Private Security Firms to Conduct Government-Authorized Cyberattacks Overseas
The U.S. administration is authorizing private security firms to conduct cyber operations against foreign criminal organizations targeting the United States.

The U.S. administration is establishing a program that will permit private security firms to conduct government-authorized cyber operations against foreign criminal organizations that target the United States. A National Security Presidential Memorandum issued Thursday directs the development of a program to combat foreign transnational criminal organizations (TCOs) that engage in cybercrime against U.S. persons, organizations, or government entities.
The program will be overseen by the Departments of Justice and Homeland Security. A key component of this initiative involves bringing in private sector companies, particularly those in cybersecurity, to participate. The memorandum lists specific types of criminal activities that can be targeted by these operations, including ransomware, sextortion schemes, phishing campaigns, financial fraud, and impersonation scams.
Authorized firms will be permitted to conduct "Cyber Surveillance Operations and Cyber Effects Operations" against TCOs. These groups are defined as foreign entities that engage in cybercrime against the United States but are not institutional parts of, or wholly operated under the direction of, a foreign government.
While the specific details of the program are still being defined, it aims to expand U.S. capabilities in combating foreign cyber threats by leveraging private sector expertise and resources.