FCC Extends Firmware Update Waiver for Banned Foreign Routers and Drones to 2029
The US Federal Communications Commission (FCC) has extended a critical waiver allowing foreign-made routers and drones to receive software and firmware updates until January 1, 2029. This decision reverses an earlier 2027 deadline, addressing industry concerns that cutting off security patches would leave millions of devices vulnerable to cyberattacks. While the ban on approving new foreign hardware remains due to national security risks, this extension ensures existing equipment maintains functionality and security. The move balances cybersecurity needs with practical consumer protection amidst ongoing tensions regarding foreign supply chains.
Editorial summary awaiting refresh
Cross-source coverage
Wire timeline
FCC Extends Waivers for Foreign Router Updates to 2029
The Federal Communications Commission (FCC) has quietly extended waivers allowing software and firmware updates for certain foreign-made routers and drones already operating in the United States. The new deadline is set for January 1, 2029, reversing a previous policy that would have blocked these critical security patches as early as 2027. This decision follows widespread criticism that the original ban, part of the FCC's Covered List update in March 2026, would have left millions of devices unpatched and vulnerable to cyberattacks. While the ban prohibits the approval of new foreign-made consumer router models due to national security concerns, regulators recognized that preventing updates on existing hardware would create severe cybersecurity risks. Industry experts argued that vulnerabilities exist across all brands and geographies, and freezing devices in time would exacerbate threats from known exploits like Volt and Salt Typhoon. The extension ensures that Class I and Class II permissive changes, including essential security fixes, remain permissible for authorized equipment. This move is seen as a pragmatic correction to avoid compromising America's network security while maintaining restrictions on new imports.
www.theregister.com - ArticlesFCC Bans New Foreign-Made Routers, Allows Updates Until 2029
The Federal Communications Commission (FCC) has implemented a ban on the approval of new consumer routers manufactured outside the United States. This regulatory change, adopted in March, is part of a broader effort to mitigate national security risks associated with foreign supply chains. While the prohibition on new foreign-made hardware remains strictly in place, the FCC has clarified that existing devices already in the market will continue to receive software updates and support until 2029. This grace period aims to balance security concerns with the practical needs of consumers and businesses relying on current infrastructure. Exemptions to the ban are granted selectively to specific companies, though the core policy restricting new imports stands firm. The decision underscores growing scrutiny of telecommunications equipment origins and reflects ongoing tensions regarding technological sovereignty and cybersecurity. By allowing continued updates for legacy devices, the commission seeks to avoid immediate disruption while phasing out reliance on potentially vulnerable foreign-manufactured networking hardware in the long term.
TechSpotFCC Extends Software Update Deadline for Banned Foreign Drones and Routers to 2029
The US Federal Communications Commission (FCC) has issued a Public Notice extending the deadline for software updates on foreign-made drones and routers already in use within the United States. The new cutoff date is set for January 1, 2029, pushing back the previous deadlines of early 2027. This waiver allows manufacturers to provide essential security patches, bug fixes, and compatibility updates for devices that were authorized before being added to the FCC's Covered List. The decision aims to prevent millions of consumers from being left with vulnerable hardware, addressing concerns raised by the Consumer Technology Association. While existing devices can continue receiving updates, new foreign-made models remain banned unless they secure conditional approval from the Department of Defense or Homeland Security. Currently, only Netgear and Amazon's Eero have achieved this approval for routers. The move reflects ongoing national security concerns regarding Chinese-made technology, citing threats like the Volt Typhoon cyberattack campaign, while balancing consumer safety and device functionality.
Times of IndiaFCC Extends Deadline for Foreign Router Updates to 2029
The Federal Communications Commission (FCC) has revised its March 2026 ruling on foreign-made consumer routers, easing restrictions to allow continued software and firmware updates for devices already deployed in the United States. While the ban on selling new foreign router models remains in place due to national security concerns, the agency extended the deadline for providing maintenance and security patches from March 2027 to at least January 2029. This adjustment permits manufacturers to issue major functional updates without additional FCC review, aiming to prevent a security vacuum caused by unpatched, aging hardware. The decision addresses concerns from cybersecurity experts who warned that abruptly cutting off support would leave millions of consumers and small businesses vulnerable to attacks. By acknowledging the slow pace of equipment replacement and the operational realities of network security, the FCC seeks a pragmatic compromise. This move provides users with more time to transition to approved alternatives while ensuring existing devices remain secure against emerging threats, balancing national security interests with practical cybersecurity needs.
darkreadingFCC Extends Waiver for Foreign Router and Drone Software Updates Until 2029
The Federal Communications Commission (FCC) has announced an extension of the waiver allowing foreign-made routers and drones to receive software and firmware updates until January 1, 2029. This decision relaxes previous restrictions that would have cut off updates for these devices by March 1, 2027. The original ban, implemented in March 2026 under national security grounds, prohibited the import and sale of new consumer-grade routers manufactured outside the United States and limited updates for existing authorized devices. The newly expanded waiver covers both Class I and Class II permissive changes, ensuring continued functionality, vulnerability patching, and operating system compatibility for devices on the FCC's Covered List. While the hardware ban remains in effect for new devices, previously approved equipment can still be sold. The FCC Office of Engineering and Technology indicated it may recommend codifying this waiver into a permanent rule through future rulemaking, which would involve public comment. This move aims to mitigate potential harm to US consumers while the commission considers long-term regulatory frameworks for foreign telecommunications equipment.
