AntiMalware•August 10, 2026•🇷🇺Translated from Russian

Russia Develops Domestic ERA-GLONASS System for Public Transport Tracking During GPS and GLONASS Disruptions

AO GLONASS has developed a domestic tracking platform that keeps public transport visible to dispatchers even during satellite navigation failures and radio-electronic warfare. The system operates on top of the state information platform ERA-GLONASS and does not require continuous GPS or GLONASS connectivity.

Autonomous markers installed near stops are pre-linked to precise route coordinates. Vehicles carry matching identifiers that trigger position reports as they approach each stop. The resulting data is forwarded to city dispatch centers, transport operators, cartographic services, and passenger mobile applications.

Kaluga will serve as the initial test site. Starting 1 September, passengers will be able to monitor trolleybuses on three dedicated routes in real time. The same infrastructure is expected to support municipal equipment and emergency service vehicles in later phases.

Transmission occurs over the secure ERA-GLONASS communication network, which functions independently of commercial mobile internet and remains accessible during network limitations because the services are placed on official white lists. The roadside markers require no grid connection and are rated for five years of autonomous operation regardless of weather conditions.

All hardware, software, and encryption algorithms are produced in Russia using domestic components, ensuring compliance with national technological sovereignty requirements.

Related articles

Habr•Other

Hash Functions Part 1: Core Properties, Security Requirements and Practical Applications

The article provides a detailed introduction to hash functions, explaining how they map arbitrary-length input to fixed-length output while satisfying three fundamental security properties. It covers preimage resistance, second preimage resistance, and collision resistance, along with the avalanche effect that makes even minor input changes produce unrecognizable output. The text explains why a 256-bit digest is required to achieve 128-bit collision resistance, referencing the birthday paradox and its implications for MD5 and SHA-1. Practical guidance includes using OpenSSL for hashing, applying hashes in commitment schemes, enforcing subresource integrity on web pages, and securely storing passwords with Argon2 and bcrypt. The post emphasizes that hash functions alone do not guarantee integrity without proper transmission of the digest and announces a follow-up on SHA-2 and SHA-3 internals.

Habr•Other

Digital Twins Enable Pre-Deployment Testing and Post-Change Control in Complex Multi-Vendor Networks

UserGate and Hadal Project experts presented a joint approach at Saint HighLoad++ that combines physical labs, emulation, and simulation into a single lifecycle for validating network changes. The method addresses recurring failures such as IPsec tunnel outages after routine software updates that pass vendor checks yet break branch connectivity. Three complexity sources—multi-vendor environments, historical configuration debt, and continuous dynamic updates—are mitigated by maintaining an always-current network model. Physical laboratories provide hardware-level accuracy for critical devices, while uInfraTwin emulation allows rapid, repeatable testing of configuration scenarios with traffic generators. Simulation tools including Batfish, Hadal, Forward Networks, and IP Fabric deliver end-to-end reachability analysis across tens of thousands of nodes without sending test traffic on production networks. The integrated digital twin continuously updates from live infrastructure, feeds selected segments into safe test environments, and verifies policy compliance after deployment.

AntiMalware•Other

Positive Technologies Releases MaxPatrol SIEM 28.0 with Major Resource Optimizations and AI Enhancements

Positive Technologies has launched MaxPatrol SIEM 28.0, enabling security operations centers to process significantly more security events without requiring additional hardware. Internal tests show the new version consumes up to 26% less CPU and 52% less RAM compared to the previous release. Optimized components for event processing and data storage now allow the system to handle 40,000 events per second instead of 20,000 on comparable servers. The architecture has been refined so that unnecessary roles can be omitted when MaxPatrol SIEM operates independently from other platform products such as MaxPatrol VM. The behavioral analysis module MaxPatrol BAD received the new HackTracker component, which detects attackers by behavior patterns rather than only by tools, and now supports Unix event analysis with linked activity chains. The PT Naira AI assistant has been simplified for easier configuration, helping analysts write normalization rules, explain events, and search documentation, with claims of reducing investigation time by up to 50% and rule creation effort by up to 90%. Analysts also benefit from added context in correlation rule cards, quick navigation links, and a native dark theme.

Habr•Other

macOS User Investigates Claude Regional Block via Logs and Restores Work Site Access with Targeted WireGuard Routes

A detailed case study describes how a macOS user analyzed Claude application logs after experiencing regional unavailability errors while using WireGuard VPN. The investigation covered ~/Library/Logs/Claude/ files containing markers like app-unavailable-in-region and region_unavailable, cross-referenced with tunnel activity dates from August to October 2026. No direct evidence linked the VPN to the account block, as tunnel logs were overwritten and system journals returned Operation not permitted errors. The user then addressed a secondary issue where WireGuard blocked access to work services including amoCRM, TGBooster, and Geekjob. Custom host routes were added via route add commands to direct specific IPv4 addresses through the local gateway while keeping Claude traffic in the tunnel. A launchd-based PF kill switch was tested for tunnel failure protection but caused a full internet outage on October 5 due to anchor and hook conflicts, leading to its rollback. By October 8, work sites functioned under VPN with verified routes, though persistent kill switch protection remained unresolved.