Showing posts with label UAS Operations. Show all posts
Showing posts with label UAS Operations. Show all posts

Tuesday, May 14, 2024

Committee Hearings – Week of 5-13-24

This week, with both the House and Senate in session, there is a relatively busy hearing schedule. FY 2025 budget hearings continue in the oversight committees. There is one markup hearing of note, a Chinese security risk hearing and UAS use hearing.

Budget Hearings

 

House

Senate

EPA

EC Subcommittee

 

TSA

HS Subcommittee

 

NTIA

EC Subcommittee

 

DOD Acquisitions

 

APP Subcommittee

Note: There is a problem with the links to the Senate Appropriations Committee this morning.

Markup Hearing

On Wednesday, the House Oversight and Accountability Committee will hold a markup hearing to consider six bills and three postal naming bills. The one bill of specific interest here is:

HR 5255: "To require covered contractors implement a vulnerability disclosure policy consistent with NIST guidelines, and for other purposes."

Chinese Threat Hearing

On Wednesday the Cybersecurity, Information Technology, and Government Innovation Subcommittee of the House Oversight and Accountability Committee will hold a hearing on “Red Alert: Countering the Cyberthreat from China”. The witness list includes:

• Charles Carmakal, Mandiant,

• William Evanina, Former Director of the National Counterintelligence and Security Center,

• Rob Joyce, Former Special Assistant to the President and White House Cyber Security Coordinator,

• Steven M. Kelly, Institute for Security and Technology

Expect some FUD pointing by committee members.

UAS Uses

On Thursday the Subcommittee on Emergency Management and Technology, and the Subcommittee on Counterterrorism, Law Enforcement, and Intelligence, both of the House Homeland Security Committee will hold a joint hearing on “Unmanned Aerial Systems: An Examination of the Use of Drones in Emergency Response”. No witness list is currently available.

Without a witness list it is hard to tell, but there is a possibility that UAS cybersecurity issues could be part of this topic.

On the Floor

The House will consider a relatively large number of bills on Tuesday (votes lasting through Wednesday) under their suspension of the rules process this week. Of interest here, this will include:

HR 4510 – NTIA Reauthorization Act of 2024, as amended,

HR 7659 – Coast Guard Authorization Act of 2024, as amended, and

Senate Amendment to HR 3935 – FAA Reauthorization Act of 2024.


Thursday, October 27, 2022

OMB Approves Update for FAA ICR for Drone Operations in Restricted Airspace

Yesterday, the OMB’s Office of Information and Regulatory Affairs (OIRA) announced that it had approved a revision to the DOT’s Federal Aviation Administration’s information collection request (ICR) for “Airspace Authorizations in Controlled Airspace under 49 U.S.C. 44809(a)(5) [link added]”. This supports the FAA’s requirement for unmanned aircraft system operators to request permission to fly UAS in certain controlled airspaces. Changes were made to the burden estimate based upon actual usage during the first three years of operations under this ICR.

Commentary

Dramatic changes in burden estimates are not unusual for the first update of an ICR. The agency has to guess how many folks will be using the new system and may not have a strong basis for making that guess. So, a radical decrease, based upon three years of actual data makes a certain amount of sense. But…

There is no indication here that the FAA has gone back and done a study to see if the actual data reflects full compliance with the coordination requirements of the regulation, or if there are substantial instances of non-compliance. And to be fair, ICR notices are not really the place to discuss compliance investigations in any sort of detail, but it would be nice to see some notification that the FAA was investigating potential non-compliance issues as a response to those instances of non-compliance may have an impact on future burden estimates.

 

For more details about the ICR revision, including new burden estimates, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/omb-approves-update-for-faa-icr-for - subscription required.


Wednesday, May 9, 2018

FAA Sends Two UAS Rules to OMB


Yesterday the OMB’s Office of Information and Regulatory Affairs (OIRA) announced that it had received two rulemakings from DOT’s Federal Aviation Administration (FAA) for review. Both rulemakings addressed operations of unmanned aircraft systems (UAS). The two rulemakings were (links are to the announcements):

Operations of Small Unmanned Aircraft Over People – Notice of proposed rulemaking (NPRM); and
Safe and Secure Operations of Small Unmanned Aircraft Systems – Advanced notice of proposed rulemaking (ANPRM)

Over People


According to the Fall 2017 Unified Agenda entry for this rulemaking:

“This rulemaking would address the performance-based standards and means-of-compliance for operation of small unmanned aircraft systems (UAS) over people not directly participating in the operation or not under a covered structure or inside a stationary vehicle that can provide reasonable protection from a falling small unmanned aircraft. This rule would provide relief from certain operational restrictions implemented in the Operation and Certification of Small Unmanned Aircraft Systems final rule (RIN 2120-AJ60) [link added].”

Safe and Secure Operations


According to the Fall 2017 Unified Agenda entry for this rulemaking:

“This action would solicit public comments for several operational limitations, airspace restrictions, hardware requirements, and associated identification or tracking technologies for Unmanned Aircraft Systems (UAS). The ANPRM will ask a series of questions regarding the balance of needs between UAS operators and the law enforcement and national defense communities. This action is necessary to address safety and security concerns from the homeland security, Federal law enforcement, and national defense communities.”

Friday, August 4, 2017

Bills Introduced – 08-03-17

With just the Senate in session there were 34 bills introduced yesterday. Of those only one may be of specific interest to readers of this blog:

S 1755 A bill to amend title 18, United States Code, to prohibit unsafe operation of unmanned aircraft, and for other purposes. Sen. Whitehouse, Sheldon [D-RI]


It will be interesting to see if this legislation includes enhanced enforcement for unsafe operations over critical infrastructure.

Monday, July 17, 2017

S 1405 Introduced – FY 2018 FAA Authorization

Last month Sen. Thune (R,SD) introduced S 1405, the Federal Aviation Administration Reauthorization Act of 2017. This year’s bill includes one cybersecurity provision and a large number of provisions concerning unmanned aircraft systems (UAS). The UAS related items that may be of specific interest to readers of this blog include:

§2105. Analysis of current remedies under Federal, State, and local jurisdictions.
§2123. Small unmanned aircraft safety standards.
§2126. Additional rulemaking authority.
§2128. Special rules for model aircraft.
§2129. Authority.
§2133. Airport safety and airspace hazard mitigation and enforcement.
§2151. Federal and local authorities.
§2163. Unsafe operation of unmanned aircraft.

Cybersecurity


Section 4109 of the bill would require the FAA revise existing aircraft certification regulations to include {§4109(a)}:

• To address cybersecurity for avionics systems, including software components; and
• To require that aircraft avionics systems used for flight guidance or aircraft control be secured against unauthorized access via passenger inflight entertainment systems through such means as the Administrator determines appropriate to protect the avionics systems from unauthorized external and internal access.

The new regulations would be based upon work of the Aircraft Systems Information Security Protection Working Group as directed by Congress last year in §2111 of PL 114-190 (130 Stat 626).

Model Aircraft


Section 2128 of the bill adds a new §44808 (Special rules for model aircraft) to 49 USC. That section modifies and then codifies the model aircraft rules established in §336 of the FAA Modernization and Reform Act of 2012 (PL 1125-95, 126 Stat 77).

The ‘operational parameters’ in paragraph (a) have been expanded by including the following requirements for the model aircraft exemption {new §44808(a)}:

• Not flown beyond the visual line of sight of persons co-located with the operator or in direct communication with the operator;
• The aircraft is flown from the surface to not more than 400 feet in altitude, except under special conditions and programs established by a community-based organization; and
• The operator has passed an aeronautical knowledge and safety test administered by the Federal Aviation Administration online for the operation of unmanned aircraft systems subject to the requirements of section 44809 or developed and administered by the community-based organization and maintains proof of test passage to be made available to the Administrator or law enforcement upon request.

