
President Trump authorized vetted U.S. companies to help hack and disrupt foreign cybercriminal networks under federal direction.
Story Highlights
- A new presidential memo creates a first-of-its-kind public–private offensive cyber program.
- Vetted firms can target overseas criminal gangs under federal oversight and strict rules.
- The focus is transnational cyber-enabled crime like ransomware and fraud that hit Americans.
- Bonding, vetting, and approvals aim to prevent misuse and keep actions lawful.
White House Memo Launches Offensive Partnership Against Cyber Gangs
White House officials said a new presidential memorandum allows select private companies to conduct offensive cyber operations against overseas criminal groups that attack Americans. The policy directs the Department of Justice and the Department of Homeland Security to build a program that vets firms, sets targeting rules, and oversees all operations. The authority focuses on cyber-enabled transnational criminal organizations that run ransomware, fraud, and data theft schemes against families and small businesses.
Program leaders will coordinate actions so private teams act only under federal direction and within U.S. law. Reporting describes a formal process for approvals, mission scoping, and after-action reviews. Companies must follow rules of engagement, document steps, and accept audits. Officials argue this expands capacity to hit criminal infrastructure faster and more often, without growing the federal bureaucracy. The framework builds on years of calls to deepen public–private partnership in cyber defense.
Strict Guardrails, Vetting, and Financial Bonds to Reduce Risk
Coverage says participating companies will face strict vetting and maintain a financial bond to backstop compliance and damages, which raises the bar for entry and discipline. Federal coordination centers would assign targets, confirm foreign status, and approve tools and timing before operations begin. The memo limits the target set to criminal networks, not foreign governments, and requires procedures to stop any unintended collection and to protect Americans’ data and devices during operations.
Supporters say these guardrails answer long-standing worries about “hack back” chaos. The government-run model addresses authorization, attribution, and escalation by putting decisions in federal hands, not in private boardrooms. Clear oversight aims to keep actions lawful, measured, and focused on criminals that harm U.S. citizens. With ransomware crews hiding overseas and moving fast, backers say this approach helps hit servers, wallets, and command systems before victims lose more money or data.
Why This Matters for Families, Small Firms, and National Security
Ransomware and online fraud drain bank accounts, shut down clinics, and threaten local utilities. By enlisting skilled American companies, the administration seeks to protect paychecks, medical records, and small-town services. Faster disruption can block stolen funds, stop repeat attacks, and raise the price of crime. The policy also signals to foreign safe havens that the United States will push back, even when criminals hide behind borders and blame games.
the "hack-back" program infosec has been half-joking about for 20 years is finally real, per a new Trump-signed White House memo directing the National Coordination Center to let private security firms apply for approval to target foreign cybercrime groups.
— Kernel Rot (@kernelrot) August 13, 2026
Experts quoted in reporting say the move is new because it turns talk into a formal, rules-based program with approvals and bonds. Past strategies called for partnership, but left the offensive role vague. This memo makes it concrete and puts the Constitution, due process, and oversight up front. Some analysts caution about legal and practical pitfalls, but the framework’s narrow focus and controls are designed to manage those risks while restoring deterrence against predatory cyber crews.
Sources:
feedpress.me, theregister.com, techcrunch.com, cyberscoop.com, suzulabs.com, yahoo.com


























