Avito Considers Launching In-App Dating Service for Serious Relationships with Emphasis on Safety and Verification
Russian online marketplace Avito is actively studying the launch of its own dating service that would operate directly inside the company’s main application.
The platform confirmed that the concept remains in the research phase and that no final decision has yet been taken. Before proceeding, Avito intends to analyze market conditions, user behavior patterns, and overall demand for such functionality.
According to information obtained by Kommersant, the future service is planned to be entirely free and will target individuals looking for serious, long-term relationships rather than casual dating.
Security has been designated as the central pillar of the project. Key measures under discussion include mandatory profile verification, active countermeasures against bots and fake accounts, a three-stage moderation process, and encrypted communication channels between users.
To strengthen identity checks, Avito may integrate external verification providers, potentially including Russia’s state portal Gosuslugi.
Partner recommendations are expected to rely on the same machine-learning infrastructure the company already employs for its classifieds catalog. More than 100 models are currently in production, and these could be adapted to match users seeking personal relationships instead of apartments or vehicles.
Prior to any public release, Avito plans to gauge genuine interest through a Fake Door test: the feature would be displayed to users as though it already exists, allowing the company to measure how many people attempt to access it.
Existing dating platforms have responded without alarm. Mamba described the move as logical but pointed out that mandatory verification has long ceased to be a unique selling point. Twinby suggested the primary goal may be to increase overall time spent inside the Avito application.
One potential obstacle remains: whether users will feel comfortable combining classified advertisements and dating profiles within a single account, a level of digital openness that not everyone may accept.
For now, Avito Знакомства exist only as an internal project. Should the service eventually launch, the familiar phrase “found it on Avito” could acquire an entirely new meaning.
Related articles
Aeroflot to Accept Digital Rubles for Ticket Purchases Starting September 2026
From September 1 2026 Aeroflot will begin accepting digital rubles as a payment method for airline tickets both on its website and in company sales offices. Customers choosing the new option online will see a QR code generated by the site that must be scanned in a participating bank application. The payment is then confirmed from the digital wallet hosted on the Bank of Russia platform and an electronic ticket plus receipt are issued automatically. The same QR-based flow will be used at physical ticket counters where the code appears on the terminal. Ordinary bank cards and other payment methods remain fully available and no physical digital cash is required. On the same date MTS will start accepting digital rubles through MTS Pay while Rostelecom and Megafon are also preparing their systems. Russian authorities have clarified that the digital ruble is the third official form of the national currency alongside cash and non-cash funds rather than a cryptocurrency.
Russia Permits 5G Deployment on Existing 4G Infrastructure and Frequencies
The Russian Ministry of Digital Development has prepared a draft decision for the State Radio Frequency Commission that introduces technological neutrality for mobile networks. Major operators including Beeline, Megafon, MTS and Tele2 will be allowed to launch 5G services on spectrum and base stations already allocated for LTE. The measure covers foreign equipment installed before September 2026 and aims to accelerate commercial 5G rollout without waiting for entirely new infrastructure. Additional spectrum in the 4.63-4.99 GHz band will be allocated for high-capacity use cases, although these frequencies offer limited coverage. Commercial 5G services must appear in cities with over one million residents by the end of 2027, with gradual expansion through 2031. Domestic base stations are scheduled to replace foreign equipment between 2027 and 2031.
Grep_Tribe Blue Team Shares SOC Defense Lessons from Standoff 17 Cyber Battle
The Grep_Tribe team participated in Standoff 17 for the third time, defending the RetailSTF Group infrastructure in a simulated State F environment against continuous red team attacks. They handled 37 confirmed incidents, 22 detected incidents, five investigated critical events, and maintained 88 percent average infrastructure availability. The team used familiar Positive Technologies tools alongside the new R-Vision SOAR platform to automate routine responses such as IP blocking and file sandboxing. Work was organized through a tribal system with role-based preparation and dynamic small-group investigations for complex attack chains. Participants highlighted how the event tested prioritization, Threat Intelligence attribution, and automation under high-intensity conditions unlike daily SOC operations. The experience reinforced plans to expand SOAR playbooks for repetitive tasks in their real internal SOC environment.
Password Reset Fails to Evict Attackers: What Persists in Compromised Email Accounts
Even after users change passwords and enable two-factor authentication, attackers often retain access through active sessions, application tokens, and forwarding rules. The original password serves only as an entry point, while already-issued session cookies, refresh tokens, and app passwords continue functioning independently. Services like Google, Microsoft, and Yandex provide specific pages to review devices, permissions, and app passwords, yet many users overlook the critical "sign out all devices" option. In corporate environments, Microsoft Entra ID commands can revoke sessions, but access tokens may still remain valid for up to an hour afterward. Attackers frequently replace recovery details and set up mail delegation or hidden forwarding rules to maintain long-term control. The recommended sequence prioritizes session revocation first, followed by password change, MFA review, and recovery data verification to prevent re-entry via forgotten-password flows.