Ars Technica - All contentFCC Extends Ban on Security Updates for Foreign Routers and Drones to 2029
The Federal Communications Commission (FCC) has officially extended the deadline for banning software and firmware updates on foreign-made routers and drones from 2027 to January 1, 2029. This decision, announced by the FCC’s Office of Engineering and Technology (OET), reverses a previous timeline that faced significant opposition from the technology industry. The initial ban, driven by White House national security concerns regarding overseas manufacturing, raised alarms about leaving devices vulnerable to unpatched security flaws. Following advocacy from the Consumer Technology Association, the FCC acknowledged that preventing updates would compromise device functionality and public safety. The extension aims to ensure continued compatibility and vulnerability patching for existing hardware. While the current waiver applies until 2029, the OET has recommended initiating a formal rulemaking process. This suggests that the prohibitions could be further modified, extended, or potentially reversed in the future. The move highlights the ongoing tension between national security interests and the practical necessities of maintaining secure, functional consumer electronics in a globalized supply chain.
The Record from Recorded Future NewsFCC Foreign-Made Router Ban Complicated by Exemptions and Extensions
The Federal Communications Commission (FCC) has implemented a ban on new foreign-made consumer-grade Wi-Fi routers in the United States to mitigate cybersecurity risks associated with potential tampering by bad actors. However, the regulation's impact is nuanced due to significant exemptions and extensions. Existing router models remain legal for use and sale, ensuring current home internet setups are unaffected. The FCC has issued waivers allowing previously approved foreign-made devices to continue receiving software updates, extending an initial deadline of March 1, 2027. Additionally, major US-based vendors such as Netgear, Amazon’s Eero, and Adtran have received specific exemptions from the ban. This move aims to encourage domestic manufacturing, yet industry leaders like TP-Link note that virtually all routers are currently produced outside the US. The situation remains complex for consumers and retailers, as the agency balances national security concerns with market realities. This analysis clarifies which devices are restricted, highlighting that the ban targets future models rather than legacy hardware, while outlining the strategic exemptions granted to key industry players to maintain network stability and security updates.
PCMag.com - Technology Product Reviews, News, Prices & TipsFCC Extends Update Support for Banned Routers and Drones Until 2029
The Federal Communications Commission (FCC) has announced an extension of a critical waiver allowing certain foreign-made routers, drones, and related components to continue receiving software and firmware updates in the United States until January 1, 2029. This decision addresses growing cybersecurity concerns that millions of already-deployed devices could become vulnerable to hacks and compatibility failures if manufacturers were abruptly blocked from issuing security patches. The waiver, issued by the FCC’s Office of Engineering and Technology, expands upon previous restrictions that placed specific foreign-produced networking equipment on the agency’s “Covered List” due to national security risks. While the ban on new approvals remains in effect, this extension ensures that existing devices maintain functionality and security through necessary updates. Regulators acknowledged that cutting off support entirely would pose a greater risk than allowing limited updates. This move provides temporary relief for consumers and businesses relying on these devices, while highlighting the ongoing tension between national security policies and practical cybersecurity needs. The FCC intends to use this period to develop a more permanent regulatory framework for foreign-made networking equipment.
Digital TrendsFCC Extends Firmware Update Waiver for Banned Drones and Routers to 2029
The Federal Communications Commission (FCC) has announced a significant extension to the deadline allowing banned foreign-made drones and routers to receive critical software and firmware updates. Originally set to expire on March 1, 2027, the new waiver permits these updates until January 1, 2029. This decision, detailed by the FCC's Office of Engineering and Technology, responds to advocacy from the Consumer Technology Association and concerns from American consumers who purchased these devices before the ban. The U.S. government initially restricted these products due to national security risks, including espionage, unauthorized surveillance, and data exfiltration linked to backdoor exploits. Notable threats like the Volt Typhoon advanced persistent threat highlight the dangers of compromised hardware. Despite the extension, the article notes that approximately 60% of U.S. routers and over 80% of operational drones are Chinese-made, underscoring the scale of the vulnerability. While this reprieve offers temporary relief for existing device owners, manufacturers are expected to re-localize supply chains in the coming years as cybersecurity threats become more defined.
Mashable