AntiMalware•October 2, 2026•🇷🇺Translated from Russian

Yandex B2B Tech Integrates Hybrid Full-Text and Vector Search in Single YDB Query

Yandex B2B Tech has introduced hybrid search capabilities to its YDB database platform, combining full-text and vector search methods within a single query.

The new feature enables organizations to solve two tasks simultaneously: locating an exact document identifier such as a policy number and interpreting the semantic meaning of surrounding text, even when alternative phrasing is used. Full-text search manages precise matches for words, names, and codes, while vector search identifies conceptual similarity across documents.

According to the YDB development team, the two approaches complement each other effectively. In insurance-related queries, for example, the system can return an exact policy number alongside descriptions of incidents that match in meaning despite different wording. Results are combined and ranked inside one SQL query, simplifying application logic.

A key practical advantage is that all data remains in a single database. Companies no longer need to operate a separate search engine and vector database or monitor consistency between the two systems. Indexes are updated together with the underlying data as part of the same transaction, reducing synchronization overhead and potential data drift.

The technology is designed for chatbots, recommendation services, and AI assistants that require more than simple keyword matching. It is especially relevant when processing technical information where both precise part codes and natural-language problem descriptions must be handled accurately.

Hybrid search is available in the corporate edition of YDB 26.3 for on-premises deployment as well as in the cloud Managed Service for YDB.

Related articles

Habr•Other

Enterprise-Grade Web Protection on a Budget: How Cloud WAF Lowers Barriers for SMBs

A new overview from Reg.cloud explains how cloud-based Web Application Firewalls reduce the cost and complexity of protecting websites, APIs, and web applications for small and medium-sized Russian businesses. According to Positive Technologies data cited in the article, 75% of successful web application attacks in 2025 disrupted organizational operations, while 82% of SMBs faced cyber incidents in the past year. The piece details the differences between traditional on-premises WAF deployments and cloud offerings, emphasizing ready-made protection profiles for CMS platforms, SaaS services, and digital agencies. It outlines a three-stage operational model covering preparation, DNS-based traffic redirection, and ongoing policy tuning that can be handled by existing DevOps or development teams without dedicated security staff. The service currently offers a free tier supporting up to three applications at 50 requests per second, along with seven preconfigured security profiles and dual audit/blocking modes. The article concludes by stressing that WAF remains only one layer and must be combined with patching, access controls, and separate DDoS or anti-bot solutions.

AntiMalware•Other

Google Developing Voice-Activated Emergency SOS Feature for Android Devices

Google is working on a voice-activated Emergency SOS function for Android that would allow users to summon help without touching their smartphone. The feature, discovered in the Personal Safety app code by Android Authority, appears to trigger after the user says the word 'Help' three times in sequence. Once activated, the system would automatically determine location, begin emergency video recording, and place a call to emergency services. The current method requires pressing the power button five times, which can be impractical in certain situations. Additional code strings suggest optional voice confirmation with phrases such as 'Say yes to continue' and 'Say cancel to dismiss Emergency SOS'. The function is not yet available to users and may eventually reach non-Pixel devices running the Personal Safety app, though supported languages and models remain undisclosed.

Habr•Other

How the Lorenz SZ 42 Teleprinter Cipher Machine Worked: Nazi High Command Encryption and Its 1941 Breakthrough

The Lorenz SZ 42 was a teleprinter attachment used by the German high command for encrypting top-secret communications during World War II, operating on the Vernam cipher principle with twelve wheels generating a keystream. Unlike the portable Enigma, Lorenz integrated directly between teletypes for automatic five-bit ITA2 encryption. British interceptors at Knockholt first encountered its signals in 1940, later named Tunny. A critical operator error on 30 August 1941 allowed cryptanalysts at Bletchley Park to deduce the machine's structure. This led to the development of the Colossus computer in 1944 for automated decryption. The article details the χ, ψ, and μ wheel groups, the stuttering psi mechanism, and Python implementations of ITA2 encoding and XOR operations.

Securitylab•Other

Inside the Fortress: Why Perimeter Security Tools Fall Short and How Microsegmentation Protects Networks Internally

Companies invest heavily in perimeter defenses such as firewalls and intrusion detection systems, yet these measures no longer guarantee safety as attackers increasingly operate from within networks. Traditional L2 domains leave virtual machines unisolated, enabling traffic interception, lateral movement, and malware spread similar to an apartment building with poor soundproofing. Microsegmentation powered by SDN divides VLANs into isolated microsegments down to individual VM ports, enforcing granular policies based on ports, IP addresses, and protocols. This approach implements Zero Trust by placing virtual packet filters directly at VM network interfaces on the hypervisor, independent of guest OS actions. Performance remains high because filtering runs on powerful virtualization servers, and scaling occurs naturally as additional hypervisors absorb new workloads without extra configuration. A real-world case from the oil and gas sector shows one customer creating up to 5,000 new microsegmentation rules per week via open REST API. The technology complements rather than replaces perimeter firewalls, delivering both strict internal controls and operational agility.