HabrAugust 3, 2026🇷🇺Translated from Russian

Oxygen Cloud Platform Deploys Russian VDI Solution for Heavy 3D CAD Work in One Month

Oxygen Cloud Platform has shared details of a compressed one-month project that delivered a fully domestic VDI environment capable of running heavy 3D CAD applications for design engineers.

The unnamed customer, a Russian company that designs and manufactures complex equipment, required remote access to resource-intensive applications including Siemens NX, SolidWorks, and Kompas-3D on import-substituted hardware and software over a dedicated channel. Data had to remain inside a protected data center while remaining accessible to remote facilities located 1,500 km away.

From six-month R&D to one-month production rollout

After an earlier large-scale Astra Linux VDI deployment completed in ten days, the team allocated six months for thorough testing. When the new request arrived with an “as soon as possible” deadline, the accumulated knowledge had to be applied under tight time constraints.

Key technical challenges and resolutions included:

  • High rendering latency with NVIDIA T4 cards — resolved by switching to NVIDIA A40 GPUs.
  • Variable resource demands across user profiles — addressed by tuning vCPU, RAM, and vGPU allocations for NX and Kompas-3D workloads.
  • Failure to detect a second monitor — fixed by updating thin-client firmware.
  • Network-induced performance issues — mitigated through optimization of the Loudplay protocol and deployment of newer releases of Astra Linux, Termidesk, and Loudplay Client.
  • Manual desktop assignment — automated via Termidesk broker with separate resource pools in Active Directory.

Virtual GPU functionality is provided by the Russian Forsite vGate solution running on domestic hypervisors, combined with NVIDIA GRID vGPU profiles. The resulting infrastructure supports both office users and engineers working with large assemblies while satisfying regulatory requirements for Russian software and hardware.

Related articles

HabrOther

OSINT for the Lazy Part 18: Extracting Value from Wayback Machine Archives for Bug Bounty and Security Research

The article explores passive reconnaissance techniques using web archive tools to uncover forgotten endpoints, configuration files, and sensitive parameters without directly interacting with target systems. It highlights three command-line utilities—waybackurls, gau, and waymore—that query public archives such as Wayback Machine, Common Crawl, AlienVault OTX, and URLScan to retrieve historical URLs. These tools help bug bounty hunters and penetration testers discover old API endpoints, admin panels, backup files, and JavaScript with hardcoded secrets that may still be exploitable. Installation instructions, usage examples, and filtering options are provided for each tool to maximize efficiency and reduce noise in results. The piece emphasizes that all methods remain fully passive, minimizing detection risk while requiring proper authorization before any active testing. Advanced users are advised to combine the tools for broader coverage and deeper analysis of archived responses.

HabrOther

OSINT Investigation Exposes Fraudulent Russian Garlic Investment Scheme Masquerading as Local Production

An in-depth OSINT probe into a Russian agricultural investment project promising 50-70% annual returns from garlic farming has revealed a likely import arbitrage operation sourcing produce from China and Uzbekistan. The project claimed ownership of over 300 hectares of fields, a proprietary seed fund, and guaranteed sales to major retailers including Magnit, Perekrestok, Pyaterochka, and Svetofor, yet public records show minimal profitability and heavy debt. Financial statements from linked cooperatives indicated just 2.2% net margin alongside loans exceeding annual revenue fourfold, pointing to reliance on continuous new investor capital. Registry checks confirmed no financial licenses, no seed-breeding status, and actual cultivated land far below advertised figures. Import declarations and equipment registrations further indicated the operation functions as a repackaging hub for foreign garlic sold under private labels. The parent group has been placed on the Bank of Russia blacklist, with related sites blocked by Roskomnadzor while Telegram channels continue aggressive marketing.

HabrOther

Deploying Self-Hosted Hysteria 2 Proxy on Debian-Based Linux VPS via Terminal

A detailed guide explains how to set up a personal Hysteria 2 proxy server on a KVM VPS running Debian or Ubuntu without any web panels. The process begins with generating ed25519 SSH keys, hardening the sshd_config file, and restricting access with ufw to only TCP port 22 and UDP port 443. Hysteria 2 is downloaded from GitHub, made executable, and configured using a TOML file that enables salamander obfuscation and a self-signed TLS certificate. A custom systemd unit ensures the service restarts on failure. The client configuration includes SHA256 pinning of the server certificate to prevent MITM attacks. The guide emphasizes manual CLI operations that apply equally to other services such as Nginx and stresses checking local laws before deployment.

AntiMalwareOther

Rostec Scales PCAT Platform Nationwide as Russia's First Industrial Marketplace

Rostec has expanded its PCAT platform to every organization within the state corporation that manufactures civilian products. Operating since 2025 and upgraded in September 2026, the platform now unites more than 180 enterprises and research organizations. Its catalog contains over 1,250 finished products along with 370 technological and manufacturing competencies. Visitors can locate not only equipment and components but also partners able to design, test, or produce required solutions. The portal receives more than 23,000 weekly visits, 60 percent of them from corporations and large enterprises. Rostec is extending the network into the regions through supply-chain agreements already signed with Krasnodar Krai and the oblasts of Tver, Tula, and Ryazan. In parallel the corporation launched the Robot Management System in November 2025 for centralized control of robots, sensors, and related IT services.