Congressional Legislation · bill 119hr1709 · built from our database

Only the right has signed this so far (Bill Ranking)

Understanding Cybersecurity of Mobile Networks Act

H.R. 1709 · 119th Congress (2025-2026)

H.R. 1709119TH CONGRESSINTRODUCED 02/27/2025REP. LANDSMAND-OH · SPONSORLeft: no (Sponsor Ranking)Lean left: no (Sponsor Ranking)Center: DW-NOMINATE -0.23 (Sponsor Ranking)Lean right: no (Sponsor Ranking)Right: no (Sponsor Ranking)CENTER(SPONSOR RANKING)SCIENCE, TECHNOLOGY, COMMUNICATIONS

5 members · Left 0 · Center 2 · Right 3 (Bill Ranking)

SponsorRep. Landsman, Greg (D-OH) (Introduced 02/27/2025)
Sponsor Voting RecordCenter · DW-NOMINATE -0.23 · measured from every roll-call vote this member has cast (voteview.com) (Sponsor Ranking)
Support
LLLCLRR

support across the spectrum: 5 members signed on (Bill Ranking) this bill: sponsor + current cosponsors, each once

CommitteesSenate - Commerce, Science, and Transportation Committee; House - Energy and Commerce Committee; House - Energy and Commerce Committee; House - Energy and Commerce Committee
Latest Action07/15/2025 Received in the Senate and Read twice and referred to the Committee on Commerce, Science, and Transportation.
Roll Call Votes1
Sourceview on congress.gov →
IntroducedPassed HousePassed SenateResolving DifferencesTo PresidentBecame Law

Summary (1)

Introduced in House (02/27/2025)

Understanding Cybersecurity of Mobile Networks Act

This bill requires the National Telecommunications and Information Administration to examine and report on the cybersecurity of mobile service networks and the vulnerability of these networks and mobile devices to cyberattacks and surveillance conducted by adversaries.

The report must include, among other items, (1) an assessment of the degree to which mobile service providers have addressed certain cybersecurity vulnerabilities; (2) a discussion of the degree to which these providers have implemented cybersecurity best practices and risk assessment frameworks; and (3) an estimate of the prevalence and efficacy of encryption and authentication algorithms and techniques.

Text (4)

Engrossed in House (EH)

119 HR 1709 EH: Understanding Cybersecurity of Mobile Networks Act U.S. House of Representatives text/xml EN Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain. IB 119th CONGRESS1st Session H. R. 1709

IN THE HOUSE OF REPRESENTATIVES AN ACT To direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.

1.Short titleThis Act may be cited as the Understanding Cybersecurity of Mobile Networks Act.

