<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[CYVIATION Intelligence: Regulatory]]></title><description><![CDATA[Updates and analysis on aviation cybersecurity regulations, compliance requirements, and guidance from authorities including EASA, FAA, TSA, and IATA.]]></description><link>https://cyviation.substack.com/s/regulatory</link><image><url>https://substackcdn.com/image/fetch/$s_!asTj!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F49c79e02-be19-4b2a-beee-c83ad3449ac0_1096x1096.png</url><title>CYVIATION Intelligence: Regulatory</title><link>https://cyviation.substack.com/s/regulatory</link></image><generator>Substack</generator><lastBuildDate>Mon, 24 Aug 2026 12:37:23 GMT</lastBuildDate><atom:link href="https://cyviation.substack.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Cyviation News]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[cyviation@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[cyviation@substack.com]]></itunes:email><itunes:name><![CDATA[Cyviation News]]></itunes:name></itunes:owner><itunes:author><![CDATA[Cyviation News]]></itunes:author><googleplay:owner><![CDATA[cyviation@substack.com]]></googleplay:owner><googleplay:email><![CDATA[cyviation@substack.com]]></googleplay:email><googleplay:author><![CDATA[Cyviation News]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Federal Agencies Confirm Attackers Are Using AI to Write Exploit Code Against Industrial Controllers]]></title><description><![CDATA[A joint CISA, NSA, and FBI advisory warns that attackers are using AI-generated scripts to find and exploit internet-exposed Siemens industrial controllers.]]></description><link>https://cyviation.substack.com/p/federal-agencies-confirm-attackers</link><guid isPermaLink="false">https://cyviation.substack.com/p/federal-agencies-confirm-attackers</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Sun, 23 Aug 2026 08:31:49 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/45c85492-4c7a-41a8-bee8-50d3fea4d37b_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Five United States federal agencies, including the Cybersecurity and Infrastructure Security Agency, the National Security Agency, the FBI, the Department of Energy, and the Environmental Protection Agency, issued a joint cybersecurity advisory this week warning that threat actors are using artificial intelligence to generate exploitation scripts targeting Siemens S7 series programmable logic controllers. The advisory, designated AA26-231A, marks one of the first times a government cybersecurity advisory has explicitly confirmed AI-generated code being used against operational technology in the field, rather than describing the possibility in theoretical terms.</p><p>According to the advisory, the threat actors are conducting reconnaissance and building attack capability against internet-exposed Siemens installations using scripts generated by AI tools that are disguised to look like legitimate monitoring software. The attackers rely on internet scanning services to identify controllers running outdated software or otherwise inadequately protected, then use the AI-generated tooling to develop working exploits against them. The advisory specifically calls out a particular access vector already observed in exploitation attempts: SSH sessions running over cellular modems attached to operational technology equipment, providing remote connectivity that bypasses more conventional network perimeter controls entirely.</p><p>While the advisory centers on water treatment plants, power facilities, chemical plants, and manufacturing sites, the underlying pattern is not specific to any one industry. Programmable logic controllers of the type described in the advisory are foundational to a huge range of industrial and critical infrastructure environments, including the operational technology that keeps airports running. Baggage handling systems, HVAC and environmental controls, fuel farm management, elevators and people-movers, and various building automation systems across large airports commonly rely on PLCs from major industrial vendors, sometimes including exactly the kind of Siemens equipment named in this advisory.</p><p>That overlap matters because aviation&#8217;s cybersecurity conversation has, for good reason, spent considerable energy on aircraft systems, passenger data, and airline IT infrastructure. Airport ground-side operational technology has historically received comparatively less attention, despite being just as capable of causing serious disruption if compromised. A PLC controlling baggage handling or environmental systems at a major hub does not need to touch an aircraft&#8217;s avionics to create a significant operational and safety headache if it is taken offline or manipulated.</p><p>The advisory&#8217;s top mitigations are straightforward in principle: inventory all Siemens S7 series controllers across an organization&#8217;s environment, apply available security patches, and ensure PLCs are not directly accessible from the public internet. Where remote access is genuinely necessary for monitoring purposes, the agencies specify that connectivity should route through properly configured VPNs with multi-factor authentication, not direct port forwarding and not unmanaged cellular modem connections. Simple as this sounds, it requires organizations to actually know what OT equipment they have deployed and how it is connected, which is a nontrivial undertaking in large, decades-old airport infrastructure built up in layers over many years.