The U.S. Government Accountability Office (GAO) reported that the Federal Aviation Administration (FAA) has not sufficiently addressed cybersecurity threats to aircraft communications.

The report examines, among other objectives, extent to which FAA has identified and mitigated spectrum-related cybersecurity threats; extent to which FAA collaborated with federal partners to defend against cybersecurity threats; and what specific cybersecurity vulnerabilities exist in key communication applications.

GAO reported that FAA identified emerging spectrum-related cybersecurity threats to the NAS and international flight routes.

As a result, FAA may not have sufficient information to identify, assess, and address cybersecurity risks affecting critical aviation communications systems.

In conclusion, GAO reported that the NAS relies on increasingly interconnected aviation systems vulnerable to evolving cybersecurity threats, including spectrum interference, spoofing, and jamming.