Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Saturday, 6 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

US targets foreign-made routers as security concerns rise, but experts warn risks go further

by Guru Writer
March 25, 2026
in News
FCC ban on foreign routers
Share on FacebookShare on Twitter

The US Federal Communications Commission (FCC) has expanded its “Covered List” to include certain foreign-made consumer routers, a move that will block new models from receiving equipment authorisation and prevent them from being imported or sold in the United States. The decision reflects growing concern around supply chain security and the potential for foreign state interference in critical network infrastructure. Routers occupy a uniquely sensitive position in both home and enterprise environments, acting as gateways for vast volumes of data.

However, cybersecurity experts said the focus on where devices are manufactured risks missing more fundamental and immediate security challenges.

Supply chain concerns only tell part of the story

Shane Barney, CISO at Keeper Security, said the regulatory move signals a broader shift but warns against narrowing the issue to geography alone. “Moves by regulators to restrict new authorisations for foreign-made routers reflect growing concern around supply chain integrity, but focusing solely on country of origin risks oversimplifying a much broader security challenge.”

He pointed out that routers and network devices are often treated differently from other IT assets, despite their critical role. “In enterprise environments, routers and network devices are seen not just as connectivity tools, but as high-value control points that sit outside traditional security oversight.”

This lack of oversight often leads to inconsistent patching, weak governance and limited integration with identity and access management systems. As a result, routers can provide attackers with persistent and low-visibility access into networks.

Millions of vulnerable devices still in use

While the FCC’s action targets future imports, it does not address the vast number of routers already deployed. Rik Ferguson, VP of Security Intelligence at Forescout, highlighted the scale of that issue and said: “Adding foreign-made consumer-grade routers to the FCC Covered List blocks new models from getting FCC equipment authorisation, but it doesn’t magically secure the millions of routers already deployed.”

These devices often remain in service long after support ends, creating a significant and enduring attack surface, he noted.

“The installed base matters because it’s where so many attackers already live, in exposed management interfaces, abusing weak or reused admin credentials, and slow patching cycles, or end-of-life equipment that still works,” Ferguson explained. He added that many users are reluctant to interact with their routers at all, which further compounds the problem.

Routers now among the most dangerous devices

Recent findings highlighted by Forescout’s Vedere Labs show a clear shift in the threat landscape. Routers and other network infrastructure devices have now overtaken endpoints as the riskiest category of IT assets in many environments. Daniel dos Santos, VP of Research at Forescout, said the data reflects a growing trend. “Routers are now the riskiest devices we see nowadays, both in enterprise and consumer environments,” he said. “These devices have overtaken endpoints as the riskiest category of IT devices,” dos Santos explains. “They are also one of the fastest-growing categories for exploitation.”

Routers are not only targeted for vulnerability exploitation. Weak or reused credentials remain a common entry point, particularly for management interfaces exposed to the internet. Compromised devices are frequently used to build botnets, enabling distributed denial-of-service attacks or acting as proxy infrastructure. What was once primarily the domain of cybercriminals is now increasingly associated with state-backed activity.

Geopolitical risks remain relevant

Although experts cautioned against overemphasising country of origin, they acknowledge that foreign-manufactured routers can introduce legitimate concerns.

Dos Santos noted that there is potential for state influence, including covert communication channels embedded in hardware or firmware. In some cases, national laws may require companies to disclose vulnerabilities to government authorities before public disclosure, creating potential advantages in zero-day exploitation scenarios. Recent vulnerabilities identified in widely used consumer routers demonstrate that risks exist across manufacturers and geographies, reinforcing the need for consistent security standards, he said.

Securing routers requires a Zero Trust approach

Barney argued that organisations must rethink how they treat network infrastructure. “Organisations must treat network infrastructure as a core component of a zero-trust architecture. Every access request, whether human or machine, must be continuously verified, tightly controlled and fully auditable,” he said.

Without strong identity governance and privileged access management, a compromised router can quickly enable lateral movement across systems. He added that organisations prioritising least privilege, credential security and centralised visibility will be better positioned to manage both supply chain risks and active threats.

Practical steps matter more than origin

Experts agreed that immediate action is essential, particularly as hybrid working environments extend corporate risk into home networks. Recommended steps included replacing unsupported devices, applying firmware updates, disabling remote management interfaces, enforcing strong and unique credentials, and segmenting IoT devices from business systems. Importantly, these measures reduce risk regardless of where a device is manufactured.

ShareTweet
Previous Post

Could AI Replace the CEO? Zuckerberg’s ‘CEO Agent’ Sparks Debate

Next Post

MIWIC26: Kerlyn Manyi, Cybersecurity Practitioner, Nucleus Systems & Founder of CyberFoundHer Initiative

Recent News

Frontline Workers Twice as Likely to Use Unapproved AI

Frontline Workers Twice as Likely to Use Unapproved AI

June 4, 2026
Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
data-cloud-security

Building a Digital Fortress: Why Cyber Security Matters More Than Ever

June 5, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol