{"id":32058,"date":"2022-08-16T18:00:00","date_gmt":"2022-08-16T15:00:00","guid":{"rendered":"https:\/\/www.indir.com\/haber\/?p=32058"},"modified":"2022-08-16T15:33:06","modified_gmt":"2022-08-16T12:33:06","slug":"xiaominin-bazi-telefonlarinda-ciddi-guvenlik-acigi-tespit-edildi","status":"publish","type":"post","link":"https:\/\/www.indir.com\/haber\/xiaominin-bazi-telefonlarinda-ciddi-guvenlik-acigi-tespit-edildi\/","title":{"rendered":"Xiaomi&#8217;nin baz\u0131 telefonlar\u0131nda ciddi g\u00fcvenlik a\u00e7\u0131\u011f\u0131 tespit edildi"},"content":{"rendered":"\n<p>\u00c7in merkezli ak\u0131ll\u0131 telefon \u00fcreticisi Xiaomi kullan\u0131c\u0131lar\u0131n\u0131 olduk\u00e7a \u00fczecek bir haberle g\u00fcndemde. Check Point g\u00fcvenlik ara\u015ft\u0131rmac\u0131s\u0131, Xiaomi&#8217;nin baz\u0131 ak\u0131ll\u0131 telefon modellerinde ciddi bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 ke\u015ffetti ve durumu Xiaomi&#8217;ye bildirdi. \u0130\u015fte g\u00fcvenlik a\u00e7\u0131\u011f\u0131ndan kaynaklanan sorunlar;<\/p>\n\n\n\n<p><a href=\"https:\/\/www.indir.com\/haber\/xiaomi-12t-ve-12t-pronun-ozellikleri-sizdirildi\/\">Xiaomi 12T ve 12T Pro\u2019nun \u00f6zellikleri s\u0131zd\u0131r\u0131ld\u0131<\/a><a href=\"https:\/\/www.indir.com\/haber\/author\/aycayurtaslan\/\"><\/a><\/p>\n\n\n\n<p>Baz\u0131 Xiaomi telefonlar\u0131nda ke\u015ffedilen bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131, kullan\u0131c\u0131lar\u0131n hesaplar\u0131nda para kaybetmesine neden olabilir. Check Point Research (CPR) siber g\u00fcvenlik uzmanlar\u0131, cihazlar\u0131n mobil \u00f6deme mekanizmas\u0131nda, sald\u0131rganlar\u0131n sahte \u00f6demeler yapmak ve esasen insanlar\u0131n paras\u0131n\u0131 \u00e7almak i\u00e7in kullanabilece\u011fi bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 ke\u015ffetti. Check Point g\u00fcvenlik ara\u015ft\u0131rmac\u0131s\u0131 Slava Makkaveev konuyla ilgili \u015fu a\u00e7\u0131klamalar\u0131 yapt\u0131:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>&#8220;Bir Android uygulamas\u0131ndan \u00f6deme paketlerinin sahtesinin yap\u0131lmas\u0131na veya \u00f6deme sisteminin do\u011frudan devre d\u0131\u015f\u0131 b\u0131rak\u0131lmas\u0131na izin verebilecek bir dizi g\u00fcvenlik a\u00e7\u0131\u011f\u0131 ke\u015ffettik. WeChat Pay&#8217;i hacklemeyi ba\u015fard\u0131k ve tamamen i\u015fe yarayan bir senaryoyu ger\u00e7ekle\u015ftirebildik.&#8221;<\/p><\/blockquote>\n\n\n\n<h2 class=\"wp-block-heading\">Siber g\u00fcvenlik \u015firketi, Xiaomi&#8217;yi g\u00fcvenlik a\u00e7\u0131\u011f\u0131 hakk\u0131nda bilgilendirme yapt\u0131<\/h2>\n\n\n\n<p>Konuyla ilgili tutulan CPR raporuna g\u00f6re, g\u00fcvenlik a\u00e7\u0131\u011f\u0131, parolalar ve g\u00fcvenlik anahtarlar\u0131 gibi hassas bilgileri depolayan ve y\u00f6neten bir ara\u00e7 olan Xiaomi&#8217;nin G\u00fcvenilir Ortam&#8217;\u0131nda ke\u015ffedildi. Bu g\u00fcvenlik a\u00e7\u0131\u011f\u0131n\u0131 kullanarak insanlar\u0131n paras\u0131n\u0131 \u00e7alman\u0131n iki yolu bulunuyor. A\u00e7\u0131k kullan\u0131c\u0131lar\u0131 k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m y\u00fcklemeleri i\u00e7in kand\u0131rmak veya cihaz\u0131 ele ge\u00e7irerek kullan\u0131c\u0131 bilgilerine eri\u015fmek i\u00e7in kullan\u0131l\u0131yor.