2.Report on cybersecurity of mobile service networks (a)In generalNot later than 1 year after the date of the enactment of this Act, the Assistant Secretary, in consultation with the Department of Homeland Security, shall submit to the Committee on Energy and Commerce of the House of Representatives and the Committee on Commerce, Science, and Transportation of the Senate a report examining the cybersecurity of mobile service networks and the vulnerability of such networks and mobile devices to cyberattacks and surveillance conducted by adversaries. (b)Matters To be includedThe report required by subsection (a) shall include the following: (1)An assessment of the degree to which providers of mobile service have addressed, are addressing, or have not addressed cybersecurity vulnerabilities (including vulnerabilities the exploitation of which could lead to surveillance conducted by adversaries) identified by academic and independent researchers, multistakeholder standards and technical organizations, industry experts, and Federal agencies, including in relevant reports of— (A)the National Telecommunications and Information Administration; (B)the National Institute of Standards and Technology; and (C)the Department of Homeland Security, including— (i)the Cybersecurity and Infrastructure Security Agency; and (ii)the Science and Technology Directorate. (2)A discussion of— (A)the degree to which customers (including consumers, companies, and government agencies) consider cybersecurity as a factor when considering the purchase of mobile service and mobile devices; and (B)the commercial availability of tools, frameworks, best practices, and other resources for enabling such customers to evaluate cybersecurity risk and price tradeoffs. (3)A discussion of the degree to which providers of mobile service have implemented cybersecurity best practices and risk assessment frameworks. (4)An estimate and discussion of the prevalence and efficacy of encryption and authentication algorithms and techniques used in each of the following: (A)Mobile service. (B)Mobile communications equipment or services. (C)Commonly used mobile phones and other mobile devices. (D)Commonly used mobile operating systems and communications software and applications. (5)A discussion of the barriers for providers of mobile service to adopt more efficacious encryption and authentication algorithms and techniques and to prohibit the use of older encryption and authentication algorithms and techniques with established vulnerabilities in mobile service, mobile communications equipment or services, and mobile phones and other mobile devices. (6)An estimate and discussion of the prevalence, usage, and availability of technologies that authenticate legitimate mobile service and mobile communications equipment or services to which mobile phones and other mobile devices are connected. (7)An estimate and discussion of the prevalence, costs, commercial availability, and usage by adversaries in the United States of cell site simulators (often known as international mobile subscriber identity catchers) and other mobile service surveillance and interception technologies. (c)ConsultationIn preparing the report required by subsection (a), the Assistant Secretary shall, to the degree practicable, consult with— (1)the Federal Communications Commission; (2)the National Institute of Standards and Technology; (3)the intelligence community; (4)the Cybersecurity and Infrastructure Security Agency of the Department of Homeland Security; (5)the Science and Technology Directorate of the Department of Homeland Security; (6)academic and independent researchers with expertise in privacy, encryption, cybersecurity, and network threats; (7)participants in multistakeholder standards and technical organizations (including the 3rd Generation Partnership Project and the Internet Engineering Task Force); (8)international stakeholders, in coordination with the Department of State as appropriate; (9)providers of mobile service, including small providers (or the representatives of such providers) and rural providers (or the representatives of such providers); (10)manufacturers, operators, and providers of mobile communications equipment or services and mobile phones and other mobile devices; (11)developers of mobile operating systems and communications software and applications; and (12)other experts that the Assistant Secretary considers appropriate. (d)Scope of reportThe Assistant Secretary shall— (1)limit the report required by subsection (a) to mobile service networks; (2)exclude consideration of 5G protocols and networks in the report required by subsection (a); (3)limit the assessment required by subsection (b)(1) to vulnerabilities that have been shown to be— (A)exploited in non-laboratory settings; or (B)feasibly and practicably exploitable in real-world conditions; and (4)consider in the report required by subsection (a) vulnerabilities that have been effectively mitigated by manufacturers of mobile phones and other mobile devices. (e)Form of report (1)Classified informationThe report required by subsection (a) shall be produced in unclassified form but may contain a classified annex. (2)Potentially exploitable unclassified informationThe Assistant Secretary shall redact potentially exploitable unclassified information from the report required by subsection (a) but shall provide an unredacted form of the report to the committees described in such subsection. (f)DefinitionsIn this section: (1)AdversaryThe term adversary includes— (A)any unauthorized hacker or other intruder into a mobile service network; and (B)any foreign government or foreign nongovernment person engaged in a long-term pattern or serious instances of conduct significantly adverse to the national security of the United States or security and safety of United States persons. (2)Assistant secretaryThe term Assistant Secretary means the Assistant Secretary of Commerce for Communications and Information. (3)EntityThe term entity means a partnership, association, trust, joint venture, corporation, group, subgroup, or other organization. (4)Intelligence communityThe term intelligence community has the meaning given that term in section 3 of the National Security Act of 1947 (50 U.S.C. 3003). (5)Mobile communications equipment or serviceThe term mobile communications equipment or service means any equipment or service that is essential to the provision of mobile service. (6)Mobile serviceThe term mobile service means, to the extent provided to United States customers, either or both of the following services: (A)Commercial mobile service (as defined in section 332(d) of the Communications Act of 1934 (47 U.S.C. 332(d))). (B)Commercial mobile data service (as defined in section 6001 of the Middle Class Tax Relief and Job Creation Act of 2012 (47 U.S.C. 1401)). (7)PersonThe term person means an individual or entity. (8)United states personThe term United States person means— (A)an individual who is a United States citizen or an alien lawfully admitted for permanent residence to the United States; (B)an entity organized under the laws of the United States or any jurisdiction within the United States, including a foreign branch of such an entity; or (C)any person in the United States. Passed the House of Representatives July 14, 2025.Kevin F. McCumber,Clerk.

