President Trump has signed a memo permitting US private firms to conduct offensive cyber operations against foreign transnational criminal organizations targeting American interests, with strict government oversight and a mandatory $1 million escrow bond.

  • Private companies can conduct cyberattacks on foreign criminal targets.
  • Participants must escrow $1 million and adhere to federal oversight.
  • Focus on protecting US critical infrastructure and citizens from cybercrime.

What happened

President Trump signed a memo authorizing US private firms to collaborate with the government in cyber operations targeting transnational criminal organizations. These private companies will be empowered to carry out offensive cyber actions designed to surveil and disrupt foreign cybercriminal networks that threaten American citizens and infrastructure.

The program requires companies to escrow a minimum of $1 million as a bond, ensuring compliance with strict operational procedures overseen by federal authorities. Companies must notify the National Coordination Center if they detect imminent attacks on US critical infrastructure, and any operations must comply with legal limits that protect US citizens and systems.

Why it matters

The US faces the highest volume and cost of cyberattacks globally, with 6.7 million victims suffering losses exceeding $138 billion last year. This initiative marks a significant shift by integrating the innovation and agility of private firms into national cyber defense and offense strategies, aiming to create a global surveillance network and swift incident response capability.

By involving a broader range of companies, including smaller and more specialized firms, the government hopes to enhance versatility and responsiveness against cyber threats. The program also seeks to legally formalize private sector offensive cyber operations, providing clearer guidelines and accountability that have previously limited such actions.

What to watch next

The progress and impact of this new public-private cyber partnership will be monitored through annual reporting on operational outcomes and company performance within the program. Observers will be keen to see how effectively this model manages risks associated with private sector cyber offensives, particularly regarding compliance and minimization of collateral damage.

Attention will also focus on how this framework influences the broader US cyber strategy, including coordination with big tech firms and smaller innovators. The $1 million escrow requirement and oversight procedures will be pivotal in ensuring responsible engagement, making it important to track private sector uptake and the nature of cyber operations conducted under this authority.

Source assisted: This briefing began from a discovered source item from TechRadar. Open the original source.
How SignalDesk reports: feeds and outside sources are used for discovery. Public briefings are edited to add context, buyer relevance and attribution before they are published. Read the standards

Related briefings