{"id":60417,"date":"2026-03-05T00:15:05","date_gmt":"2026-03-05T00:15:05","guid":{"rendered":"https:\/\/bihavadis.com\/?p=60417"},"modified":"2026-03-05T00:15:05","modified_gmt":"2026-03-05T00:15:05","slug":"tedarik-zinciri-saldirilari-sirketlerin-son-12-ayda-karsilastigi-tehditlerin-basinda-yer-aliyor","status":"publish","type":"post","link":"https:\/\/bihavadis.com\/index.php\/2026\/03\/05\/tedarik-zinciri-saldirilari-sirketlerin-son-12-ayda-karsilastigi-tehditlerin-basinda-yer-aliyor\/","title":{"rendered":"Tedarik Zinciri Sald\u0131r\u0131lar\u0131 \u015eirketlerin Son 12 Ayda Kar\u015f\u0131la\u015ft\u0131\u011f\u0131 Tehditlerin Ba\u015f\u0131nda Yer Al\u0131yor"},"content":{"rendered":"<p><strong>Kaspersky taraf\u0131ndan ger\u00e7ekle\u015ftirilen yeni bir k\u00fcresel ara\u015ft\u0131rma, tedarik zinciri sald\u0131r\u0131lar\u0131n\u0131n ge\u00e7ti\u011fimiz y\u0131l i\u015fletmelerin kar\u015f\u0131 kar\u015f\u0131ya kald\u0131\u011f\u0131 en yayg\u0131n siber tehdit olarak \u00f6ne \u00e7\u0131kt\u0131\u011f\u0131n\u0131 g\u00f6steriyor. Bulgular, T\u00fcrkiye\u2019deki \u015firketlerin %28\u2019i son bir y\u0131l i\u00e7inde bir tedarik zinciri tehdidiyle m\u00fccadele etmek zorunda kald\u0131\u011f\u0131n\u0131 ortaya koyuyor.<\/strong><\/p>\n<p>D\u00fcnya Ekonomik Forumu\u2019nun g\u00fcncel verilerine g\u00f6re, b\u00fcy\u00fck \u00f6l\u00e7ekli kurulu\u015flar\u0131n yakla\u015f\u0131k \u00fc\u00e7te ikisi (%65), \u00fc\u00e7\u00fcnc\u00fc taraf ve tedarik zinciri kaynakl\u0131 g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 g\u00fcn\u00fcm\u00fcz\u00fcn birbirine ba\u011fl\u0131 dijital ekosisteminde siber dayan\u0131kl\u0131l\u0131\u011f\u0131n \u00f6n\u00fcndeki en b\u00fcy\u00fck engeller aras\u0131nda g\u00f6steriyor. Kaspersky taraf\u0131ndan yapt\u0131r\u0131lan k\u00fcresel ara\u015ft\u0131rma\u00a0[1]\u00a0da Orta Do\u011fu ve T\u00fcrkiye de dahil bu risklerin nas\u0131l evrildi\u011fini ve d\u00fcnya genelindeki i\u015fletmelerin bu tehditlere ne \u00f6l\u00e7\u00fcde maruz kald\u0131\u011f\u0131n\u0131 inceledi.<\/p>\n<p>Ara\u015ft\u0131rma sonu\u00e7lar\u0131na g\u00f6re, kurumsal \u015firketlerin\u00a0%31\u2019i son 12 ay i\u00e7inde bir tedarik zinciri sald\u0131r\u0131s\u0131ndan etkilendi\u011fini belirtirken, T\u00fcrkiye\u2019de ise bu oran %28 seviyesinde ger\u00e7ekle\u015fti. Bu\u00a0veriler, di\u011fer t\u00fcm siber tehdit t\u00fcrlerine k\u0131yasla en y\u00fcksek seviyeyi temsil ediyor. Tedarik zinciri tehditleri \u00f6zellikle y\u00fcksek d\u00fczeyde ba\u011flant\u0131l\u0131 organizasyonlar\u0131 hedef al\u0131yor. B\u00fcy\u00fck \u00f6l\u00e7ekli i\u015fletmeler[2]\u00a0\u00a0(2.500 ve \u00fczeri \u00e7al\u0131\u015fan) %36 ile en y\u00fcksek sald\u0131r\u0131 oran\u0131n\u0131 bildirirken, d\u00fc\u015f\u00fck ve orta \u00f6l\u00e7ekli \u015firketlerde bu oran daha d\u00fc\u015f\u00fck seviyede kald\u0131.