The FAA is further provided the authority to modify the operational parameters defined in the bill ‘as appropriate’. Paragraph (b)(2) provides an expansive list of considerations that the FAA might use to change those parameters.

Paragraph (d) of the new section provides the FAA with permissive authority to “promulgate rules relating to the registration and marking of model aircraft”. Furthermore, §2129 of the bill specifically re-instates the registration and marking requirements for small unmanned aircraft published by the FAA in December, 2015 and were recently vacated by the United States Court of Appeals for the District of Columbia Circuit in Taylor v. Huerta (No. 15–1495).

Regulation of UAS Operations


Section 2105 requires the Government Accountability Office (GAO) “a review of the privacy issues and concerns associated with the operation of unmanned aircraft systems in the national airspace system”. Additionally, it tasks the GAO with identifying “specific issues and concerns that may limit the availability of existing civil or criminal legal remedies regarding inappropriate operation of unmanned aircraft systems in the national airspace system” {§2105(2)}.

Section 2123 addresses setting safety standards for UAS. It would add a new §44803 to 49 USC (Small unmanned aircraft safety standards). It would require the FAA to establish a rulemaking advisory committee to develop recommendations for regulations to establish {§44803(a)(1)}:

• Risk-based, consensus safety standards related to the safe integration of small unmanned aircraft systems into the national airspace system (referred to in this section as ‘consensus safety standards’) that can evolve or be updated as appropriate; and
• A Federal Aviation Administration process for permitting, authorizing, or approving small unmanned aircraft systems and their operations based on the safety standards to be accepted by the Administrator under this section.

The FAA would then be responsible for implementing those recommendations by establishing a process for {new §44803(d)}

• The acceptance by the Federal Aviation Administration of consensus safety standards recommended;
• Permitting, authorizing, or the approving small unmanned aircraft systems makes and models based upon the consensus safety standards; and
• The certification of a manufacturer of small unmanned aircraft systems that has demonstrated compliance with consensus safety standards.

These safety standards would also specifically apply to model aircraft {new §44803(f)}.

Mitigating Unsafe UAS Operations


Section 2133 would add a new §44810 to 49 USC. That new section would require the FAA to “develop a plan for the certification, permitting, authorizing, or allowing of the deployment of technologies or systems for the detection and mitigation of unmanned aircraft systems” {new §44810(b)(1)}. The implemented plan would “allow appropriate officials of Federal, State, or local agencies requesting to utilize such technologies or systems to take steps to detect and mitigate potential airspace safety threats posed by unmanned aircraft system operations §44810(b)(2)}.

The section goes on to clearly state that the following federal statutes would not apply the operation of these ‘technologies or systems’ {new §44810(h)}:

18 USC 32 – Destruction of aircraft or aircraft facilities;
18 USC 1030 (the bill actually says ‘1031’, an obvious error) – Fraud and related activity in connection with computers;
18 USC Chapter 119 – Wire and electronic communications interception and interception of oral communications; and
18 USC Chapter 206 – Pen registers and trap and trace devices

Section 2163 would make it a federal crime to unsafely operate an ‘unmanned aircraft’. It would add a new section 39B to 18 USC. It would make it a federal offense to operate an unmanned aircraft in a manner that “knowingly or recklessly interferes with, or disrupts the operation of, an aircraft carrying 1 or more occupants operating in the special aircraft jurisdiction of the United States, in a manner that poses an imminent safety hazard to such occupants” {new §39B(a)}.

Committee Mark-Up


On June 29th the Senate Commerce, Science, and Transportation Committee held a mark-up hearing that included the mark-up of S 1405. In that hearing 57 amendments, including substitute language from Chairman Thune, were offered and presumably adopted (though there is no indication on the Committee web site of the status of actions taken). The substitute language made no changes of significance to the provisions previously discussed. There was one amendment from Sen. Johnson (R,WI) that may be of specific interest here.