Introduced in House (IH)

119 HR 1709 IH: Understanding Cybersecurity of Mobile Networks Act U.S. House of Representatives 2025-02-27 text/xml EN Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain. I119th CONGRESS1st SessionH. R. 1709IN THE HOUSE OF REPRESENTATIVESFebruary 27, 2025Mr. Landsman (for himself and Mrs. Cammack) introduced the following bill; which was referred to the Committee on Energy and CommerceA BILLTo direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.1.Short titleThis Act may be cited as the Understanding Cybersecurity of Mobile Networks Act.2.Report on cybersecurity of mobile service networks(a)In generalNot later than 1 year after the date of the enactment of this Act, the Assistant Secretary, in consultation with the Department of Homeland Security, shall submit to the Committee on Energy and Commerce of the House of Representatives and the Committee on Commerce, Science, and Transportation of the Senate a report examining the cybersecurity of mobile service networks and the vulnerability of such networks and mobile devices to cyberattacks and surveillance conducted by adversaries.(b)Matters To be includedThe report required by subsection (a) shall include the following:(1)An assessment of the degree to which providers of mobile service have addressed, are addressing, or have not addressed cybersecurity vulnerabilities (including vulnerabilities the exploitation of which could lead to surveillance conducted by adversaries) identified by academic and independent researchers, multistakeholder standards and technical organizations, industry experts, and Federal agencies, including in relevant reports of—(A)the National Telecommunications and Information Administration;(B)the National Institute of Standards and Technology; and(C)the Department of Homeland Security, including—(i)the Cybersecurity and Infrastructure Security Agency; and(ii)the Science and Technology Directorate.(2)A discussion of—(A)the degree to which customers (including consumers, companies, and government agencies) consider cybersecurity as a factor when considering the purchase of mobile service and mobile devices; and(B)the commercial availability of tools, frameworks, best practices, and other resources for enabling such customers to evaluate cybersecurity risk and price tradeoffs.(3)A discussion of the degree to which providers of mobile service have implemented cybersecurity best practices and risk assessment frameworks.(4)An estimate and discussion of the prevalence and efficacy of encryption and authentication algorithms and techniques used in each of the following:(A)Mobile service.(B)Mobile communications equipment or services.(C)Commonly used mobile phones and other mobile devices.(D)Commonly used mobile operating systems and communications software and applications.(5)A discussion of the barriers for providers of mobile service to adopt more efficacious encryption and authentication algorithms and techniques and to prohibit the use of older encryption and authentication algorithms and techniques with established vulnerabilities in mobile service, mobile communications equipment or services, and mobile phones and other mobile devices.(6)An estimate and discussion of the prevalence, usage, and availability of technologies that authenticate legitimate mobile service and mobile communications equipment or services to which mobile phones and other mobile devices are connected.(7)An estimate and discussion of the prevalence, costs, commercial availability, and usage by adversaries in the United States of cell site simulators (often known as international mobile subscriber identity catchers) and other mobile service surveillance and interception technologies.(c)ConsultationIn preparing the report required by subsection (a), the Assistant Secretary shall, to the degree practicable, consult with—(1)the Federal Communications Commission;(2)the National Institute of Standards and Technology;(3)the intelligence community;(4)the Cybersecurity and Infrastructure Security Agency of the Department of Homeland Security;(5)the Science and Technology Directorate of the Department of Homeland Security;(6)academic and independent researchers with expertise in privacy, encryption, cybersecurity, and network threats;(7)participants in multistakeholder standards and technical organizations (including the 3rd Generation Partnership Project and the Internet Engineering Task Force);(8)international stakeholders, in coordination with the Department of State as appropriate;(9)providers of mobile service, including small providers (or the representatives of such providers) and rural providers (or the representatives of such providers);(10)manufacturers, operators, and providers of mobile communications equipment or services and mobile phones and other mobile devices;(11)developers of mobile operating systems and communications software and applications; and(12)other experts that the Assistant Secretary considers appropriate.(d)Scope of reportThe Assistant Secretary shall—(1)limit the report required by subsection (a) to mobile service networks;(2)exclude consideration of 5G protocols and networks in the report required by subsection (a);(3)limit the assessment required by subsection (b)(1) to vulnerabilities that have been shown to be—(A)exploited in non-laboratory settings; or(B)feasibly and practicably exploitable in real-world conditions; and(4)consider in the report required by subsection (a) vulnerabilities that have been effectively mitigated by manufacturers of mobile phones and other mobile devices.(e)Form of report(1)Classified informationThe report required by subsection (a) shall be produced in unclassified form but may contain a classified annex.(2)Potentially exploitable unclassified informationThe Assistant Secretary shall redact potentially exploitable unclassified information from the report required by subsection (a) but shall provide an unredacted form of the report to the committees described in such subsection.(f)DefinitionsIn this section:(1)AdversaryThe term adversary includes—(A)any unauthorized hacker or other intruder into a mobile service network; and(B)any foreign government or foreign nongovernment person engaged in a long-term pattern or serious instances of conduct significantly adverse to the national security of the United States or security and safety of United States persons.(2)Assistant secretaryThe term Assistant Secretary means the Assistant Secretary of Commerce for Communications and Information.(3)EntityThe term entity means a partnership, association, trust, joint venture, corporation, group, subgroup, or other organization.(4)Intelligence communityThe term intelligence community has the meaning given that term in section 3 of the National Security Act of 1947 (50 U.S.C. 3003).(5)Mobile communications equipment or serviceThe term mobile communications equipment or service means any equipment or service that is essential to the provision of mobile service.(6)Mobile serviceThe term mobile service means, to the extent provided to United States customers, either or both of the following services:(A)Commercial mobile service (as defined in section 332(d) of the Communications Act of 1934 (47 U.S.C. 332(d))).(B)Commercial mobile data service (as defined in section 6001 of the Middle Class Tax Relief and Job Creation Act of 2012 (47 U.S.C. 1401)).(7)PersonThe term person means an individual or entity.(8)United states personThe term United States person means—(A)an individual who is a United States citizen or an alien lawfully admitted for permanent residence to the United States;(B)an entity organized under the laws of the United States or any jurisdiction within the United States, including a foreign branch of such an entity; or(C)any person in the United States.

