Policy · 126 days ago
The key change is policy, not a new flaw. The FCC is moving from blanket exclusion of banned foreign routers to controlled remediation, which breaks the old assumption that prohibited gear must stay untouched even when security fixes exist.
The bulletin says the FCC relaxed its foreign-router ban to allow security updates. That matters for telecom and government networks that already have legacy equipment in place, because the issue shifts from simple removal to compliance, asset-trust, and patching decisions for gear that was previously blocked by policy.
The immediate risk is not an exploit chain. It is that operators now have to reconcile security maintenance with rules built around exclusion, and that tension will shape how long banned equipment remains in service.
4 sources covering this story
FCC Softens Ban on Foreign-Made Routers
The Federal Communications Commission eased some restrictions and pushed back deadlines for foreign router manufacturers, but the ban is still in place.
The Record from Recorded Future
FCC pushes ban on security updates for foreign-made routers, drones to 2029
The router deadline, originally slated for March 1, 2027, has been pushed back to at least January 1, 2029, according to the announcement from the FCC’s Office of Engineering and Technology (OET).
US: FCC Relaxes Foreign-Made Router Ban to Allow for Security Updates
The same extension applies to security updates shipped to US-based users of foreign-made drones
Risky Bulletin: FCC relaxes foreign router security patch ban
The FCC relaxes its foreign router ban to allow for security updates, the ShinyHunters group disrupts schools across the globe, a 21-year- [Read More
Part of the PlainSec briefing for 2026-05-11