Abstract
Mazkur maqolada phishing hujumlarining kelib chiqish sabablari, asosiy ko‘rinishlari, aniqlash mezonlari hamda ularning oldini olish usullari kiberxavfsizlik nuqtayi nazaridan tahlil qilinadi. Phishing foydalanuvchilarni aldash orqali login va parollar, bank karta ma’lumotlari, elektron pochta akkauntlari, ta’lim platformalaridagi hisoblar hamda tashkilotlarga oid maxfiy axborotlarni qo‘lga kiritishga qaratilgan ijtimoiy muhandislik hujumlarining keng tarqalgan turi hisoblanadi. Bunday hujumlar elektron pochta, SMS xabarlari, messenjerlar, telefon qo‘ng‘iroqlari, QR-kodlar va soxta veb-sahifalar orqali amalga oshiriladi.
Maqolada ta’lim muassasalarida phishing xavfini kamaytirish, raqamli savodxonlikni oshirish va kiberxavfsizlik madaniyatini shakllantirishga qaratilgan amaliy tavsiyalar keltirilgan. Shuningdek, ko‘p faktorli autentifikatsiya, xavfsiz parol siyosati, elektron pochta gigiyenasi va kiberxavfsizlik hodisalariga tezkor javob berish mexanizmlarining ahamiyati yoritilgan. Tadqiqot natijalari ta’lim muassasalari xodimlari, professor-o‘qituvchilar, talabalar hamda internetdan foydalanuvchi keng jamoatchilik uchun foydali bo‘lishi mumkin.
References
1. Cybersecurity and Infrastructure Security Agency (CISA). Recognize and Report Phishing.https://www.cisa.gov/secure-our-world/recognize-and-report-phishing
2. Federal Trade Commission (FTC). How to Recognize and Avoid Phishing Scams. https://consumer.ftc.gov/articles/how-recognize-avoid-phishing-scams
3. National Institute of Standards and Technology (NIST). Phishing Guidance for Cybersecurity. https://www.nist.gov/itl/smallbusinesscyber/guidance-topic/phishing
4. Anti-Phishing Working Group (APWG). Phishing Activity Trends Reports.
5. Microsoft Learn. Passkeys and Phishing-Resistant Authentication. https://learn.microsoft.com/en-us/entra/identity/authentication/concept authentication-passkeys-fido2
6. Jaxongir o‘g‘li, K. S., Nuriddinjon o‘g‘li, O. O., & Dilshodjon o‘g‘li, D. A. (2025). Ma’lumotlar bazasidan foydalanishda keng tarqalgan xatolar va ularni bartaraf etish. Education and Science Yesterday and Today, 1(1).
7. ENISA (European Union Agency for Cybersecurity). Phishing Threat Landscape. https://www.enisa.europa.eu/topics/csirt-cert-services/incident-handling/analysis/phishing
8. Verizon. Data Breach Investigations Report (DBIR). https://www.verizon.com/business/resources/reports/dbir/
9. Symantec (Broadcom). Internet Security Threat Report. https://www.broadcom.com/support/security-center/threat-reports
10. Cisco. Cybersecurity Awareness: Phishing Explained. https://www.cisco.com/c/en/us/products/security/what-is-phishinghtml