<\/p>\n<p>Dikkat \u00e7ekici bir di\u011fer nokta ise, en b\u00fcy\u00fck \u00f6l\u00e7ekli i\u015fletmelerin ortalama tedarik\u00e7i say\u0131s\u0131n\u0131n da en y\u00fcksek olmas\u0131. Bu \u015firketler ortalama 100\u2019e yak\u0131n yaz\u0131l\u0131m ve donan\u0131m tedarik\u00e7isiyle \u00e7al\u0131\u015f\u0131yor ve bu durum do\u011fal olarak geni\u015f bir potansiyel sald\u0131r\u0131 y\u00fczeyi olu\u015fturuyor. Buna ek olarak, kurulu\u015flar sistemlerine \u00e7ok say\u0131da y\u00fckleniciye eri\u015fim izni verdi\u011fini kabul ediyor. D\u00fc\u015f\u00fck \u00f6l\u00e7ekli i\u015fletmeler ortalama 50 y\u00fckleniciyle \u00e7al\u0131\u015f\u0131rken, b\u00fcy\u00fck \u00f6l\u00e7ekli i\u015fletmelerde bu say\u0131 130\u2019un \u00fczerine \u00e7\u0131k\u0131yor. Bu durum, dijital ba\u011f\u0131ml\u0131l\u0131klar\u0131n artmas\u0131yla birlikte \u201cg\u00fcven ili\u015fkisi sald\u0131r\u0131lar\u0131\u201d olarak adland\u0131r\u0131lan riskleri de beraberinde getiriyor. Bu t\u00fcr sald\u0131r\u0131larda tehdit akt\u00f6rleri, kurulu\u015flar aras\u0131ndaki me\u015fru ve g\u00fcvene dayal\u0131 ba\u011flant\u0131lar\u0131 istismar ediyor.<\/p>\n<p>Son bir y\u0131l i\u00e7inde g\u00fcven ili\u015fkisi sald\u0131r\u0131lar\u0131 d\u00fcnya genelinde \u015firketlerin d\u00f6rtte birini (%25) etkiledi. Mevcut i\u015f ba\u011flant\u0131lar\u0131n\u0131n k\u00f6t\u00fcye kullan\u0131ld\u0131\u011f\u0131 sald\u0131r\u0131lar en s\u0131k T\u00fcrkiye (%35), Singapur (%33) ve Meksika (%31) merkezli kurulu\u015flarda g\u00f6r\u00fcld\u00fc. Orta Do\u011fu\u2019da ise kurulu\u015flar\u0131n %22\u2019si bu t\u00fcr sald\u0131r\u0131lara maruz kald\u0131.<\/p>\n<p><strong>Kaspersky G\u00fcvenlik Operasyonlar\u0131 Merkezi (SOC) Ba\u015fkan\u0131 Sergey Soldatov<\/strong><em>\u00a0konuyla ilgili \u015funlar\u0131 s\u00f6yledi: \u201cHer ba\u011flant\u0131n\u0131n, her tedarik\u00e7inin ve her entegrasyonun g\u00fcvenlik profilimizin bir par\u00e7as\u0131 haline geldi\u011fi bir dijital ekosistemde faaliyet g\u00f6steriyoruz. Kurulu\u015flar daha fazla birbirine ba\u011fland\u0131k\u00e7a maruz kald\u0131klar\u0131 tehdit y\u00fczeyi de geni\u015fliyor. Bu tabloda modern i\u015fletmelerin korunmas\u0131, yaln\u0131zca tekil sistemleri de\u011fil, i\u015f s\u00fcreklili\u011fini m\u00fcmk\u00fcn k\u0131lan t\u00fcm ili\u015fki a\u011f\u0131n\u0131 g\u00fc\u00e7lendiren b\u00fct\u00fcnc\u00fcl bir yakla\u015f\u0131m gerektiriyor.