Russia Plans to Expand MAX Messenger with Unified Ticket Purchases Across All Transport Types
The Russian Ministry of Transport is working to significantly expand the functionality of the MAX messenger for transportation services. In the future, users will be able to build routes and buy tickets for city transport, trains, airplanes, as well as sea and river vessels directly inside the app.
First Deputy Minister Konstantin Pashkov explained that the messenger already supports confirmation of discounted travel rights and management of travel documents. The ministry now intends to broaden the range of available services.
However, ticket sales in the messenger represent only an intermediate step. The long-term vision involves wider adoption of biometric identification: passengers will plan and pay for trips in advance through the digital platform, after which cameras will recognize them at boarding points, eliminating the need for QR codes, printouts, or physical documents.
Pashkov noted that MAX will help passengers adapt to the new system gradually. There are no plans for an abrupt rejection of familiar payment methods; the goal is to expand options rather than mandate replacement.
Significant parts of the transport infrastructure are already prepared for this shift. Contactless payments operate in urban transport across many regions, and electronic ticketing has long been standard for aviation and rail. From September 1, updated carriage rules also allow social benefits to be confirmed via MAX and biometric services to be used for ticket purchases where carriers possess the necessary equipment.
The Ministry of Transport has not yet announced concrete deadlines for the launch of unified ticket purchases inside the messenger.
Related articles
PKI Storm: Managing 100,000 Simultaneous Certificate Requests in Kubernetes Recovery Scenarios
A large organization's PKI infrastructure faced a critical bottleneck when a data center outage triggered simultaneous startup of tens of thousands of Kubernetes pods, each requiring mTLS certificates. The existing setup using ESAUS and Citadel routed all requests through external certificate authorities that could only sustain 50-70 RPS against an incoming burst of 100,000 requests. Average daily load of 10-11 RPS had masked the thundering herd risk during mass recovery. Scaling the CA 15x was rejected due to cost and the fundamental dependency on real-time signing. The team introduced pre-issuance of certificates stored in a dedicated Unified Secret Storage (ЕХС) layer that supports 14,000 RPS reads while the CA continues normal operation. This architectural separation of issuance and consumption reduced recovery time from nearly 24 minutes to seconds while shifting focus to secure secret lifecycle management including KRA key protection.
MinTsifry Considers Annual 10 Billion Rubles Support Package for Russian AI Development
Russia's Ministry of Digital Development is discussing a state support package worth up to 10 billion rubles per year aimed at local AI developers. The proposed funding would cover technology development, pilot launches, and compensation for computing resources. According to Kommersant, 8 billion rubles are planned for development and implementation while 2 billion would offset computational costs. Mechanisms under consideration include subsidized loans through authorized banks and grants covering up to 80 percent of pilot project costs in priority sectors. The initiative remains in discussion with no final parameters or launch timelines confirmed yet. Industry experts note that clear selection criteria and transparent reporting will be essential to prevent intermediaries and ensure fair access for independent teams.
Indid Reports Russian Identity Security Market Reaches 17 Billion Rubles Amid High Incident Rates
According to Indid, the Russian Identity Security market reached 17 billion rubles by the end of 2025. The assessment highlights that organizations continue to allocate significant budgets to access protection while account-related problems persist. Survey data shows that 87.5 percent of companies experienced incidents involving user accounts and access rights during the period. Identity Security solutions focus on managing digital identities, controlling permissions, and preventing unauthorized access across corporate systems. The findings indicate ongoing challenges in maintaining secure access despite growing investments in specialized tools and platforms.
How a Node.js Bridge Connects MAX and VK Messengers to Chatwoot with Secure Bidirectional Sync
A detailed technical case study describes building a lightweight Node.js service that links the MAX messenger and VK communities to Chatwoot without scraping or using personal accounts. The bridge uses official bot APIs and community callbacks, separate API inboxes, and persistent state stored in a Docker volume to maintain conversation mappings across restarts. Security measures include webhook secret validation, deduplication of events using ring buffers, SSRF protections when handling images, and strict filtering to prevent loops or private notes from leaking externally. The implementation covers contact and conversation creation via Chatwoot Application API, image transfer for VK, and graceful recovery after partial failures. Limitations such as lack of exactly-once delivery and absence of a durable queue are acknowledged, with recommendations for production use including SQLite, retries, and structured logging. The author provides configuration examples, health checks, and a capability matrix showing current support for text and media in each direction.