I think the API is secured? The entire premise is that a volunteer creates an account and uploads ADS-B telemetry. Detecting falsified data is a separate matter.
Also Adsbexchange has had some… history:
https://www.reddit.com/r/ADSB/comments/10l2euc/adsb_exchange...
https://hackaday.com/2023/01/26/ads-b-exchange-sells-up-cont...
"The Government’s interpretation of the statute would attach criminal penalties to a breathtaking amount of commonplace computer activity,” Barrett wrote. “If the ‘exceeds authorized access’ clause criminalizes every violation of a computer-use policy, then millions of otherwise law-abiding citizens are criminals."
adsbexchange is a user-generated content platform where you can submit decoded radio signals to a common database. Sending fake data to adsbexchange is as much a CFAA violation as posting hoaxes to Wikipedia or a social media platform.
Assuming the FAA has the authority to enforce ADSB requirements (an open question post-Chevron), I can’t find any regulation saying non-aircrafts cannot transmit ADSB. Only ones saying aircrafts in certain categories must.
There’s probably some non-interference requirement somewhere (FCC spectrum licensing perhaps), but I’m not seeing it immediately.
All this is in the hypothetical that RF was transmitted, which as others point out it probably wasn’t.
This is easily-prosecutable willful interference or possibly aircraft sabotage: ADS-B operates in licensed bands and uses an already highly-contended modulation scheme and transmission protocol.
Whatever transmitter you're using would not be type-accepted for operation on the 1080 MHz or 978 MHz band. (47 USC § 301)
Additionally, RF operation with the intent of willful interference is inherently illegal. (47 USC § 333)
Also does impersonation necessarily qualify as interference? Naively, I'd expect interference to refer to jamming.