</p><p>The AI dimension of this advisory deserves separate attention from the OT dimension. Government agencies have been publicly warning for some time that AI tools are lowering the barrier to entry for less sophisticated attackers to conduct reconnaissance and build working exploits. This advisory is a concrete, field-observed example of that warning materializing rather than a projection about future risk. For organizations across aviation and other critical infrastructure sectors, the message is that the gap between disclosure of a vulnerability and its exploitation in the wild is compressing, and that OT inventory and exposure management can no longer be treated as a lower priority than IT-side cybersecurity work.</p><p><strong>Source:</strong> CISA / TechTimes - Feds Confirm AI Is Writing Exploits for Siemens PLCs Used in Water and Energy<br><a href="https://www.techtimes.com/articles/325080/20260820/feds-confirm-ai-writing-exploits-siemens-plcs-used-water-energy.htm">https://www.techtimes.com/articles/325080/20260820/feds-confirm-ai-writing-exploits-siemens-plcs-used-water-energy.htm</a></p>]]></content:encoded></item><item><title><![CDATA[UAE's National Cyber Defenses Intercept a Coordinated Push Against Aviation and Energy Systems]]></title><description><![CDATA[The UAE Cybersecurity Council says it stopped a multi-vector attack on aviation, energy, and education organizations before attackers reached their objectives.]]></description><link>https://cyviation.substack.com/p/uaes-national-cyber-defenses-intercept</link><guid isPermaLink="false">https://cyviation.substack.com/p/uaes-national-cyber-defenses-intercept</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Fri, 14 Aug 2026 16:06:53 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/539e50d6-a0a6-41ec-805e-70d5ca52cb9e_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The UAE&#8217;s Cybersecurity Council announced this week that national digital defenses had detected and stopped a coordinated cyberattack campaign aimed at organizations across the country&#8217;s aviation, energy, and education sectors. Officials said the intrusion attempts were contained before the attackers could reach protected systems or disrupt operations.</p><p>According to the council, the campaign combined several attack techniques at once. These reportedly included attempts to breach digital networks directly, efforts to compromise user accounts and operational data, and targeted phishing campaigns designed to use employees as an entry point into otherwise well-defended environments. That mix is a familiar pattern in modern critical-infrastructure attacks: rather than relying on a single vulnerability, adversaries probe several avenues simultaneously and look for whichever one gives up first.</p><p>This marks the third major critical-infrastructure campaign against the UAE disclosed publicly in 2026. In July, the council said it had also detected and blocked a sophisticated intrusion effort against financial-sector organizations. Threat intelligence analysts covering the region have noted that Middle Eastern academic institutions alone accounted for a meaningful share of global targeting of the education sector over the past year, and that groups with suspected ties to Iran have been actively working to gain footholds inside universities and other research-linked organizations in the region.</p><p>For aviation specifically, the inclusion of the sector alongside energy and education is a signal worth paying attention to. Airports, airlines, and their supporting infrastructure sit inside the same category of high-value, high-disruption targets that motivate this kind of coordinated activity. An attacker does not need to compromise a cockpit system to cause real damage; disrupting ticketing platforms, staff account access, scheduling tools, or operational data can be enough to create cascading delays and reputational harm, all without ever touching flight-critical avionics.</p><p>Security analysts following the disclosure pointed to a broader shift in how organizations need to think about this kind of threat. Rather than focusing purely on detecting an attack once it is underway, several noted that organizations are increasingly expected to understand who their likely adversaries are and how those adversaries typically operate, so that defenses can be built around specific tactics rather than generic hygiene. Artificial intelligence was also flagged as a factor reshaping the threat landscape, with researchers noting that AI tools are lowering the barrier for attackers to conduct reconnaissance, craft convincing phishing content, and automate parts of an intrusion that previously required more manual effort.