Geçen gün bahsettiğim dolandırıcılar yeniden türedi. X hesabınıza sanki birisi girmiş gibi sizi kandırmaya çalışıyorlar.
Saldırganlar SurveyMonkey kullanıyor:
Giden adres yine aynı gibi:
Söz konusu fake uygulama:
Kod:
New login alert for your account
If you noticed a login to your account from a new device, the details are below. If you don't recognize this activity, follow the steps to secure your account.
Helsinki, Finland - SamsungBrowser on Android
Location is approximate based on the login's IP adress.
if this wasn't you
Change your password. immediately. This will log you out of all active sessions except the current one and review connected apps and revoke access from anything unfamiliar.
Getting a lot of login alert emails?
You can change your account settings to require personal information to reset your password.
Saldırganlar SurveyMonkey kullanıyor:
Kod:
https://www.surveymonkey.com/tr/v1/te/lV6wyxT2Hrg9DiFPsI5vy2m40Lspeo_2FqYG2dqkh8QhIZFCDpX3Fd52toDF_2BRtJcRft46uScoCx1_2BJBEkAESSV0WtvIUhKZItmDBDN4b3IqP6jsVQfIAqpBGDwpRDHRjLKoH3PrP5dBx1QV1GGo0M24nM3GQnjLGSOD_2BIjg_2FhJ2g_3D
Giden adres yine aynı gibi:
Kod:
https://scanned.page/p/Ms08HS
Söz konusu fake uygulama:
Kod:
https://x.com/i/oauth2/authorize?response_type=code&client_id=d0U2YjVPOTBkWXpaZVlwZ2FLNGI6MTpjaQ&redirect_uri=https%3A%2F%2Fhelpcenter.x.developer.topriserealtors.com%2Fcallback.php&scope=tweet.read+users.read+offline.access+tweet.write&state=1cbdf5d2f1f5581a96fa07548e44ab98&code_challenge=YoUXLI5_kI4_89uedAR__U8V7asAyARF6MxdmRWjPLo&code_challenge_method=S256
Kod:
Gönderen: X <[email protected]>
Alıcı: [email protected]
Konu: New login to X from SamsungBrowser on Android
SPF: 147.230.16.1 IP numarası için SPF kimlik doğrulaması sonucu: PASS
DKIM: tul.cz alanı için DKIM kimlik doğrulaması sonucu: 'PASS'
DMARC: 'PASS'