AntiMalwareAugust 3, 2026🇷🇺Translated from Russian

Russia Drafts Rules Letting Users Choose AI Assistant at Smartphone First Boot

The Russian Ministry of Digital Development has prepared a draft government resolution that would let users choose their system AI assistant when first activating a smartphone. The proposal, now open for public discussion, replaces the current narrow category of voice assistant with the wider term system assistant.

Under the draft, a system assistant is an AI program that interacts with the device, operating system, and installed applications through voice, text, and visual commands. At initial setup, users would be presented with a list of available solutions and could select one or refuse installation entirely. No specific company, service, or platform is mandated.

The chosen assistant must receive the same treatment as any pre-installed solution from the device manufacturer or operating system vendor. This includes regular updates, support for user settings, and equal visibility in the interface. The pre-installed version must remain free of charge and must not disappear after software updates or a factory reset.

The changes would also affect the list of pre-installed search services, allowing inclusion of solutions that incorporate artificial intelligence technologies. Ministry officials argue the measure will strengthen competition between Russian and foreign platforms and ensure continued access to modern AI services even if individual foreign products encounter regulatory restrictions.

The core principle of the draft is straightforward: device manufacturers would no longer unilaterally decide which AI assistant is installed. The final choice would rest with the device owner.

Related articles

AntiMalwarePolicy & Regulation

FAS Case Against Apple Will Not Brick iPhones for Russian Users

The Russian Federal Antimonopoly Service (FAS) has opened a case against Apple for failing to pre-install a national messenger and a Russian app store on iOS devices, yet officials have confirmed that no technical measures will disable or restrict existing iPhones. Deputy Chairman of the State Duma Committee on Information Policy Andrey Svintsov stated that the actions of FAS, Roskomnadzor and other agencies are limited to recording violations and collecting fines. Apple had already implemented the option to select a domestic search engine but did not meet the remaining pre-installation requirements. Svintsov emphasized that any court decisions will remain in force until Apple decides to return to the Russian market and settles accumulated penalties. The approach is designed to replenish the state budget through fines once the company resumes legal operations. Russian iPhone owners can continue using their devices without any risk of remote blocking or forced conversion into expensive paperweights.

AntiMalwarePolicy & Regulation

Yandex Cloud Partners with Sogaz and Ingosstrakh to Automate Cyber Risk Assessment for Business Insurance

Yandex Cloud, through its Yandex B2B Tech division, has launched joint cyber insurance programs with Russian insurers Sogaz and Ingosstrakh. The initiative replaces traditional manual questionnaires with automated infrastructure scanning via the Yandex Security Deck service. The tool examines cloud resources, applications, and data to identify open internal information, excessive user privileges, leak risks, and potential compromise vectors. Detected issues are consolidated in a single prioritized interface and shared with insurers to refine policy terms. If critical gaps are found, Yandex Cloud also provides remediation recommendations. The move comes as demand for cyber insurance grows rapidly, with Sogaz reporting that requested coverage volume doubled year-over-year to exceed 12 billion rubles in the first half of 2026.

AntiMalwarePolicy & Regulation

Over 20 VPN Services Hit by Outages After Russian Regulators Block Hosting Provider Subnets

Users of multiple VPN services reported widespread connection problems throughout the day as IP addresses belonging to several large hosting providers were placed under restrictions. The blocks targeted infrastructure used by VPNs to reroute traffic around content filters, causing entire ranges of servers to become inaccessible when whole subnets were affected. The Telegram channel Exploit reported that more than 20 VPN services of varying sizes experienced disruptions, though Roskomnadzor has not issued an official statement on the scope or origin of the measures. The affected providers indicated they are shifting customers to backup servers, noting that the restrictions appear selective yet still force frequent address changes during the day. The incidents coincide with ongoing discussions of new rules that would require hosting providers to independently detect and report masked VPN IP addresses to regulators. Similar large-scale subnet blocks occurred in late May, impacting numerous MTProto-based proxies and VPNs simultaneously.

安全客Policy & Regulation

HackerOne Ends Anonymous Era for Bug Bounty Hunters with Mandatory ID Verification

HackerOne has introduced compulsory identity verification for all researchers submitting reports to paid bug bounty programs, effective August 1. The policy requires users to complete KYC checks through Estonian firm Veriff by uploading government-issued ID and performing a live selfie, with annual renewals. Vulnerability Disclosure Programs remain open to anonymous participants, but any researcher seeking monetary rewards must now reveal their identity. The move follows similar steps by Bugcrowd and Intigriti and is driven by anti-money laundering and cross-border payment regulations. Researchers in high-surveillance regions and newcomers face new barriers, while the platform argues the change improves report quality and enterprise trust. H1 Clear adds an extra criminal background check layer for elite participants.