya bil\u0259rl\u0259r.<\/p>\n\n\n\n<p><strong>H\u00fccumlar \u00fc\u00e7\u00fcn hans\u0131 z\u0259r\u0259rvericil\u0259rd\u0259n istifad\u0259 olunur<\/strong>. Kampaniyan\u0131n bir hiss\u0259si kimi t\u0259cav\u00fczkarlar \u201cDanabot\u201d v\u0259 \u201cStealc\u201d kimi infostilerl\u0259ri, h\u0259m\u00e7inin klipperl\u0259ri yay\u0131rlar. \u0130nfostilerl\u0259r m\u0259xfi m\u0259lumatlar\u0131 (login v\u0259 parollar daxil olmaqla) o\u011furlamaq \u00fc\u00e7\u00fcn n\u0259z\u0259rd\u0259 tutulub, klipper is\u0259 m\u00fcbadil\u0259 buferind\u0259n (clipboard) m\u0259lumatlar\u0131 \u0259l\u0259 ke\u00e7irir. M\u0259s\u0259l\u0259n, \u0259g\u0259r istifad\u0259\u00e7i elektron pul kis\u0259sinin \u00fcnvan\u0131n\u0131 m\u00fcbadil\u0259 buferin\u0259 k\u00f6\u00e7\u00fcr\u00fcrs\u0259, klipper onu saxta \u00fcnvanla \u0259v\u0259z ed\u0259 bil\u0259r.<\/p>\n\n\n\n<p>Z\u0259r\u0259rli proqram\u0131 y\u00fckl\u0259m\u0259k \u00fc\u00e7\u00fcn fayllar \u201cDropbox\u201d fayl hostinqin\u0259 yerl\u0259\u015fdirilir. Onlar\u0131 y\u00fckl\u0259dikd\u0259n sonra qurban rahat interfeys\u0259 malik olan c\u0259lbedici resursa y\u00f6n\u0259lir ki, burada ondan avtorizasiyadan ke\u00e7m\u0259k v\u0259 ya sad\u0259c\u0259 s\u0259hif\u0259ni ba\u011flamamas\u0131 xahi\u015f olunur. Bu zaman dig\u0259r z\u0259r\u0259rli fayllar endirilir.<\/p>\n\n\n\n<p><strong>H\u00fccumlar\u0131n arxas\u0131nda kim dayana bil\u0259r.<\/strong> Z\u0259r\u0259rli kodda rus dilind\u0259 s\u0259tirl\u0259r var. Bundan \u0259lav\u0259, z\u0259r\u0259rli proqram\u0131 y\u00fckl\u0259m\u0259k \u00fc\u00e7\u00fcn fayllarda rusdilli t\u0259cav\u00fczkarlar\u0131n qurban\u0131 ay\u0131rd etm\u0259k \u00fc\u00e7\u00fcn istifad\u0259 etdiyi \u201cMamont\u201d s\u00f6z\u00fc var. T\u0259cav\u00fczkarlar\u0131n a\u00e7\u0131q-a\u015fkar maliyy\u0259 m\u0259qs\u0259dl\u0259ri g\u00fcdd\u00fcy\u00fc g\u00f6r\u00fcn\u00fcr. Kaspersky m\u00fct\u0259x\u0259ssisl\u0259ri bunu kampaniyan\u0131n ad\u0131nda y\u0259ni \u201cTusk\u201d (\u201c\u0130ri di\u015f\u201d) s\u00f6z\u00fcnd\u0259 d\u0259y\u0259rli di\u015fl\u0259rin\u0259 g\u00f6r\u0259 ovlanan mamontlara b\u0259nz\u0259tm\u0259kl\u0259 \u0259ks etdiribl\u0259r.<\/p>\n\n\n\n<p>\u201cT\u0259hlilimiz g\u00f6st\u0259rdi ki, bu, diqq\u0259tl\u0259 d\u00fc\u015f\u00fcn\u00fclm\u00fc\u015f kampaniyad\u0131r. Bunu dig\u0259r \u015feyl\u0259rl\u0259 yana\u015f\u0131, h\u00fccumlar\u0131n bir ne\u00e7\u0259 m\u0259rh\u0259l\u0259d\u0259n ibar\u0259t olmas\u0131 v\u0259 bir-biri il\u0259 \u0259laq\u0259li olmas\u0131nda da g\u00f6rm\u0259k olar. Kampaniyan\u0131n arxas\u0131nda maliyy\u0259 m\u0259qs\u0259dl\u0259ri g\u00fcd\u0259n qrup