惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The GitHub Blog
The GitHub Blog
有赞技术团队
有赞技术团队
Apple Machine Learning Research
Apple Machine Learning Research
V
V2EX
Engineering at Meta
Engineering at Meta
美团技术团队
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园 - 司徒正美
I
InfoQ
S
SegmentFault 最新的问题
博客园 - 叶小钗
N
Netflix TechBlog - Medium
Y
Y Combinator Blog
IT之家
IT之家
博客园 - Franky
大猫的无限游戏
大猫的无限游戏
人人都是产品经理
人人都是产品经理
T
The Blog of Author Tim Ferriss
月光博客
月光博客
The Cloudflare Blog
U
Unit 42
GbyAI
GbyAI
L
LangChain Blog
Microsoft Azure Blog
Microsoft Azure Blog

Truesec

Russia Recruits Members of “The Com” for Sabotage Operations - Truesec CVE-2026-76461 – Critical Cisco Secure Email Gateway Vulnerability Exploited - Truesec The Ryde Data Breach - Truesec CRA Reporting Starts on 11 September: What Businesses Need To Know - Truesec Privilege Escalation Vulnerability in Falcon Crowdstrike - Truesec SonicWall Vulnerabilities Exploited in the Wild - Truesec Privileged Access Management (PAM) Is No Longer Optional  - Truesec Australian Arrests Allegedly Disrupt TeamPCP, but the Shai-Hulud Threat Persists - Truesec DDoS Attacks Against Norwegian Government Sites - Truesec Critical Citrix NetScaler Memory-Overflow Vulnerability - Truesec Iranian Cyberattacks Against Critical Infrastructure - Truesec Russia Targets Businesses and Officials Behind Europe’s Ukraine Defense Supply Chain - Truesec The World Is Moving at Machine Speed. Are We Ready? - Truesec False CVE in Overwhelmed Verification System - Truesec LLMjacking Is a New Cyber Threat - Truesec Rogue AI Agent Allegedly Hack Hugging Face - Truesec Microsoft SharePoint Server Vulnerabilities Actively Exploited - Truesec Russian Intelligence Targets SOHO Routers - Truesec Cyber Warfare in the Iran War - Truesec Organized Cybercrime Merging with Other Crime - Truesec AI Used in Ransomware Attack The Fortibleed Campaign: Truesec's Experience Fortibleed: Truesec's Experience Supply Chain Attack Compromising Arch Linux AUR Packages with Infostealer and Rootkit - Truesec FortiNet SSO Vulnerability CVE-2025-59718 and CVE-2025-59719 Leading to Full System Compromise - Truesec Critical Vulnerabilities in Ivanti Sentry Allows Code Execution as Root (CVE-2026-10520 & CVE-2026-10523) Typosquatting: When Your Domain Is Used Against You AI in Cybersecurity: Separating Operational Reality from Speculation Compromised @redhat-Cloud-Services Npm Packages Distribute Credential-Stealing Worm GitHub Hacks Highlights Need for Repository Security
Russia Rolls Out Surveillance Through State-Backed “Super...
Hjalmar Desmond · 2026-05-18 · via Truesec

Threat Insight

MAX is a Russian state-backed “super app” developed by VK and promoted by Russian authorities as a domestic alternative to Western messaging platforms. It combines messaging with additional services such as payments, digital identity, and access to government services, placing it within Russia’s legal and surveillance environment.

MAX is being aggressively promoted to Russian citizens as part of Russia’s wider digital sovereignty strategy, which aims to reduce reliance on Western technology platforms and shift communications, payments, identity, and government services into a domestic ecosystem governed by Russian jurisdiction [2]. The app actively checks for the use of a VPN connection, something that is illegal in Russia.

While no additional overt spying functionality has yet been observed, the application’s broad permission set provides the technical foundation for a potential surveillance platform, the app lacks end-to-end encryption, which means that traffic can be read by Russia’s SORM surveillance framework, meaning that data transmitted through MAX servers should be assumed accessible to Russian security services. [1] [3] [4]

Assessment

The Max app is just one of many tools for surveillance used by the Russian government. Truesec assesses that it is currently not possible to use computers or mobile devices inside Russia in a safe way that excludes potential surveillance.

Truesec recommends all organizations to avoid traveling to Russia as much as possible and not allow devices that has been physically located in Russia to connect to the organization’s environment.

For organizations that need to have a presence in Russia due to business-critical reasons, our recommendation is to segment any presence in Russia from the rest of the network and if possible, only use burner phones and similar devices for business travel in Russia that do not have access to the organization’s network.

If you or your organization have concerns about the topic above or need support when operating abroad, please reach out to your Truesec contact for further assistance.

References

[1] https://www.forbes.com/sites/thomasbrewster/2025/08/26/kremlin-whatsapp-rival-is-designed-to-spy-on-users/
[2] https://www.france24.com/en/live-news/20260323-russia-s-max-the-unencrypted-super-app-being-forced-on-citizens
[3] https://rks.global/en/research/max/
[4] https://sovereignsky.no/laws/sorm/