</p><p>What stands out about the UAE&#8217;s response is the emphasis on proactive containment rather than after-the-fact recovery. The council described specialized teams identifying malicious activity, tracing its origin and indicators of compromise, and applying technical countermeasures to neutralize the threat while blocking further infiltration attempts. That kind of layered, intelligence-driven response reflects a maturing national cybersecurity posture, one that treats aviation and other critical sectors as part of an integrated defense picture rather than isolated silos each responsible for their own protection.</p><p>For aviation stakeholders elsewhere, the incident is a useful data point regardless of geography. Coordinated, multi-vector campaigns against national critical infrastructure are not isolated to any one region, and aviation organizations are consistently named as priority targets alongside energy and finance. Aviation now sits squarely inside national critical-infrastructure threat models alongside those sectors, and resilience increasingly depends on rapid detection and containment rather than the assumption that an attack can be prevented entirely.</p><p><strong>Source:</strong> AGBI (Arabian Gulf Business Insight) - UAE thwarts cyberattacks on aviation, energy and education<br><a href="https://www.agbi.com/cybersecurity/2026/08/uae-thwarts-cyberattacks-on-aviation-energy-and-education/">https://www.agbi.com/cybersecurity/2026/08/uae-thwarts-cyberattacks-on-aviation-energy-and-education/</a></p>]]></content:encoded></item><item><title><![CDATA[EU Extends Mandatory Incident Reporting to Drones, U-space, and Information Security Occurrences]]></title><description><![CDATA[A newly published EU implementing regulation broadens the list of civil aviation occurrences that must be formally reported to include uncrewed aircraft operations, U-space airspace events, and Part-I]]></description><link>https://cyviation.substack.com/p/eu-extends-mandatory-incident-reporting</link><guid isPermaLink="false">https://cyviation.substack.com/p/eu-extends-mandatory-incident-reporting</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Fri, 07 Aug 2026 08:52:53 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/a660a421-2326-4a4c-9ff3-dc7f23b9d6af_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The European Commission has published an update to its civil aviation occurrence reporting framework, extending mandatory reporting requirements to cover uncrewed aircraft systems, U-space operations, and information security events for the first time. The new measure, Commission Implementing Regulation (EU) 2026/1821, amends the existing Implementing Regulation (EU) 2015/1018, which lays out the categories of civil aviation occurrences that organizations and individuals are legally required to report.</p><p>Until now, the EU&#8217;s mandatory occurrence reporting list was built primarily around traditional crewed aviation events. The update adds specific categories tied to drone operations and the broader U-space framework, the EU&#8217;s system for managing low-altitude uncrewed traffic. Under the new rules, operators must report incidents such as a UAS operation that exceeds the operational volume authorized under its permit or the privileges of a Light UAS operator certificate, as well as cases of inadequate operational planning, including failures in contingency procedures, operational volume management, or tactical mitigation performance requirements, that endangered another aircraft or person. The regulation also formally brings Part-IS occurrences, meaning information security incidents falling under EASA&#8217;s existing information security management framework, into the mandatory reporting structure, while removing certain aviation security occurrences from the list entirely.</p><p>The update reflects the EU&#8217;s ongoing effort to keep its occurrence reporting architecture aligned with how the aviation ecosystem has actually changed. When the original 2015 regulation was written, uncrewed aircraft operations at meaningful scale and the U-space concept were not yet significant features of European airspace. Both have since expanded considerably, and the regulatory reporting structure had not kept pace with categories specific to that growth. By explicitly naming UAS and U-space occurrence types, the Commission is signaling that incidents involving drones are expected to be captured with the same rigor as incidents involving crewed aircraft, rather than treated as a separate, lower-priority reporting stream.</p><p>The inclusion of Part-IS occurrences in this same update is notable because it formally links information security incidents to the same mandatory reporting infrastructure used for safety occurrences more broadly. Part-IS, the EU&#8217;s information security management framework for aviation organizations, has been phasing in compliance deadlines across different categories of operators since 2025. Folding Part-IS occurrences into the general occurrence reporting regulation means organizations already building information security management systems under Part-IS now have a clearer regulatory expectation that qualifying cyber and information security events flow into the same reporting channel used for safety data, rather than sitting in a separate or informal process.