Back Mezha Cloudflare flagged max.ru as spyware linked to Russian messenger MAX
Security researchers flagged unusual activity around a messaging related domain, raising questions covert data access and third party transfers. The label hints at potential access to messages, calls, files and location, prompting scrutiny but not naming app store actions yet.
According to the report on the Cloudflare Radar platform Cloudflare Radar .
Cloudflare classified the domain max.ru as spyware linked to the Russian national messenger MAX.
According to the Cloudflare Radar report, four security breaches were recorded, and the domain max.ru, associated with the MAX messenger, was classified as spyware.
The spyware label serves as a signal to security systems covert data collection and transmission, including possible access to messages, calls, files, and geolocation, and the transmission of data to third parties.
Earlier a similar label was applied to the Telega domain, a Telegram client, which was later removed from the App Store.
Typically, App Store and Google Play online stores remove apps with such a reputation, underscoring the seriousness of the designation.
In Russia, there were also reports of an unofficial Telegram client named Telega, which ran on VK’s infrastructure and the state messenger MAX, both fully controlled by the Russian government and used for state digital surveillance.
These cases underscore the need for careful verification of the origin of apps and the level of data access before their use.
Don’t miss other news:
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