\u201d<\/em><\/p>\n<p>\u015eirketlerin tedarik zinciri risklerini azaltabilmesi ve i\u015f s\u00fcreklili\u011fini g\u00fcvence alt\u0131na alabilmesi i\u00e7in, organizasyon genelinde \u00f6nleyici tedbirler uygulamas\u0131 ve tedarik\u00e7i ile y\u00fcklenici ili\u015fkilerini stratejik bir \u00e7er\u00e7evede ele almas\u0131 gerekiyor.<\/p>\n<p>Kaspersky, bu risklerin azalt\u0131lmas\u0131 i\u00e7in \u015fu ad\u0131mlar\u0131 \u00f6neriyor:<\/p>\n<ul>\n<li><strong>Tedarik\u00e7ileri s\u00f6zle\u015fme \u00f6ncesinde kapsaml\u0131 \u015fekilde de\u011ferlendirin.<\/strong>\u00a0Siber g\u00fcvenlik politikalar\u0131n\u0131, ge\u00e7mi\u015f g\u00fcvenlik olaylar\u0131n\u0131 ve sekt\u00f6r g\u00fcvenlik standartlar\u0131na uyumlar\u0131n\u0131 inceleyin. Yaz\u0131l\u0131m ve bulut hizmetleri i\u00e7in ayr\u0131ca zafiyet verileri ve s\u0131zma testi sonu\u00e7lar\u0131n\u0131 g\u00f6zden ge\u00e7irin.<\/li>\n<li><strong>S\u00f6zle\u015fmelere g\u00fcvenlik gereklilikleri ekleyin.<\/strong>\u00a0D\u00fczenli g\u00fcvenlik denetimleri ger\u00e7ekle\u015ftirin ve kurulu\u015funuzun g\u00fcvenlik politikalar\u0131 ile olay bildirim protokollerine uyumu garanti alt\u0131na al\u0131n.<\/li>\n<li><strong>\u00d6nleyici teknolojik tedbirler uygulay\u0131n.<\/strong>\u00a0En az ayr\u0131cal\u0131k ilkesi (principle of least privilege), s\u0131f\u0131r g\u00fcven (zero trust) yakla\u015f\u0131m\u0131 ve olgun\u00a0kimlik ve eri\u015fim y\u00f6netimi\u00a0uygulamalar\u0131 gibi g\u00fcvenlik pratiklerini hayata ge\u00e7irerek, bir tedarik\u00e7inin kompromize olmas\u0131 durumunda olu\u015fabilecek etkiyi minimize edin.<\/li>\n<li><strong>S\u00fcrekli izleme sa\u011flay\u0131n.<\/strong>\u00a0Kurum i\u00e7inde bu izlemeyi ger\u00e7ekle\u015ftirebilecek insan kayna\u011f\u0131n\u0131n durumuna ba\u011fl\u0131 olarak,\u00a0Kaspersky Next\u00a0XDR\u00a0veya\u00a0MXDRgibi \u00e7\u00f6z\u00fcmlerle altyap\u0131y\u0131 ger\u00e7ek zamanl\u0131 izleyin ve yaz\u0131l\u0131m ile a\u011f trafi\u011findeki anormallikleri tespit edin.<\/li>\n<li><strong>Bir olay m\u00fcdahale plan\u0131 geli\u015ftirin.<\/strong>\u00a0Plan\u0131n tedarik zinciri sald\u0131r\u0131lar\u0131n\u0131 kapsad\u0131\u011f\u0131ndan ve ihlallerin h\u0131zl\u0131 \u015fekilde tespit edilip s\u0131n\u0131rland\u0131r\u0131lmas\u0131na y\u00f6nelik ad\u0131mlar i\u00e7erdi\u011finden emin olun. \u00d6rne\u011fin, gerekirse ilgili tedarik\u00e7inin \u015firket sistemleriyle ba\u011flant\u0131s\u0131n\u0131 kesmeye y\u00f6nelik prosed\u00fcrler belirleyin.<\/li>\n<li><strong>Tedarik\u00e7ilerle g\u00fcvenlik alan\u0131nda i\u015f birli\u011fi yap\u0131n.<\/strong>\u00a0Koruma seviyesini her iki taraf i\u00e7in de g\u00fc\u00e7lendirin ve siber g\u00fcvenli\u011fi ortak bir \u00f6ncelik haline getirin.<\/li>\n<\/ul>\n<p>\u0130\u015fletmelerin tedarik zinciri sald\u0131r\u0131lar\u0131na maruziyetine ili\u015fkin daha fazla bulgu ve \u00f6nerilere ba\u011flant\u0131 \u00fczerinden eri\u015filebilir.