Referred in Senate (RFS)

119 HR 1709 : Understanding Cybersecurity of Mobile Networks Act U.S. House of Representatives 2025-07-15 text/xml EN Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain. IIB119th CONGRESS1st SessionH. R. 1709IN THE SENATE OF THE UNITED STATESJuly 15, 2025Received; read twice and referred to the Committee on Commerce, Science, and TransportationAN ACTTo direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.1.Short titleThis Act may be cited as the Understanding Cybersecurity of Mobile Networks Act.2.Report on cybersecurity of mobile service networks(a)In generalNot later than 1 year after the date of the enactment of this Act, the Assistant Secretary, in consultation with the Department of Homeland Security, shall submit to the Committee on Energy and Commerce of the House of Representatives and the Committee on Commerce, Science, and Transportation of the Senate a report examining the cybersecurity of mobile service networks and the vulnerability of such networks and mobile devices to cyberattacks and surveillance conducted by adversaries.(b)Matters To be includedThe report required by subsection (a) shall include the following:(1)An assessment of the degree to which providers of mobile service have addressed, are addressing, or have not addressed cybersecurity vulnerabilities (including vulnerabilities the exploitation of which could lead to surveillance conducted by adversaries) identified by academic and independent researchers, multistakeholder standards and technical organizations, industry experts, and Federal agencies, including in relevant reports of—(A)the National Telecommunications and Information Administration;(B)the National Institute of Standards and Technology; and(C)the Department of Homeland Security, including—(i)the Cybersecurity and Infrastructure Security Agency; and(ii)the Science and Technology Directorate.(2)A discussion of—(A)the degree to which customers (including consumers, companies, and government agencies) consider cybersecurity as a factor when considering the purchase of mobile service and mobile devices; and(B)the commercial availability of tools, frameworks, best practices, and other resources for enabling such customers to evaluate cybersecurity risk and price tradeoffs.(3)A discussion of the degree to which providers of mobile service have implemented cybersecurity best practices and risk assessment frameworks.(4)An estimate and discussion of the prevalence and efficacy of encryption and authentication algorithms and techniques used in each of the following:(A)Mobile service.(B)Mobile communications equipment or services.(C)Commonly used mobile phones and other mobile devices.(D)Commonly used mobile operating systems and communications software and applications.(5)A discussion of the barriers for providers of mobile service to adopt more efficacious encryption and authentication algorithms and techniques and to prohibit the use of older encryption and authentication algorithms and techniques with established vulnerabilities in mobile service, mobile communications equipment or services, and mobile phones and other mobile devices.(6)An estimate and discussion of the prevalence, usage, and availability of technologies that authenticate legitimate mobile service and mobile communications equipment or services to which mobile phones and other mobile devices are connected.(7)An estimate and discussion of the prevalence, costs, commercial availability, and usage by adversaries in the United States of cell site simulators (often known as international mobile subscriber identity catchers) and other mobile service surveillance and interception technologies.