v\u0259 ya f\u0259rdi t\u0259cav\u00fczkar dayana bil\u0259r. <a href=\"https:\/\/opentip.kaspersky.com\/\">Kaspersky Threat Intelligence Portal<\/a> say\u0259sind\u0259 biz kriptovalyuta, s\u00fcni intellekt v\u0259 onlayn oyunlar, el\u0259c\u0259 d\u0259 dig\u0259r 16 m\u0259\u015fhur m\u00f6vzuda alt kampaniyalar\u0131 a\u015fkarlaya bildik. Bu onu dem\u0259y\u0259 \u0259sas verir ki, t\u0259cav\u00fczkarlar cari g\u00fcnd\u0259m\u0259 tez uy\u011funla\u015fa v\u0259 ondan istifad\u0259\u00e7il\u0259r\u0259 qar\u015f\u0131 h\u00fccumlarda istifad\u0259 ed\u0259 bil\u0259rl\u0259r\u201d, &#8211; dey\u0259 Kaspersky-nin insidentl\u0259rin a\u015fkarlanmas\u0131 v\u0259 cavabland\u0131r\u0131lmas\u0131 \u00fczr\u0259 m\u0259rk\u0259zinin r\u0259hb\u0259ri Kirill Semyonov bildirir.<\/p>\n\n\n\n<p>\u201cTusk\u201d kampaniyas\u0131 il\u0259 ba\u011fl\u0131 riskl\u0259ri minimuma endirm\u0259k \u00fc\u00e7\u00fcn Kaspersky m\u00fct\u0259x\u0259ssisl\u0259ri t\u00f6vsiy\u0259 edirl\u0259r:<\/p>\n\n\n\n<ul>\n<li>\u015f\u0259xsi istifad\u0259\u00e7il\u0259r &#8211; <a href=\"https:\/\/www.kaspersky.ru\/premium\">Kaspersky Premium<\/a> kimi h\u0259rt\u0259r\u0259fli t\u0259hl\u00fck\u0259sizlik h\u0259llind\u0259n istifad\u0259 edin. O, cihaz\u0131n\u0131z\u0131 infostilerl\u0259r v\u0259 dig\u0259r z\u0259r\u0259rli proqramlar\u0131n h\u00fccumlar\u0131ndan qoruma\u011fa k\u00f6m\u0259k ed\u0259c\u0259k, h\u0259m\u00e7inin fi\u015finq v\u0259 dig\u0259r \u015f\u00fcbh\u0259li resurslara ke\u00e7m\u0259yiniz\u0259 mane olacaq. B\u00fct\u00fcn Kaspersky m\u0259hsullar\u0131 \u201cTusk\u201d kampaniyas\u0131nda istifad\u0259 edil\u0259n z\u0259r\u0259rli n\u00fcmun\u0259l\u0259ri bloklay\u0131r;<\/li>\n\n\n\n<li>t\u0259\u015fkilatlar &#8211; \u00f6z i\u015f\u00e7il\u0259rinizin t\u0259limin\u0259 s\u0259rmay\u0259 qoyun. M\u0259s\u0259l\u0259n, m\u00fct\u0259x\u0259ssisl\u0259r \u00fc\u00e7\u00fcn GERT m\u00fct\u0259x\u0259ssisl\u0259rinin haz\u0131rlad\u0131\u011f\u0131 <a href=\"https:\/\/xtraining.kaspersky.com\/courses\/windows-incident-response\/\">Windows-da insidentl\u0259r\u0259 cavab verm\u0259si \u00fczr\u0259 t\u0259lim<\/a> bu m\u0259qs\u0259d \u00fc\u00e7\u00fcn uy\u011fundur, onun k\u00f6m\u0259yi il\u0259 h\u0259tta \u0259n m\u00fcr\u0259kk\u0259b h\u00fccum n\u00f6vl\u0259rin\u0259 d\u0259 cavab verm\u0259yi \u00f6yr\u0259n\u0259 bil\u0259rsiniz. M\u00fcxt\u0259lif profilli i\u015f\u00e7il\u0259rin t\u0259limi \u00fc\u00e7\u00fcn <a href=\"https:\/\/www.kaspersky.ru\/small-to-medium-business-security\/security-awareness-platform\">Kaspersky Automated Security Awareness Platform<\/a> onlayn platformas\u0131ndan istifad\u0259 ed\u0259 