:

BANNED US DRONES, ROUTERS GET UPDATES UNTIL 2029

INDUSTRY DESK■ 1 MIN READ
SAT, MAY 9, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

The FCC has granted a software and firmware update grace period for banned drones and routers in the United States through January 2029. The decision allows users to maintain security patches and critical updates despite hardware restrictions.

The Federal Communications Commission issued the notice to permit ongoing software and firmware updates for devices currently banned from US markets. The extension runs through January 2029, ensuring users can access essential security fixes and patches. This grace period affects banned equipment, primarily from manufacturers restricted due to national security concerns. The extension balances regulatory enforcement with practical security needs, acknowledging that devices already in circulation require continued protection against emerging threats. Users of affected hardware can download and install updates during the window. The FCC's decision reflects recognition that abruptly cutting update access would create security vulnerabilities in deployed systems. After January 2029, the status of update access remains subject to FCC determination. Manufacturers and users are advised to plan transitions away from banned equipment before the deadline.

■ SOURCES

► Engadget

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Cryptocurrency exchange Bitget disclosed a breach of its hot and warm wallets, with hackers stealing $351.6 million. The attack is attributed to suspected North Korean threat actors.

JUST NOW— Security Desk

A Kosovar national has pleaded guilty to operating Rydox, an illegal online marketplace that trafficked in stolen personal information, login credentials, and cybercrime tools. The admin faces up to 22 years in prison.

2H AGO— Industry Desk

Scammers are spoofing popular invitation platforms like Evite and Paperless Post to steal personal data. The deceptive emails are convincing enough that some recipients use them as opportunities to reconnect with old contacts.

2H AGO— Security Desk

A cross-site scripting (XSS) vulnerability in the ansi2html library exposed Sourcehut users to account takeover attacks through malicious build log output. The flaw allowed attackers to inject arbitrary code into rendered logs.

6H AGO— Industry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.