(c)ConsultationIn preparing the report required by subsection (a), the Assistant Secretary shall, to the degree practicable, consult with—(1)the Federal Communications Commission;(2)the National Institute of Standards and Technology;(3)the intelligence community;(4)the Cybersecurity and Infrastructure Security Agency of the Department of Homeland Security;(5)the Science and Technology Directorate of the Department of Homeland Security;(6)academic and independent researchers with expertise in privacy, encryption, cybersecurity, and network threats;(7)participants in multistakeholder standards and technical organizations (including the 3rd Generation Partnership Project and the Internet Engineering Task Force);(8)international stakeholders, in coordination with the Department of State as appropriate;(9)providers of mobile service, including small providers (or the representatives of such providers) and rural providers (or the representatives of such providers);(10)manufacturers, operators, and providers of mobile communications equipment or services and mobile phones and other mobile devices;(11)developers of mobile operating systems and communications software and applications; and(12)other experts that the Assistant Secretary considers appropriate.(d)Scope of reportThe Assistant Secretary shall—(1)limit the report required by subsection (a) to mobile service networks;(2)exclude consideration of 5G protocols and networks in the report required by subsection (a);(3)limit the assessment required by subsection (b)(1) to vulnerabilities that have been shown to be—(A)exploited in non-laboratory settings; or(B)feasibly and practicably exploitable in real-world conditions; and(4)consider in the report required by subsection (a) vulnerabilities that have been effectively mitigated by manufacturers of mobile phones and other mobile devices.(e)Form of report(1)Classified informationThe report required by subsection (a) shall be produced in unclassified form but may contain a classified annex.(2)Potentially exploitable unclassified informationThe Assistant Secretary shall redact potentially exploitable unclassified information from the report required by subsection (a) but shall provide an unredacted form of the report to the committees described in such subsection.(f)DefinitionsIn this section:(1)AdversaryThe term adversary includes—(A)any unauthorized hacker or other intruder into a mobile service network; and(B)any foreign government or foreign nongovernment person engaged in a long-term pattern or serious instances of conduct significantly adverse to the national security of the United States or security and safety of United States persons.(2)Assistant secretaryThe term Assistant Secretary means the Assistant Secretary of Commerce for Communications and Information.(3)EntityThe term entity means a partnership, association, trust, joint venture, corporation, group, subgroup, or other organization.(4)Intelligence communityThe term intelligence community has the meaning given that term in section 3 of the National Security Act of 1947 (50 U.S.C. 3003).(5)Mobile communications equipment or serviceThe term mobile communications equipment or service means any equipment or service that is essential to the provision of mobile service.(6)Mobile serviceThe term mobile service means, to the extent provided to United States customers, either or both of the following services:(A)Commercial mobile service (as defined in section 332(d) of the Communications Act of 1934 (47 U.S.C. 332(d))).(B)Commercial mobile data service (as defined in section 6001 of the Middle Class Tax Relief and Job Creation Act of 2012 (47 U.S.C. 1401)).(7)PersonThe term person means an individual or entity.(8)United states personThe term United States person means—(A)an individual who is a United States citizen or an alien lawfully admitted for permanent residence to the United States;(B)an entity organized under the laws of the United States or any jurisdiction within the United States, including a foreign branch of such an entity; or(C)any person in the United States.Passed the House of Representatives July 14, 2025.Kevin F. McCumber,Clerk.