bil\u0259rsiniz;<\/li>\n\n\n\n<li>x\u00fcsusi xidm\u0259tl\u0259rd\u0259n istifad\u0259 ed\u0259r\u0259k hesab m\u0259lumatlar\u0131na m\u00fcdaxil\u0259 olunub-olunmad\u0131\u011f\u0131n\u0131 m\u00fcnt\u0259z\u0259m olaraq yoxlay\u0131n. T\u0259\u015fkilatlar <a href=\"https:\/\/dfi.kaspersky.com\/stealers\">Kaspersky Digital Footprint Intelligence<\/a>-d\u0259 x\u00fcsusi s\u0259hif\u0259d\u0259n, \u015f\u0259xsi istifad\u0259\u00e7il\u0259r is\u0259 <a href=\"https:\/\/password.kaspersky.com\/ru\/\">Kaspersky Password Checker<\/a>-d\u0259n istifad\u0259 ed\u0259 bil\u0259rl\u0259r;<\/li>\n\n\n\n<li>m\u0259lumat\u0131 \u015fifr\u0259l\u0259nmi\u015f formada saxlayan x\u00fcsusi \u015fifr\u0259 menecerl\u0259rind\u0259n istifad\u0259 edin. M\u0259s\u0259l\u0259n, <a href=\"https:\/\/www.kaspersky.ru\/password-manager\">Kaspersky Password Manager<\/a>.<\/li>\n<\/ul>\n\n\n\n<p><br>\u018fg\u0259r \u015firk\u0259tiniz ekspert t\u0259hlili t\u0259l\u0259b ed\u0259n kibert\u0259hl\u00fck\u0259sizlik hadis\u0259si il\u0259 \u00fczl\u0259\u015fibs\u0259, ara\u015fd\u0131rma \u00fc\u00e7\u00fcn sor\u011fu g\u00f6nd\u0259r\u0259 bil\u0259rsiniz: <a href=\"https:\/\/www.kaspersky.ru\/enterprise-security\/contact-investigation\" target=\"_blank\" rel=\"noopener\" title=\"\">https:\/\/www.kaspersky.ru\/enterprise-security\/contact-investigation<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky d\u00fcnya \u00fczr\u0259 kriptovalyuta v\u0259 \u015f\u0259xsi m\u0259lumatlar\u0131 o\u011furlayan kampaniya a\u015fkar edib Kaspersky-nin kiberinsidentl\u0259r\u0259 reaksiya \u00fczr\u0259 qlobal komandas\u0131n\u0131n (Kaspersky Global Emergency Response Team, GERT) ekspertl\u0259ri d\u00fcnya \u00fczr\u0259 \u201cWindows\u201d v\u0259 \u201cMacOS\u201d \u0259m\u0259liyyat sisteml\u0259rinin istifad\u0259\u00e7il\u0259rinin kriptovalyuta v\u0259 \u015f\u0259xsi&#8230;<\/p>\n","protected":false},"author":2,"featured_media":8743,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/27469"}],"collection":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=27469"}],"version-history":[{"count":1,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/27469\/revisions"}],"predecessor-version":[{"id":27470,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/posts\/27469\/revisions\/27470"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=\/wp\/v2\/media\/8743"}],"wp:attachment":[{"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=27469"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=27469"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rockvell.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=27469"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}