Johnson’s amendment would add a new §44816 to 49 USC, Unmanned aircraft systems in restricted buildings or grounds. This amendment mirrors current restrictions found in 18 USC 1752 against unauthorized entry of the White House or other grounds where the President (or other persons protected by the Secret Service) is present. It would apply similar legal penalties for flying UAS in such areas.

The amendment further expands upon the §1752 coverage by adding the phrase “impede or disrupt the orderly conduct of Government business or official functions” {new §44816(a)} with respect to UAS operations.

Violation of the new section would be punishable under 18 USC by fines and/or up to one year in prison, unless the offense included mounting a weapon on the UAS or caused serious bodily harm. Then the maximum sentence would be fines and/or up to ten years in prison.

Moving Forward


The FAA reauthorization is one of the ‘must complete’ actions for Congress each year, though that does not specifically apply to this particular bill. A House version of this bill has yet to be offered, but will ultimately happen. Each branch of Congress will pass their own version of an FAA reauthorization bill and a conference committee will iron out the differences. There is always the possibility of short-term continuing-authorization bills being passed.

Commentary


I am very happy to see that this bill provides not only authority, but specific requirements for the FAA to regulate the cybersecurity of aircraft control systems. I am disappointed, however, in the failure to require specific rules regarding the reporting of cybersecurity attacks (with an appropriate definition of what constitutes an attack) or the discovery of security vulnerabilities in avionics software or devices. Additionally, I would have liked to have seen a specific requirement for regulated air carriers and aircraft (and avionic system) manufacturers to be members of some sort of recognized cybersecurity information sharing organization.

The bill finally addresses one of the major issues related to enforcing UAS operation regulations, the fact that any attempts to immediately stop a UAS from illegal operation (not completely defined by this bill) would almost certainly involve violation of a number of federal criminal statutes.

I am not sure, however, that offering a blanket exemption to those laws is quite the right way to proceed. I would have preferred the bill to require the FAA to establish specific ground rules where such exemptions applied. The way that §2133 is written does not just limit the use of the developed ‘technologies and systems’ to the areas around airports. They would generally apply to any counter-UAS operations conducted by “Federal departments and agencies to detect and mitigate potential threats posed by errant or hostile unmanned aircraft system operations” {new §44810(a)} or more generally by “appropriate officials of Federal, State, or local agencies requesting to utilize such technologies” {new §44810(b)(2)}.

The Johnson amendment is an overly broad extension of current presidential security rules. While arguments could certainly be made to support allowing the Secret Service to control the use of UAS around the White House and presidential functions, the inclusion of the ‘orderly conduct of Government business’ language could have a chilling effect on freedom of speech and be a broad tool to counter civil disobedience usage of UAS.


Finally, there is curiously lacking any mention of potentially applying flight restrictions to UAS operations above or around critical infrastructure or other restricted areas. Actually, what I would prefer to see would be to specifically disallow the operation of UAS over or around facilities where the federal government currently regulates security (for example: CFATS, MTSA and CIP regulated facilities) with the specific permission of the facility owners/operators. This would avoid the vague definition of ‘critical infrastructure’.

Wednesday, April 13, 2016

Bills Introduced – 04-12-16

With both the House and Senate in session, there were 39 bills introduced. Of those two may be of specific interest to readers of this blog:

HR 4909 To authorize appropriations for fiscal year 2017 for military activities of the Department of Defense and for military construction, to prescribe military personnel strengths for such fiscal year, and for other purposes. Rep. Thornberry, Mac [R-TX-13]

HR 4911 To impose criminal penalties for the unsafe operation of unmanned aircraft. Rep. Langevin, James R. [D-RI-2]

As always I will be watching the Defense authorization bill for cybersecurity issues.


It will be interesting to see how Langevin defines ‘unsafe operation’.
 
/* Use this with templates/template-twocol.html */