Phishing is a method of obtaining the victim's password/card information via fake e-mail/SMS. TCK art.158/1-f fraud with information system.
Typical Phishing
- Email disguised as bank customer service
- Cargo company SMS ("pay for your package")
- Apple/Google "your account has been blocked"
- Tax office "refund is available"
- Social media "your account is blocked" stolen"
Attack Method
- Fake e-mail/SMS is sent
- Victim clicks
- Redirected to fake site
- Enters information (password, card)
- The fraudster uses the information
Bank Liability
- Partial liability if there is a security vulnerability in the banking systems
- 3D Secure if the transaction is approved, the customer is responsible
- If the SMS code is shared, the customer is at fault
What the Victim Should Do
- Call the bank immediately (card blocked)
- Complaint to the public prosecutor's office
- Bank objection form
- Notification to the EGM Cyber Crimes Department
- Record all correspondence
Supreme Court 11. HD
11. HD adopts that in phishing cases, it is important whether the "bank security infrastructure" is sufficient or not, and if there is insufficient information to the customer, partial compensation liability will arise.
Cyber crimes lawyer is recommended.