Reported in House (RH)

119 HR 1709 RH: Understanding Cybersecurity of Mobile Networks Act U.S. House of Representatives 2025-06-30 text/xml EN Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain. IBUnion Calendar No. 143119th CONGRESS1st SessionH. R. 1709[Report No. 119–177]IN THE HOUSE OF REPRESENTATIVESFebruary 27, 2025Mr. Landsman (for himself and Mrs. Cammack) introduced the following bill; which was referred to the Committee on Energy and CommerceJune 30, 2025Additional sponsors: Mr. Fitzpatrick, Mrs. Houchin, and Mr. Nunn of IowaJune 30, 2025Committed to the Committee of the Whole House on the State of the Union and ordered to be printedA BILLTo direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.1.Short titleThis Act may be cited as the Understanding Cybersecurity of Mobile Networks Act.2.Report on cybersecurity of mobile service networks(a)In generalNot later than 1 year after the date of the enactment of this Act, the Assistant Secretary, in consultation with the Department of Homeland Security, shall submit to the Committee on Energy and Commerce of the House of Representatives and the Committee on Commerce, Science, and Transportation of the Senate a report examining the cybersecurity of mobile service networks and the vulnerability of such networks and mobile devices to cyberattacks and surveillance conducted by adversaries.(b)Matters To be includedThe report required by subsection (a) shall include the following:(1)An assessment of the degree to which providers of mobile service have addressed, are addressing, or have not addressed cybersecurity vulnerabilities (including vulnerabilities the exploitation of which could lead to surveillance conducted by adversaries) identified by academic and independent researchers, multistakeholder standards and technical organizations, industry experts, and Federal agencies, including in relevant reports of—(A)the National Telecommunications and Information Administration;(B)the National Institute of Standards and Technology; and(C)the Department of Homeland Security, including—(i)the Cybersecurity and Infrastructure Security Agency; and(ii)the Science and Technology Directorate.(2)A discussion of—(A)the degree to which customers (including consumers, companies, and government agencies) consider cybersecurity as a factor when considering the purchase of mobile service and mobile devices; and(B)the commercial availability of tools, frameworks, best practices, and other resources for enabling such customers to evaluate cybersecurity risk and price tradeoffs.(3)A discussion of the degree to which providers of mobile service have implemented cybersecurity best practices and risk assessment frameworks.(4)An estimate and discussion of the prevalence and efficacy of encryption and authentication algorithms and techniques used in each of the following:(A)Mobile service.(B)Mobile communications equipment or services.(C)Commonly used mobile phones and other mobile devices.(D)Commonly used mobile operating systems and communications software and applications.(5)A discussion of the barriers for providers of mobile service to adopt more efficacious encryption and authentication algorithms and techniques and to prohibit the use of older encryption and authentication algorithms and techniques with established vulnerabilities in mobile service, mobile communications equipment or services, and mobile phones and other mobile devices.(6)An estimate and discussion of the prevalence, usage, and availability of technologies that authenticate legitimate mobile service and mobile communications equipment or services to which mobile phones and other mobile devices are connected.(7)An estimate and discussion of the prevalence, costs, commercial availability, and usage by adversaries in the United States of cell site simulators (often known as international mobile subscriber identity catchers) and other mobile service surveillance and interception technologies.