AntiMalware•September 28, 2026•🇷🇺Translated from Russian

Russia's Taxi Market Overrun by Illegal Drivers Using Fake Accounts and Gray Intermediaries

Russian taxi services have become riddled with gray intermediaries that enable drivers lacking valid licenses, required experience, or even Russian driving permits to enter the market through fake accounts.

Between an aggregator and a driver there can be multiple layers including dispatch companies, car fleets, individual entrepreneurs, and so-called podklyuchashki that promise quick access to platforms in exchange for a selfie and an advance payment. Ready-made driver accounts are openly sold online for 3-7 thousand rubles.

A telling case occurred in Odintsovo, where a driver refused to transport a disabled veteran of the special military operation. Support offered only a 100-ruble promo code; the driver was later deported, and an investigation uncovered a convoluted ownership structure involving one company owning the vehicle, an unregistered individual entrepreneur connecting it to the aggregator, and a driver with no formal employment relationship.

According to the FGIS Taxi registry, more than 900,000 vehicles are officially listed, while over 1.5 million drivers may be working in the gray zone. Russians make approximately 10 million taxi trips every day.

The consequences extend beyond passenger frustration. In 2025 alone, more than 3,100 accidents involving taxis occurred, killing 143 people and injuring over 3,800 others. Courts apply liability inconsistently, sometimes holding the aggregator responsible, sometimes the fleet, and sometimes only the driver.

Experts recommend granting aggregators formal carrier status, requiring them to verify vehicles and drivers, and introducing joint liability to close existing regulatory gaps.

Related articles

Habr•Other

Klark and Klara Launch Self-Hosted Corporate Messenger and Task Manager for On-Premise Data Control

Klark and Klara are two integrated products designed to keep corporate communication and task management entirely within company infrastructure. Klark functions as a Telegram-like messenger with personal chats, supergroups, channels, voice messages, file sharing, and video calls powered by LiveKit. Klara serves as a streamlined task and knowledge base system replacing complex setups like Jira and Confluence. Both run via Docker Compose on customer servers using PostgreSQL, Redis, FastAPI, and React, with built-in antivirus scanning via ClamAV. Key security measures include mandatory TOTP two-factor authentication, LDAP integration, content security policies, and automatic session invalidation on token reuse. The combination allows direct task creation from chat messages and displays tasks alongside conversations in a unified interface.

AntiMalware•Other

Russians Offered Unofficial 5G Activation on iPhone for 399 Rubles with No Guarantees

A Russian service called 5G First is selling a tool that removes Apple's 5G restrictions on iPhones for 399 rubles without requiring a jailbreak. The method works by modifying carrier profile settings that control which network features are permitted for a given SIM card. A free alternative named CarrierSIM achieves the same result by forcing the device to adopt the Vodafone Hungary carrier profile where 5G is already enabled. Both solutions are described as experimental, depend on specific iOS versions, operators and SIM cards, and offer no assurance they will survive future system updates. The Ministry of Digital Development is already in discussions with Apple about enabling 5G officially on Russian iPhones. Successful activation of the 5G menu option does not create network coverage where Russian operators have not yet deployed it.

Habr•Other

CryptoLab: Interactive Educational Platform Turns Cryptographic Protocols Course into Hands-On Alice, Bob and Mallory Experiments

A university instructor developed CryptoLab, an educational testbed that lets students run live cryptographic protocol experiments with active attackers instead of simple encrypt-decrypt exercises. The platform models the classic Alice-Mallory-Bob scenario where each participant runs as a separate application mode, allowing inspection, modification, dropping, and replay of packets. The first lab focuses on AES-GCM, AEAD properties, nonce reuse, replay protection, weak RNGs, key rotation, and metadata leakage. Students can operate in interactive mode to manually attack traffic or execute automated scenarios that verify expected security outcomes. Experiments demonstrate that modifying ciphertext triggers authentication failure and that a valid authentication tag does not guarantee message freshness without additional replay defenses. The tool also includes Python 3.10 assignments for correctly using cryptographic primitives rather than implementing algorithms from scratch. CryptoLab currently supports Windows x64 and macOS Apple Silicon builds and serves as the foundation for upcoming labs on symmetric encryption modes, asymmetric cryptography, key exchange, and TLS.

Habr•Other

From Scanner Overload to Manual Insight: A Bug Bounty Hunter's Journey

A young researcher recounts his transition from automated scanning to thoughtful manual analysis in Bug Bounty programs. After completing a broad information security course covering cryptography, networks, Docker, databases, and OWASP Top 10, he initially approached real-world targets with the same scanner-heavy mindset used in labs. Months of fruitless results led to burnout and a six-month break working in construction. Returning with a new focus, he studied hundreds of public HackerOne reports to understand researcher reasoning and anomaly detection. This shift enabled his first valid, unreported finding and fundamentally changed his methodology. Today the 18-year-old university student balances Bug Bounty with reconnaissance, machine learning, and personal projects while emphasizing deep application understanding over tool volume.