FCC bans import of new consumer routers made overseas, citing security risks
The Federal Communications Commission has ordered a ban on the import of new consumer routers that are manufactured overseas, citing cybersecurity risks.
The order, published late Monday, said the import ban will “include all consumer-grade routers produced in foreign countries.” The FCC said the order does not affect imports or usage of existing routers, but new devices may be granted an exception if the Departments of Defense or Homeland Security approve.
The FCC claimed foreign-made routers “pose unacceptable risks” to U.S. national security, referring to a threat from China-backed hacking groups Volt, Salt and Flax Typhoon.
According to Reuters, China is said to command around 60% of the market for consumer routers, which connect homes and businesses to the internet.
The FCC said it was taking action because malicious hackers have exploited flaws in foreign-made routers to attack U.S. households, disrupt networks, and enable cybercrime and surveillance.
Government-backed hackers and cybercriminals alike have long targeted routers because they allow access to home or business networks. Hackers can also hijack routers to pummel other companies or businesses with disruptive events designed to overload servers with junk network traffic, known as distributed denial-of-service attacks.
The FCC did not provide evidence to show that U.S.-made consumer routers are more secure than routers developed overseas. An FCC spokesperson did not immediately respond to a request for comment.
Techcrunch event
Disrupt 2026: The tech ecosystem, all in one room
Your next round. Your next hire. Your next breakout opportunity. Find it at TechCrunch Disrupt 2026, where 10,000+ founders, investors, and tech leaders gather for three days of 250+ tactical sessions, powerful introductions, and market-defining innovation. Register now to save up to $400.
Save up to $300 or 30% to TechCrunch Founder Summit
1,000+ founders and investors come together at TechCrunch Founder Summit 2026 for a full day focused on growth, execution, and real-world scaling. Learn from founders and investors who have shaped the industry. Connect with peers navigating similar growth stages. Walk away with tactics you can apply immediately
Offer ends March 13.
San Francisco, CA
|
October 13-15, 2026
REGISTER NOW
Salt Typhoon, a China-backed espionage group that has hacked into dozens of phone and internet companies across the world, including in the United States, has been known to exploit vulnerabilities in routers made by American networking giant Cisco. Flax Typhoon, another hacking group backed by China that U.S. authorities have accused of running a massive botnet of hijacked devices, targeted both U.S.-made and foreign-made routers to hack at least 126,000 devices in the United States, as well as thousands more around the world.
FCC chairman Brendan Carr said in prepared remarks that the agency will “continue do [sic] our part in making sure that U.S. cyberspace, critical infrastructure, and supply chains are safe and secure.”
Despite the raft of Chinese hacks targeting U.S. businesses and government agencies, Carr was among the two FCC commissioners who voted in November to scrap cybersecurity rules that required telecom operators to secure their lawful intercept systems from unauthorized intrusions.
Topics
cyberattacks, cybersecurity, Federal Communications Commission, Government & Policy, Routers, Security
Zack Whittaker
Security Editor
Zack Whittaker is the security editor at TechCrunch. He also authors the weekly cybersecurity newsletter, this week in security.
He can be reached via encrypted message at zackwhittaker.1337 on Signal. You can also contact him by email, or to verify outreach, at zack.whittaker@techcrunch.com.
View Bio
June 9
Boston, MA
Actively scaling? Fundraising? Planning your next launch?
TechCrunch Founder Summit 2026 delivers tactical playbooks and direct access to 1,000+ founders and investors who are building, backing, and closing.
REGISTER NOW
Most Popular
-
Cursor admits its new coding model was built on top of Moonshot AI’s Kimi
- Anthony Ha
-
Delve accused of misleading customers with ‘fake compliance’
- Anthony Ha
-
Cyberattack on vehicle breathalyzer company leaves drivers stranded across the US
- Zack Whittaker
-
Jeff Bezos reportedly wants $100 billion to buy and transform old manufacturing firms with AI
- Lucas Ropek
-
Employees had to restrain a dancing humanoid robot after it went wild at a California restaurant
- Amanda Silberling
-
Nothing CEO Carl Pei says smartphone apps will disappear as AI agents take their place
- Sarah Perez
-
Nvidia is quietly building a multibillion-dollar behemoth to rival its chips business
- Rebecca Szkutak