</p><p>For aviation organizations operating in or into the EU, the practical implication is that occurrence reporting programs, and the systems and training that support them, need to be reviewed to ensure they capture the newly specified UAS, U-space, and Part-IS categories. Organizations that already have mature safety reporting cultures will likely find this a matter of expanding existing intake criteria rather than building new infrastructure from scratch, but those still maturing their Part-IS compliance may find this an added prompt to formalize how information security events get identified, classified, and escalated internally.</p><p><strong>Takeaway:</strong> By folding drone operations, U-space occurrences, and information security incidents into the same mandatory reporting framework used for traditional safety events, EU regulators are treating these as core aviation safety concerns rather than niche or emerging issues, a signal that aviation organizations should expect this kind of integration to continue as digital and uncrewed systems become a larger share of the airspace.</p><p><strong>Source:</strong> Unmanned Airspace - European Union updates incident mandatory reporting mechanism, extending drones and U-space coverage</p><p><a href="https://www.unmannedairspace.info/news-first/european-union-updates-incident-mandatory-reporting-mechanism-extending-drones-and-u-space-coverage/">https://www.unmannedairspace.info/news-first/european-union-updates-incident-mandatory-reporting-mechanism-extending-drones-and-u-space-coverage/</a></p>]]></content:encoded></item><item><title><![CDATA[Federal Cybersecurity Gaps Leave Aviation Infrastructure More Exposed]]></title><description><![CDATA[A new GAO report found that both the FAA and TSA have significant shortcomings in implementing and overseeing aviation cybersecurity programs, highlighting the need for stronger governance across the]]></description><link>https://cyviation.substack.com/p/federal-cybersecurity-gaps-leave</link><guid isPermaLink="false">https://cyviation.substack.com/p/federal-cybersecurity-gaps-leave</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Tue, 21 Jul 2026 10:01:54 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/af740c9e-b447-4bc6-822c-bc50cfcc563b_1846x1080.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>A recent Government Accountability Office (GAO) report found that the Federal Aviation Administration has not fully implemented key elements of its cybersecurity strategy for protecting critical aviation systems. According to the report, only three of the FAA&#8217;s seven cybersecurity objectives had been fully implemented, leaving important initiatives involving cyber monitoring, incident response, privileged access management, compliance with federal cybersecurity standards, and zero trust architecture still incomplete.</p><p>The report also concluded that the Transportation Security Administration has not maintained an up-to-date cybersecurity strategy for aviation. GAO found that TSA continues to rely on a roadmap developed in 2018 that is no longer aligned with the Department of Homeland Security&#8217;s current cybersecurity strategy. The agency had also not clearly assigned responsibility for implementing cybersecurity objectives or fully defined its oversight role for airport and airline cybersecurity programs.</p><p>Cybersecurity Dive notes that these findings come as cyber threats continue to grow across the aviation sector, with increasing reliance on interconnected digital systems throughout airports, airlines, and air traffic management. The report emphasizes that strengthening governance and modernizing cybersecurity programs are becoming increasingly important as operational technology and information technology environments continue to converge.</p><p>GAO issued several recommendations, including updating TSA&#8217;s cybersecurity roadmap, clearly assigning implementation responsibilities, improving FAA cybersecurity reporting, advancing zero trust planning, and strengthening oversight of cybersecurity strategy execution. The report underscores that effective governance and sustained implementation are essential to improving cyber resilience across the aviation ecosystem.</p><div><hr></div><p><strong>Source: </strong><em>Cybersecurity Dive.</em> <strong>Aviation cybersecurity oversight gaps leave FAA, TSA exposed, GAO says</strong></p><p><a href="https://www.cybersecuritydive.com/news/aviation-cybersecurity-faa-tsa-gao-report/825416/">https://www.cybersecuritydive.com/news/aviation-cybersecurity-faa-tsa-gao-report/825416/</a></p>]]></content:encoded></item><item><title><![CDATA[Aviation Cyber Oversight Is Struggling to Keep Pace ]]></title><description><![CDATA[A federal audit found incomplete FAA cybersecurity implementation and unclear TSA responsibilities, exposing gaps in how cyber risk is governed across U.S. aviation.]]></description><link>https://cyviation.substack.com/p/aviation-cyber-oversight-is-struggling</link><guid isPermaLink="false">https://cyviation.substack.com/p/aviation-cyber-oversight-is-struggling</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Tue, 21 Jul 2026 09:55:29 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/2f8cd2c2-5698-45cc-875c-2aaf6aeef043_1730x1060.