(c)ConsultationIn preparing the report required by subsection (a), the Assistant Secretary shall, to the degree practicable, consult with—(1)the Federal Communications Commission;(2)the National Institute of Standards and Technology;(3)the intelligence community;(4)the Cybersecurity and Infrastructure Security Agency of the Department of Homeland Security;(5)the Science and Technology Directorate of the Department of Homeland Security;(6)academic and independent researchers with expertise in privacy, encryption, cybersecurity, and network threats;(7)participants in multistakeholder standards and technical organizations (including the 3rd Generation Partnership Project and the Internet Engineering Task Force);(8)international stakeholders, in coordination with the Department of State as appropriate;(9)providers of mobile service, including small providers (or the representatives of such providers) and rural providers (or the representatives of such providers);(10)manufacturers, operators, and providers of mobile communications equipment or services and mobile phones and other mobile devices;(11)developers of mobile operating systems and communications software and applications; and(12)other experts that the Assistant Secretary considers appropriate.(d)Scope of reportThe Assistant Secretary shall—(1)limit the report required by subsection (a) to mobile service networks;(2)exclude consideration of 5G protocols and networks in the report required by subsection (a);(3)limit the assessment required by subsection (b)(1) to vulnerabilities that have been shown to be—(A)exploited in non-laboratory settings; or(B)feasibly and practicably exploitable in real-world conditions; and(4)consider in the report required by subsection (a) vulnerabilities that have been effectively mitigated by manufacturers of mobile phones and other mobile devices.(e)Form of report(1)Classified informationThe report required by subsection (a) shall be produced in unclassified form but may contain a classified annex.(2)Potentially exploitable unclassified informationThe Assistant Secretary shall redact potentially exploitable unclassified information from the report required by subsection (a) but shall provide an unredacted form of the report to the committees described in such subsection.(f)DefinitionsIn this section:(1)AdversaryThe term adversary includes—(A)any unauthorized hacker or other intruder into a mobile service network; and(B)any foreign government or foreign nongovernment person engaged in a long-term pattern or serious instances of conduct significantly adverse to the national security of the United States or security and safety of United States persons.(2)Assistant secretaryThe term Assistant Secretary means the Assistant Secretary of Commerce for Communications and Information.(3)EntityThe term entity means a partnership, association, trust, joint venture, corporation, group, subgroup, or other organization.(4)Intelligence communityThe term intelligence community has the meaning given that term in section 3 of the National Security Act of 1947 (50 U.S.C. 3003).(5)Mobile communications equipment or serviceThe term mobile communications equipment or service means any equipment or service that is essential to the provision of mobile service.(6)Mobile serviceThe term mobile service means, to the extent provided to United States customers, either or both of the following services:(A)Commercial mobile service (as defined in section 332(d) of the Communications Act of 1934 (47 U.S.C. 332(d))).(B)Commercial mobile data service (as defined in section 6001 of the Middle Class Tax Relief and Job Creation Act of 2012 (47 U.S.C. 1401)).(7)PersonThe term person means an individual or entity.(8)United states personThe term United States person means—(A)an individual who is a United States citizen or an alien lawfully admitted for permanent residence to the United States;(B)an entity organized under the laws of the United States or any jurisdiction within the United States, including a foreign branch of such an entity; or(C)any person in the United States.June 30, 2025Committed to the Committee of the Whole House on the State of the Union and ordered to be printed

The bill's own words, from our database (synced from the GPO BILLS XML); paragraph breaks added at the bill's section boundaries, nothing else changed.

