{"id":30497,"date":"2022-08-02T11:00:00","date_gmt":"2022-08-02T08:00:00","guid":{"rendered":"https:\/\/www.indir.com\/haber\/?p=30497"},"modified":"2022-09-29T12:48:24","modified_gmt":"2022-09-29T09:48:24","slug":"twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik","status":"publish","type":"post","link":"https:\/\/www.indir.com\/haber\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik\/","title":{"rendered":"Twitter API kullanan 3.207 mobil uygulamada b\u00fcy\u00fck a\u00e7\u0131k"},"content":{"rendered":"\n<p>Yap\u0131lan yeni ara\u015ft\u0131rma 3.200&#8217;den fazla uygulaman\u0131n Twitter API \u00fczerinden b\u00fcy\u00fck bir a\u00e7\u0131k yaratt\u0131\u011f\u0131n\u0131 ortaya \u00e7\u0131kard\u0131. A\u00e7\u0131k sayesinde sald\u0131rganlar hesaplara bu uygulamalar \u00fczerinden eri\u015febiliyor.<\/p>\n\n\n\n<p>Siber g\u00fcvenlik ara\u015ft\u0131rmac\u0131lar\u0131, Twitter API anahtarlar\u0131n\u0131 halka a\u00e7\u0131klayan ve potansiyel olarak bir tehdit olu\u015fmas\u0131na neden olan uygulamalara y\u00f6nelik bir \u00e7al\u0131\u015fma ger\u00e7ekle\u015ftirdi. Ara\u015ft\u0131rma sonu\u00e7lar\u0131na g\u00f6re Twitter hesaplar\u0131n\u0131n ele ge\u00e7irilmesine olanak tan\u0131yan 3.207 mobil uygulama var. Twitter ve uygulamalar aras\u0131ndaki g\u00fcvenli\u011fe y\u00f6nelik yap\u0131lan bu ara\u015ft\u0131rmada, Twitter API kullan\u0131mlar\u0131n\u0131n b\u00fcy\u00fck bir tehdit yaratt\u0131\u011f\u0131 belirtildi.<\/p>\n\n\n\n<p><a href=\"https:\/\/www.indir.com\/haber\/5-4-milyon-twitter-hesap-verisi-30000-dolara-satisa-cikti\/\" data-type=\"URL\" data-id=\"https:\/\/www.indir.com\/haber\/5-4-milyon-twitter-hesap-verisi-30000-dolara-satisa-cikti\/\" target=\"_blank\" rel=\"noreferrer noopener\">5.4 milyon Twitter hesap verisi 30000 dolara sat\u0131\u015fa \u00e7\u0131kt\u0131!<\/a><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Twitter api nedir?<\/h2>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1280\" height=\"640\" src=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik.png\" alt=\"Twitter api nedir\" class=\"wp-image-35724\" title=\"\" srcset=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik.png 1280w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-300x150.png 300w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-768x384.png 768w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-1230x615.png 1230w\" sizes=\"auto, (max-width: 1280px) 100vw, 1280px\" \/><figcaption>Twitter api nedir<\/figcaption><\/figure>\n\n\n\n<p>Twitter API, kullan\u0131c\u0131lar\u0131n d\u00fcnyayla payla\u015fmay\u0131 tercih etti\u011fi herkese a\u00e7\u0131k Twitter verilerine geni\u015f \u00e7apl\u0131 eri\u015fim sa\u011flar. Bu verileri eri\u015fmek ve farkl\u0131 ama\u00e7larda kullanmak amac\u0131yla Twitter api kullan\u0131lmaktad\u0131r. Twitter api kullan\u0131m\u0131 yayg\u0131n oldu\u011fu kadar tehlikeleri de beraberinde getirmektedir. <\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Twitter API ile a\u00e7\u0131k nas\u0131l ortaya \u00e7\u0131k\u0131yor?<\/h2>\n\n\n\n<p>Twitter API kullanmak g\u00fcvenlik noktas\u0131nda b\u00fcy\u00fck bir zafiyet yaratm\u0131yor. Ancak mobil uygulamalar\u0131n Twitter ile entegre edilmesi s\u0131ras\u0131nda Twitter API ile \u00f6zel kimlik do\u011frulama anahtarlar\u0131 sa\u011flan\u0131yor. \u0130\u015fin tehlikeli k\u0131sm\u0131 ise kullan\u0131mda. Zira kullan\u0131c\u0131 Twitter hesab\u0131n\u0131 bu mobil uygulama ile ili\u015fkilendirdi\u011finde, uygulaman\u0131n kullan\u0131c\u0131 ad\u0131na Twitter \u00fczerinden oturum a\u00e7ma, tweet olu\u015fturma, DM g\u00f6nderme vb. gibi ayr\u0131cal\u0131klar elde etmesine neden oluyor.