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>A new Government Accountability Office audit found that the Federal Aviation Administration has not fully implemented its strategy for protecting air traffic systems and other critical aviation networks. Of the seven objectives supporting the FAA&#8217;s goal of protecting agency networks, only three had been fully implemented. Outstanding areas included cyber monitoring and response, privileged-user controls, compliance with current federal standards, and the transition to zero-trust security.</p><p>The audit also identified significant weaknesses in the Transportation Security Administration&#8217;s cybersecurity planning. TSA continues to rely on a Cybersecurity Roadmap dating from 2018, which the GAO found was not aligned with the Department of Homeland Security&#8217;s current strategy. The agency had also not clearly assigned responsibility for implementing its cybersecurity goals or fully defined its role in overseeing airport and airline cybersecurity programs.</p><p>These oversight gaps matter as aircraft and aviation infrastructure become increasingly connected to air traffic control facilities, weather services, navigation systems, satellites, and other external networks. The article notes that reported aviation-sector vulnerabilities have included poor software patching, internet-accessible operational technology, unsupported operating systems, insecure remote services, weak network segmentation, and default credentials.</p><p>The GAO issued five recommendations, including updating TSA&#8217;s Cybersecurity Roadmap, assigning clear responsibilities, aligning the plan with DHS strategy, improving FAA cybersecurity spending reporting, strengthening its zero-trust transition plan, and establishing better monitoring of its revised cybersecurity strategy. The findings reinforce the need for clearly defined accountability, measurable implementation, and coordinated oversight across the aviation ecosystem.</p><p>Source: <em>Biometric Update</em>. Federal Audit Finds Major Gaps in US Aviation Cybersecurity Oversight</p><p><a href="https://www.biometricupdate.com/202607/federal-audit-finds-major-gaps-in-us-aviation-cybersecurity-oversight?utm_source=chatgpt.com">https://www.biometricupdate.com/202607/federal-audit-finds-major-gaps-in-us-aviation-cybersecurity-oversight</a></p>]]></content:encoded></item><item><title><![CDATA[Airport Security Procedures Depend on Consistent Enforcement]]></title><description><![CDATA[A recent airport security dispute highlights why consistent enforcement of operational procedures remains essential to protecting aviation safety and security.]]></description><link>https://cyviation.substack.com/p/airport-security-procedures-depend</link><guid isPermaLink="false">https://cyviation.substack.com/p/airport-security-procedures-depend</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Wed, 15 Jul 2026 17:21:55 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/1a0d7df0-4ae0-4d92-bb36-4ec8e5db44c1_1402x1122.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Airport security depends on consistent application of operational procedures regardless of who is involved. A recent incident at <strong>Nnamdi Azikiwe International Airport</strong> in Abuja has drawn attention to the importance of enforcing security rules designed to protect restricted airport areas. According to Nigeria&#8217;s Minister of Aviation and Aerospace Development, CCTV footage showed that a vehicle was left unattended in a designated drop-off zone, leading airport personnel to apply standard enforcement procedures. The minister stated that the incident resulted in a seven-day ultimatum requesting a public apology and payment of the prescribed parking fine.</p><p>While the public discussion has largely focused on the political aspects of the event, the incident also serves as a reminder that airport security measures exist to reduce operational risk. Unattended vehicles in restricted areas can create unnecessary security concerns, disrupt airport operations, and require immediate action from airport personnel responsible for maintaining a safe operating environment. International airports rely on standardized procedures to ensure that security decisions remain consistent and are applied without exception.</p><p>As airports continue to modernize, physical security and cybersecurity are becoming increasingly interconnected. Surveillance systems, access control platforms, digital monitoring, and operational technologies all contribute to maintaining situational awareness across airport infrastructure. Effective security depends not only on technology, but also on the consistent enforcement of established procedures and the ability to rapidly identify and respond to potential risks.</p><p>For the aviation industry, the broader takeaway extends beyond this individual incident. Maintaining operational resilience requires a layered security approach where physical security, cyber resilience, and standardized operational procedures work together. Consistent enforcement helps strengthen trust in airport operations while supporting the safe and secure movement of passengers, personnel, and aircraft.