Minцифры Strengthens Protection: Access to «Gosuslugi» via Mobile Will No Longer Require an SMS Code

icon
20:27; 05 December 2025 year
ООО "Региональные новости"

© ООО "Региональные новости"

The Ministry of Digital Development announced a gradual transition away from the use of SMS codes for accessing the "Gosuslugi" portal. The measure is intended to protect against fraudulent schemes where malicious actors trick users into disclosing one-time passwords from messages under various pretexts. Reason - Security The SMS code, which was long considered a reliable authentication method, has now become the most vulnerable link in the security chain. Scammers use social engineering techniques to persuade users to willingly provide these numbers, thereby gaining full access to their personal accounts. At the initial stage, the new rules will only affect access via mobile devices - through the "Gosuslugi" app or mobile website version. For users accessing the portal from computers, the option to log in using SMS codes will remain available. How to Log In? The Ministry of Digital Development is focusing on more secure and modern two-factor authentication methods: - A chatbot in the MAX messenger. This will be one of the new features. Before issuing a code, the bot will ask additional questions to detect possible signs of fraud. If the answers raise suspicions, the code will not be sent, and the user will be warned about the danger. - Special authentication apps (TOTP services). The code is generated within the app itself, which eliminates the possibility of interception via SMS. - Biometrics. Access via fingerprint or facial recognition is the fastest and most convenient method. For MAX, users can connect it as a second factor of protection directly on the portal banner or in the app. For other methods, all settings are available in the "Security" section of the personal account on the portal. The Ministry of Digital Development emphasizes that entering a login, password, and confirmation code will not be required every time the mobile app is opened. The session in the mobile app will last up to six months - similar to how many banking apps work. This balance will maintain both security and the convenience of daily use.