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1576\" height=\"574\" src=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/08\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik.png\" alt=\"Twitter API\" class=\"wp-image-30499\" title=\"\" srcset=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/08\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik.png 1576w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/08\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-300x109.png 300w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/08\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-768x280.png 768w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/08\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-1536x559.png 1536w\" sizes=\"auto, (max-width: 1576px) 100vw, 1576px\" \/><figcaption>Twitter API kullan\u0131m\u0131 ile g\u00fcvenlik a\u00e7\u0131\u011f\u0131 yaratan uygulamalar\u0131n geli\u015fimi<\/figcaption><\/figure>\n\n\n\n<p>Uygulama geli\u015ftiricilerinin bu i\u015flemler s\u0131ras\u0131nda yapt\u0131\u011f\u0131 hatalar ya da ihmaller, b\u00fcy\u00fck g\u00fcvenlik a\u00e7\u0131klar\u0131na neden oluyor. Ara\u015ft\u0131rmay\u0131 yapan CloudSEK\u2019e g\u00f6re bu a\u00e7\u0131\u011f\u0131n en b\u00fcy\u00fck sorumlusu Twitter API\u2019si \u00fczerinden yap\u0131lan yerle\u015ftirme i\u015flemlerini kald\u0131rmay\u0131 unutan uygulama geli\u015ftiricileri. Bu ihmal sonras\u0131nda Twitter API ile elde edilen ve uygulamada yer alan kimlik bilgileri a\u015fa\u011f\u0131daki alanlarda saklan\u0131yor;<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>resources\/res\/values\/strings.xml<\/li><li>source\/resources\/res\/values-es-rAR\/strings.xml<\/li><li>source\/resources\/res\/values-es-rCO\/strings.xml<\/li><li>source\/sources\/com\/app-name\/BuildConfig.java<\/li><\/ul>\n\n\n\n<p>CloudSEK raporunda bu a\u00e7\u0131\u011f\u0131n ortadan kalmas\u0131 ad\u0131na geli\u015ftiricilerin a\u00e7\u0131kta kalan anahtarlar\u0131 ge\u00e7ersiz k\u0131lacak API anahtar\u0131 d\u00f6nd\u00fcrme kullanmas\u0131n\u0131 \u00f6neriyor. Bu y\u00f6ntem, mevcut a\u00e7\u0131\u011f\u0131 kapataca\u011f\u0131 gibi daha g\u00fcvenli bir kullan\u0131m da sa\u011flayabilecek.<\/p>\n\n\n\n<p>Android i\u00e7in <a href=\"https:\/\/twitter.indir.com\/android\" target=\"_blank\" rel=\"noopener\">Twitter indir<\/a><\/p>\n\n\n\n<p>iOS i\u00e7in <a href=\"https:\/\/twitter.indir.com\/iphone\" target=\"_blank\" rel=\"noopener\">Twitter indir<\/a><\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"991\" height=\"449\" src=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-2.png\" alt=\"twitter api kullan\u0131m\u0131 yayg\u0131nla\u015ft\u0131k\u00e7a riskler de art\u0131yor\" class=\"wp-image-35726\" title=\"\" srcset=\"https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-2.png 991w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-2-300x136.png 300w, https:\/\/www.indir.com\/haber\/wp-content\/uploads\/2022\/09\/twitter-api-kullanan-3-207-mobil-uygulamada-buyuk-acik-2-768x348.png 768w\" sizes=\"auto, (max-width: 991px) 100vw, 991px\" \/><figcaption>twitter api kullan\u0131m\u0131 yayg\u0131nla\u015ft\u0131k\u00e7a riskler de art\u0131yor<\/figcaption><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>Yap\u0131lan yeni ara\u015ft\u0131rma 3.200&#8217;den fazla uygulaman\u0131n Twitter API \u00fczerinden b\u00fcy\u00fck bir a\u00e7\u0131k yaratt\u0131\u011f\u0131n\u0131 ortaya \u00e7\u0131kard\u0131. A\u00e7\u0131k sayesinde sald\u0131rganlar hesaplara bu uygulamalar \u00fczerinden eri\u015febiliyor. Siber g\u00fcvenlik ara\u015ft\u0131rmac\u0131lar\u0131, Twitter API anahtarlar\u0131n\u0131 halka a\u00e7\u0131klayan ve potansiyel olarak bir tehdit olu\u015fmas\u0131na neden olan uygulamalara y\u00f6nelik bir \u00e7al\u0131\u015fma ger\u00e7ekle\u015ftirdi. Ara\u015ft\u0131rma sonu\u00e7lar\u0131na g\u00f6re Twitter hesaplar\u0131n\u0131n ele ge\u00e7irilmesine olanak tan\u0131yan 3.207 mobil [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":30498,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[48],"tags":[77,6135],"class_list":["post-30497","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-yazilim","tag-twitter","tag-twitter-api"],"_links":{"self":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts\/30497","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/comments?post=30497"}],"version-history":[{"count":0,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts\/30497\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/media\/30498"}],"wp:attachment":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/media?parent=30497"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/categories?post=30497"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/tags?post=30497"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}