</p><div><hr></div><p><strong>Source: </strong>Streamline Feed. <em>Aviation Minister Keyamo Issues 7-Day Ultimatum to Peter Obi Over Airport Security Breach</em></p><p><a href="https://streamlinefeed.co.ke/news/aviation-minister-keyamo-issues-7-day-ultimatum-to-peter-obi-over-airport-security-breach">https://streamlinefeed.co.ke/news/aviation-minister-keyamo-issues-7-day-ultimatum-to-peter-obi-over-airport-security-breach</a></p>]]></content:encoded></item><item><title><![CDATA[EASA Strengthens Guidance on GNSS Jamming and Spoofing]]></title><description><![CDATA[Updated guidance reflects the growing frequency and sophistication of GNSS interference, reinforcing the need for stronger operational preparedness across aviation.]]></description><link>https://cyviation.substack.com/p/easa-strengthens-guidance-on-gnss</link><guid isPermaLink="false">https://cyviation.substack.com/p/easa-strengthens-guidance-on-gnss</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Thu, 09 Jul 2026 09:15:14 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/2ac6ba30-cbda-4e05-94d7-cc0e38d213fc_2094x1166.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The European Union Aviation Safety Agency (EASA) has updated its guidance on Global Navigation Satellite System (GNSS) interference in response to the increasing number of jamming and spoofing events affecting aviation worldwide. The revised Safety Information Bulletin introduces new recommendations designed to help operators, pilots, air navigation service providers, and manufacturers better prepare for navigation disruptions caused by intentional interference.</p><p>The latest update expands previous guidance by adding standardized pilot and air traffic control phraseology, incorporating Electronic Flight Bag (EFB) considerations, strengthening operational and training recommendations, and encouraging air traffic services to ensure sufficient capacity during interference events. The revisions build on findings from the joint EASA-EUROCONTROL task force established to address the growing impact of GNSS disruption across Europe.</p><p>EASA notes that jamming and spoofing incidents have increased significantly since 2022, particularly around conflict zones and other sensitive regions, including parts of the Mediterranean, Black Sea, Baltic Sea, Middle East, and Arctic. These events can degrade aircraft navigation and surveillance systems, creating operational challenges that require crews to rely on alternative navigation methods and enhanced situational awareness.</p><p>For the aviation industry, the updated guidance reflects a broader shift toward building resilience against electronic interference. As GNSS disruptions become more frequent and sophisticated, organizations will need to combine operational procedures, crew training, threat intelligence, and technology to maintain safe operations in increasingly contested environments. Strengthening preparedness today will be essential for supporting both operational continuity and regulatory readiness in the years ahead.</p><div><hr></div><p><strong>Source: </strong>Runway Girl Network. <em>EASA Updates Aircraft GNSS Jamming and Spoofing Guidance</em><br><a href="https://runwaygirlnetwork.com/2026/07/easa-updates-aircraft-gnss-jamming-and-spoofing-guidance/">https://runwaygirlnetwork.com/2026/07/easa-updates-aircraft-gnss-jamming-and-spoofing-guidance/</a></p>]]></content:encoded></item><item><title><![CDATA[Building Aviation Regulations for the Next Generation of Technology ]]></title><description><![CDATA[As aviation evolves, regulators are emphasizing that future rules must strengthen safety while enabling innovation in areas such as cybersecurity, artificial intelligence, and unmanned aircraft.]]></description><link>https://cyviation.substack.com/p/building-aviation-regulations-for</link><guid isPermaLink="false">https://cyviation.substack.com/p/building-aviation-regulations-for</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Thu, 09 Jul 2026 09:09:56 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/e2a2cd26-701e-46f7-85d7-69007fbb7df9_2042x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>The future of aviation depends on regulations that can keep pace with rapidly advancing technology. During a recent meeting between Bulgaria&#8217;s Minister of Transport and Communications, Georgi Peev, and leaders from the European Union Aviation Safety Agency (EASA), both sides emphasized that maintaining aviation safety requires modern regulatory frameworks that support innovation while preserving high operational standards.</p><p>As digital technologies become more deeply integrated into aviation, policymakers identified cybersecurity, artificial intelligence, drones, and smaller airports as areas requiring updated regulations. The discussion highlighted that future rules should provide clarity and predictability for the industry without creating unnecessary operational burdens, allowing organizations to adopt new technologies while maintaining safety and compliance.</p><p>The meeting also reinforced the importance of developing aviation expertise alongside regulatory modernization. Expanding technical knowledge within aviation authorities, strengthening collaboration with universities, and attracting the next generation of aviation professionals were identified as essential for implementing new European requirements and supporting the long-term resilience of the sector.