All Actions (17)

DateChamberAll Actions
02/27/2025Library of CongressIntroduced in House
02/27/2025Library of CongressIntroduced in House
02/27/2025House floor actionsReferred to the House Committee on Energy and Commerce.
03/04/2025House committee actionsCommittee Consideration and Mark-up Session Held
03/04/2025House committee actionsOrdered to be Reported by Voice Vote.
06/30/2025Library of CongressReported by the Committee on Energy and Commerce. H. Rept. 119-177.
06/30/2025House floor actionsReported by the Committee on Energy and Commerce. H. Rept. 119-177.
06/30/2025House floor actionsPlaced on the Union Calendar, Calendar No. 143.
07/14/2025House floor actionsMr. Latta moved to suspend the rules and pass the bill.
07/14/2025House floor actionsConsidered under suspension of the rules. (consideration: CR H3209-3211)
07/14/2025House floor actionsDEBATE - The House proceeded with forty minutes of debate on H.R. 1709.
07/14/2025House floor actionsAt the conclusion of debate, the Yeas and Nays were demanded and ordered. Pursuant to the provisions of clause 8, rule XX, the Chair announced that further proceedings on the motion would be postponed.
07/14/2025House floor actionsConsidered as unfinished business. (consideration: CR H3230-3231)
07/14/2025Library of CongressPassed/agreed to in House: On motion to suspend the rules and pass the bill Agreed to by the Yeas and Nays: (2/3 required): 360 - 10 (Roll no. 191).
07/14/2025House floor actionsOn motion to suspend the rules and pass the bill Agreed to by the Yeas and Nays: (2/3 required): 360 - 10 (Roll no. 191). (text: CR H3209-3210)
07/14/2025House floor actionsMotion to reconsider laid on the table Agreed to without objection.
07/15/2025SenateReceived in the Senate and Read twice and referred to the Committee on Commerce, Science, and Transportation.

Titles (7)

Title TypeTitle
Official Titles from EH (Engrossed in House) bill textTo direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.
Short Titles from RFS (Referred to Senate) bill textUnderstanding Cybersecurity of Mobile Networks Act
Short Title(s) as Passed HouseUnderstanding Cybersecurity of Mobile Networks Act
Short Title(s) as Reported to HouseUnderstanding Cybersecurity of Mobile Networks Act
Display TitleUnderstanding Cybersecurity of Mobile Networks Act
Short Title(s) as IntroducedUnderstanding Cybersecurity of Mobile Networks Act
Official Title as IntroducedTo direct the Assistant Secretary of Commerce for Communications and Information to submit to Congress a report examining the cybersecurity of mobile service networks, and for other purposes.

Amendments (0)

There are no amendments to this bill.

Cosponsors (4)

* = Original cosponsor

Committees (4)

CommitteeActivity
Senate - Commerce, Science, and Transportation Committee07/15/2025 Referred To
House - Energy and Commerce Committee06/30/2025 Reported By
House - Energy and Commerce Committee03/04/2025 Markup By
House - Energy and Commerce Committee02/27/2025 Referred To

Related Bills (0)

No related bill information was received for H.R. 1709.

Subjects (5)

Policy Area: Science, Technology, Communications

All data on this page comes from our own database (legislation.congress_* tables), synced daily from the GPO govinfo BILLSTATUS and BILLS collections. Formatted after congress.gov; nothing is generated. Member placement is their DW-NOMINATE score (voteview.com, Lewis et al.) - a measurement of roll-call voting behavior, not our judgement. Buckets: Left below −0.50 · Lean Left to −0.25 · Center to +0.25 · Lean Right to +0.50 · Right above +0.50. The bill's Support meter aggregates the people who signed the bill - sponsor and current cosponsors, each counted once - nothing else.