Trump Administration Authorizes Private Firms to Launch Offensive Cyberattacks Against Criminal Networks
The Trump administration announced a groundbreaking policy shift allowing authorized private companies to conduct offensive cyber operations against international criminal organizations and hostile hackers. This new directive, issued via a presidential memorandum, aims to leverage private sector capabilities to combat cybercrimes such as ransomware attacks, financial fraud, and sextortion targeting American citizens.
Under the memorandum, participating companies may engage in surveillance activities, including spyware use for intelligence gathering, as well as disruptive cyberattacks intended to destroy criminals' data or systems. This marks a significant departure from previous U.S. policy, which prohibited private entities from conducting cyberattacks or sabotage without court approval.
The program imposes strict requirements on participating firms, including a mandatory $1 million escrow deposit forfeitable upon rule violations. All operations will be conducted under exclusive government oversight, requiring approval from the Department of Justice and the Department of Homeland Security to prevent harm to U.S. citizens or infrastructure.
Despite its strategic intent, the policy has sparked concerns about legal risks and diplomatic repercussions. Critics argue that private companies should not engage in government hacking activities, while cybersecurity experts warn that Americans involved could be classified as unlawful combatants and face prosecution or detention by foreign governments, similar to Iranian and Russian hackers accused of cybercrimes.
This decision comes amid escalating international cyber threats, including attacks on U.S. water facilities attributed to Iran-backed hackers, and ongoing cyber conflicts involving the U.S., Israel, and Iran. The administration also faces challenges from autonomous AI-driven cyberattacks, underscoring the urgency of enhanced cyber defense measures.