</p><p>For the aviation industry, the conversation reflects a broader shift taking place across Europe. Cybersecurity is increasingly being considered alongside safety, artificial intelligence, and emerging technologies as part of the regulatory landscape. As regulations continue to evolve, organizations that proactively strengthen cyber resilience and prepare for future compliance requirements will be better positioned to adapt to the next generation of aviation operations.</p><div><hr></div><p><strong>Source: </strong>Fakti News. <em>Georgi Peev: Flight Safety Is a Top Priority, and Rules Must Support the Development of Aviation</em></p><p><a href="https://fakti.bg/en/bulgaria/1065962-georgi-peev-flight-safety-is-a-top-priority-and-rules-must-support-the-development-of-aviation">https://fakti.bg/en/bulgaria/1065962-georgi-peev-flight-safety-is-a-top-priority-and-rules-must-support-the-development-of-aviation</a></p>]]></content:encoded></item><item><title><![CDATA[FAA Audit Reveals Cybersecurity Gaps in Critical Air Traffic Control Systems ]]></title><description><![CDATA[A new federal audit highlights cybersecurity deficiencies within systems supporting the U.S. National Airspace System, reinforcing the growing importance of aviation cyber resilience.]]></description><link>https://cyviation.substack.com/p/faa-audit-reveals-cybersecurity-gaps-93d</link><guid isPermaLink="false">https://cyviation.substack.com/p/faa-audit-reveals-cybersecurity-gaps-93d</guid><dc:creator><![CDATA[Cyviation News]]></dc:creator><pubDate>Sun, 21 Jun 2026 16:46:31 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/1b845149-11ea-453a-be51-4702f9a33e33_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><strong>Source:</strong><span> </span><em>FAA Audit: Cybersecurity Gaps in Key Air Traffic Systems</em><br><a href="https://avweb.com/aviation-news/faa-audit-cybersecurity-gaps-in-atc-system/">https://avweb.com/aviation-news/faa-audit-cybersecurity-gaps-in-atc-system/</a></p><p>A recent audit conducted by the U.S. Department of Transportation&#8217;s Office of Inspector General identified significant cybersecurity gaps within systems supporting the Federal Aviation Administration&#8217;s National Airspace System (NAS).</p><p>According to the audit, the FAA has not fully implemented required cybersecurity protections across 45 high-impact systems whose compromise could have severe operational consequences. The findings raise important questions about cybersecurity governance, risk management, and resilience within critical aviation infrastructure.</p><h2>Key Audit Findings</h2><p>The audit found that the FAA has made progress in implementing cybersecurity controls but important gaps remain.</p><p>Among the findings:</p><ul><li><p>45 high-impact systems were reviewed</p></li><li><p>1,836 required security controls had not been fully implemented</p></li><li><p>15 systems were still operating under outdated NIST security standards</p></li><li><p>Vulnerability tracking and documentation processes were incomplete</p></li></ul><p>These systems support critical functions across the National Airspace System, including communications, surveillance, navigation, weather services, and air traffic management.</p><h2>Why This Matters</h2><p>Air traffic control systems form the backbone of modern aviation operations.</p><p>While the audit did not identify a specific cyber incident, it highlighted weaknesses that could increase exposure to future cyber threats if left unresolved. Cybersecurity deficiencies within critical infrastructure can affect operational continuity, situational awareness, and the ability to respond effectively to emerging threats.</p><p>As aviation systems become increasingly digital and interconnected, cybersecurity governance is becoming as important as traditional operational safety controls.</p><h2>The Regulatory Perspective</h2><p>The FAA audit reflects a broader trend across the aviation sector. Regulators worldwide are placing greater emphasis on cybersecurity risk management, asset visibility, vulnerability management, and organizational accountability.</p><p>Frameworks such as EASA Part-IS require organizations to identify cyber risks, implement appropriate controls, and demonstrate continuous oversight of security-related processes.</p><p>The findings from the FAA audit serve as a reminder that cybersecurity compliance is not a one-time exercise. It requires ongoing monitoring, documentation, remediation, and executive-level attention.</p><h2>CYVIATION Perspective</h2><p>The audit demonstrates that even highly regulated aviation environments continue to face cybersecurity implementation challenges.</p><p>Cybersecurity is no longer solely an information technology function. It is an operational requirement that directly supports safety, resilience, and regulatory compliance.</p><p>Organizations should continuously evaluate whether security controls are fully implemented, vulnerabilities are properly tracked, and critical systems maintain visibility across the operational environment.</p><p>As regulators continue to strengthen cybersecurity expectations, proactive governance and continuous risk management will become increasingly important across the aviation ecosystem.</p><p></p>]]></content:encoded></item></channel></rss>