AntiMalwareAugust 26, 2026🇷🇺Translated from Russian

Russia Permits 5G Deployment on Existing 4G Infrastructure and Frequencies

The Russian Ministry of Digital Development has submitted a draft decision to the State Commission on Radio Frequencies that grants technological neutrality to mobile operators. Under the new rules, Beeline, Megafon, MTS and Tele2 will be permitted to deploy 5G networks on existing LTE base stations and frequencies previously allocated for 4G.

The policy allows operators to use currently installed foreign equipment provided it was deployed before 1 September 2026. This approach removes the need to build a completely new radio access network from scratch and enables faster commercial launch of fifth-generation services.

In addition, new spectrum blocks in the 4.63-4.99 GHz range will be assigned for high-performance 5G networks and industrial applications. These frequencies support high data rates but propagate over shorter distances and penetrate obstacles less effectively than lower bands.

First commercial 5G services must be available in all Russian cities with populations exceeding one million no later than 31 December 2027. Between 2027 and 2031 operators will progressively expand coverage in city centers, business districts and high-traffic locations before extending to other areas.

Simultaneously, a phased transition to Russian-made base stations will begin in 2027 and must be completed by the end of 2031. The overall strategy therefore combines immediate use of existing infrastructure with a long-term requirement for domestic equipment.

Related articles

AntiMalwareOther

Aeroflot to Accept Digital Rubles for Ticket Purchases Starting September 2026

From September 1 2026 Aeroflot will begin accepting digital rubles as a payment method for airline tickets both on its website and in company sales offices. Customers choosing the new option online will see a QR code generated by the site that must be scanned in a participating bank application. The payment is then confirmed from the digital wallet hosted on the Bank of Russia platform and an electronic ticket plus receipt are issued automatically. The same QR-based flow will be used at physical ticket counters where the code appears on the terminal. Ordinary bank cards and other payment methods remain fully available and no physical digital cash is required. On the same date MTS will start accepting digital rubles through MTS Pay while Rostelecom and Megafon are also preparing their systems. Russian authorities have clarified that the digital ruble is the third official form of the national currency alongside cash and non-cash funds rather than a cryptocurrency.

SecuritylabOther

Grep_Tribe Blue Team Shares SOC Defense Lessons from Standoff 17 Cyber Battle

The Grep_Tribe team participated in Standoff 17 for the third time, defending the RetailSTF Group infrastructure in a simulated State F environment against continuous red team attacks. They handled 37 confirmed incidents, 22 detected incidents, five investigated critical events, and maintained 88 percent average infrastructure availability. The team used familiar Positive Technologies tools alongside the new R-Vision SOAR platform to automate routine responses such as IP blocking and file sandboxing. Work was organized through a tribal system with role-based preparation and dynamic small-group investigations for complex attack chains. Participants highlighted how the event tested prioritization, Threat Intelligence attribution, and automation under high-intensity conditions unlike daily SOC operations. The experience reinforced plans to expand SOAR playbooks for repetitive tasks in their real internal SOC environment.

HabrOther

Password Reset Fails to Evict Attackers: What Persists in Compromised Email Accounts

Even after users change passwords and enable two-factor authentication, attackers often retain access through active sessions, application tokens, and forwarding rules. The original password serves only as an entry point, while already-issued session cookies, refresh tokens, and app passwords continue functioning independently. Services like Google, Microsoft, and Yandex provide specific pages to review devices, permissions, and app passwords, yet many users overlook the critical "sign out all devices" option. In corporate environments, Microsoft Entra ID commands can revoke sessions, but access tokens may still remain valid for up to an hour afterward. Attackers frequently replace recovery details and set up mail delegation or hidden forwarding rules to maintain long-term control. The recommended sequence prioritizes session revocation first, followed by password change, MFA review, and recovery data verification to prevent re-entry via forgotten-password flows.

AntiMalwareOther

86% of Large Russian Companies Use or Pilot LLMs While Autonomous AI Agents Remain Rare in Production

A joint study by Infosystems Jet and Smart Ranking reveals that 86% of major Russian organizations are already deploying or testing large language models, with 53% having moved generative AI solutions into full production. Adoption drops sharply for more autonomous systems: only 15% run semi-autonomous AI agents in production, while fully autonomous and multi-agent setups reach just 8% each. The primary barriers are not model availability but insufficient process maturity, data infrastructure readiness, and integration complexity, cited by 44% of respondents. Additional obstacles include server costs (58%), legal risks (56%), budget limits (42%), and talent shortages (40%). Nearly half of surveyed companies report no measurable financial return from AI projects so far, highlighting the gap between pilot success and scalable value. The research covered 52 large firms employing roughly 450,000 people in total.