President Trump has authorized vetted U.S. companies to conduct cyber operations against foreign criminal organizations, aiming to enhance the fight against cybercrime under federal oversight.
In a significant move to combat cybercrime, President Donald Trump recently signed a National Security Presidential Memorandum that establishes a framework for vetted private U.S. companies to engage in cyber operations targeting specific foreign criminal organizations. This initiative aims to bring the fight against cyber-enabled crime closer to the source, with the federal government overseeing these operations.
The memorandum outlines two primary types of activities that participating companies may undertake. The first, termed a Cyber Surveillance Operation, permits companies to secretly access targeted computer systems to gather intelligence. These operations are designed to remain undetected and may involve accessing systems without the owner’s consent.
The second type, known as a Cyber Effects Operation, allows companies to manipulate, disrupt, deny access to, degrade, or even destroy systems and digital infrastructure controlled by targeted criminal organizations. However, it is crucial to note that this does not grant companies the authority to independently hack suspected criminals; all operations must be conducted under federal supervision.
To participate in this program, companies must undergo a vetting process and enter into contractual agreements with either the Department of Justice (DOJ) or the Department of Homeland Security (DHS). Before any operation can commence, the DOJ and DHS executive directors must review and approve the proposed cyber operations packages.
Furthermore, participating companies will be required to meet specific standards, which may include assessments of technical proficiency, past cyber operations experience, facility security, and personnel reliability. In some cases, the DOJ or DHS may also mandate that companies maintain a bond or escrow account of at least $1 million, which could be forfeited if the company violates its contractual obligations.
The memorandum specifically targets Cyber-Enabled Transnational Criminal Organizations (CE-TCOs), which are foreign groups engaged in cyber-enabled crimes against the U.S. government, American citizens, or U.S. interests. Notably, organizations that are part of a foreign government or operate under its direction are excluded from this initiative.
To ensure accountability, the memorandum includes safeguards for operations that inadvertently target U.S. persons or systems. If a participating company discovers that its operation has unintentionally affected a U.S. individual or entity, it must immediately halt the operation and notify the National Coordination Center, which will then inform the Justice Department.
Additionally, any operation that poses a risk of loss of life, serious injury, or could be classified as a use of force under international law is strictly prohibited from receiving approval from the DOJ or DHS officials overseeing the program.
While the memorandum sets the framework for this initiative, many operational procedures are still in development. Program leaders have 60 days from August 12 to establish rules governing eligibility, targeting, legal review, reporting, and federal oversight. Participating companies will also be subject to annual evaluations to ensure compliance and effectiveness.
Within 180 days, program leaders are required to submit a status report to the White House homeland security adviser and the National Cyber Director, with additional reports mandated annually thereafter. While the framework is now in place, the detailed rules that will dictate how these operations function are still forthcoming.
For the average citizen, there is no need to change any settings or sign up for anything due to this new policy. The impact of this initiative will largely occur behind the scenes, as the federal government seeks to enhance its ability to pursue foreign cybercriminal organizations. Approved operations could gather intelligence or disrupt systems controlled by these groups, adding another layer of defense against cyber threats.
As the government takes steps to increase pressure on foreign criminal organizations, it remains essential for individuals to maintain strong cybersecurity practices. If you suspect that your devices may have been compromised, it is crucial to take immediate action to secure your information.
This initiative reflects a growing recognition of the need for a collaborative approach to cybersecurity, leveraging the capabilities of private companies under federal oversight. As the final rules are established, it will be important to monitor how these operations are conducted and the safeguards in place to protect against potential misuse.
As this program unfolds, it raises questions about the balance between enhancing security and ensuring privacy. Would you feel more secure knowing that vetted U.S. companies could assist the government in disrupting foreign cybercriminals, or does the involvement of private companies in such operations raise concerns? Share your thoughts with us at Cyberguy.com.
According to Fox News, the program aims to provide a robust response to the increasing threat of cybercrime and its impact on Americans.