<\/p>\n\n\n\n<p>\u0130lk durumda, k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m cihaza s\u0131z\u0131yor ve para \u00e7almak i\u00e7in sahte \u00f6deme paketleri g\u00f6nderiyor. \u0130kinci durumda, bir bilgisayar korsan\u0131 bir ak\u0131ll\u0131 telefonu ele ge\u00e7irecek, g\u00fcvenli\u011fini zay\u0131flat\u0131yor ve ard\u0131ndan uygulama olmadan sahte bir \u00f6deme paketi olu\u015fturmak i\u00e7in kod \u00e7al\u0131\u015ft\u0131r\u0131yor. Her iki durum da MediaTek i\u015flemcili Xiaomi telefonlarda yap\u0131labiliyor. Makkaveev, sorunu tespit eder etmez h\u0131zl\u0131 bir \u015fekilde\u00a0Xiaomi&#8217;yi bilgilendirdi ve \u015funlar\u0131 s\u00f6yledi;<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p><em>&#8220;Bulgular\u0131m\u0131z\u0131 hemen bir d\u00fczeltme yapmalar\u0131 i\u00e7in h\u0131zl\u0131 bir \u015fekilde Xiaomi&#8217;ye a\u00e7\u0131klad\u0131k.&#8221;<\/em>&nbsp;.<\/p><\/blockquote>\n\n\n\n<p>Xiaomi&#8217;nin a\u00e7\u0131kla ilgili en k\u0131sa zamanda bir g\u00fcvenlik yamas\u0131 yay\u0131mlamas\u0131 bekleniyor.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u00c7in merkezli ak\u0131ll\u0131 telefon \u00fcreticisi Xiaomi kullan\u0131c\u0131lar\u0131n\u0131 olduk\u00e7a \u00fczecek bir haberle g\u00fcndemde. Check Point g\u00fcvenlik ara\u015ft\u0131rmac\u0131s\u0131, Xiaomi&#8217;nin baz\u0131 ak\u0131ll\u0131 telefon modellerinde ciddi bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131 ke\u015ffetti ve durumu Xiaomi&#8217;ye bildirdi. \u0130\u015fte g\u00fcvenlik a\u00e7\u0131\u011f\u0131ndan kaynaklanan sorunlar; Xiaomi 12T ve 12T Pro\u2019nun \u00f6zellikleri s\u0131zd\u0131r\u0131ld\u0131 Baz\u0131 Xiaomi telefonlar\u0131nda ke\u015ffedilen bir g\u00fcvenlik a\u00e7\u0131\u011f\u0131, kullan\u0131c\u0131lar\u0131n hesaplar\u0131nda para kaybetmesine neden olabilir. [&hellip;]<\/p>\n","protected":false},"author":10,"featured_media":32059,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[112],"class_list":["post-32058","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-teknoloji","tag-xiaomi"],"_links":{"self":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts\/32058","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/comments?post=32058"}],"version-history":[{"count":0,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/posts\/32058\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/media\/32059"}],"wp:attachment":[{"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/media?parent=32058"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/categories?post=32058"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.indir.com\/haber\/wp-json\/wp\/v2\/tags?post=32058"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}