<\/p>\n<p>Tedarik zinciri sald\u0131r\u0131lar\u0131na dair di\u011fer bulgulara ve daha fazla \u00f6neriye\u00a0ba\u011flant\u0131\u00a0\u00fczerinden ula\u015fabilirsiniz.<\/p>\n<p>[1] Kaspersky b\u00fcnyesindeki pazar ara\u015ft\u0131rma merkezi taraf\u0131ndan; 500&#8217;den fazla \u00e7al\u0131\u015fan\u0131 olan i\u015fletmelerde C-level y\u00f6neticiler, ba\u015fkan yard\u0131mc\u0131lar\u0131, ekip liderleri ve k\u0131demli uzmanlardan olu\u015fan 1.714 teknik uzman\u0131n kat\u0131l\u0131m\u0131yla ger\u00e7ekle\u015ftirilmi\u015ftir. Ara\u015ft\u0131rma; aralar\u0131nda Almanya, \u0130spanya, \u0130talya, Brezilya, Meksika, Kolombiya, Singapur, Vietnam, \u00c7in, Hindistan, Endonezya, Suudi Arabistan, T\u00fcrkiye, M\u0131s\u0131r, Birle\u015fik Arap Emirlikleri ve Rusya\u2019n\u0131n bulundu\u011fu 16 \u00fclkeyi kapsamaktad\u0131r.<\/p>\n<p>[2] K\u00fc\u00e7\u00fck \u00f6l\u00e7ekli i\u015fletme: 500-1.499 \u00e7al\u0131\u015fan. Orta \u00f6l\u00e7ekli i\u015fletme: 1.500-2.499 \u00e7al\u0131\u015fan. B\u00fcy\u00fck \u00f6l\u00e7ekli i\u015fletme: 2.500 veya daha fazla \u00e7al\u0131\u015fan.<\/p>\n<p>\u00a0<\/p>\n<p>\u00a0<\/p>\n<p>Kaynak: (BYZHA) Beyaz Haber Ajans\u0131<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky taraf\u0131ndan ger\u00e7ekle\u015ftirilen yeni bir k\u00fcresel ara\u015ft\u0131rma, tedarik zinciri sald\u0131r\u0131lar\u0131n\u0131n ge\u00e7ti\u011fimiz y\u0131l i\u015fletmelerin kar\u015f\u0131 kar\u015f\u0131ya kald\u0131\u011f\u0131 en yayg\u0131n siber tehdit olarak \u00f6ne \u00e7\u0131kt\u0131\u011f\u0131n\u0131 g\u00f6steriyor.<\/p>\n","protected":false},"author":1,"featured_media":60418,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16],"tags":[737,2157,407,794,3774],"class_list":["post-60417","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-teknoloji","tag-guvenlik","tag-isletmeler","tag-orta","tag-saldiri","tag-tedarik-zinciri"],"_links":{"self":[{"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/posts\/60417","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/comments?post=60417"}],"version-history":[{"count":1,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/posts\/60417\/revisions"}],"predecessor-version":[{"id":60419,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/posts\/60417\/revisions\/60419"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/media\/60418"}],"wp:attachment":[{"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/media?parent=60417"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/categories?post=60417"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bihavadis.com\/index.php\/wp-json\/wp\/v2\/tags?post=60417"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}