BTC$63,057+0.34% LTC$44.05+1.12% XMR$412.08+4.33%
TorPortal TorPortalMarkets, mirrors, dark web news
The Record · Aug 13, 2026 · 5 min read · Original story

Trump taps cyber firms to go on offensive against criminals

Trump taps cyber firms to go on offensive against criminals
Trump taps cyber firms to go on offensive against criminals

Editor's note: This article was updated at 12:15 p.m. EST with comment from Congressman Bennie Thompson (D-MS).

The Trump administration will allow private companies to launch attacks on cybercrime organizations, according to a presidential memorandum released late on Wednesday.

The firms will partner with the Justice and Homeland Security departments on offensive operations and surveillance targeting “transnational cybercrime, fraud, and other predatory schemes against American citizens.”

“By partnering with vetted United States companies subject to the direction and oversight of the Federal Government, we will enhance our ability to counter [Transnational Criminal Organizations] threats and combat transnational cybercrime, fraud, and other predatory schemes against American citizens,” the memorandum said.

The cyber operations would need to be approved in advance by DOJ and DHS officials. The document makes clear that officials will not sanction any operation that results in either the loss of life or “rise to the level of use of force or armed attack under international law.”

The officials will “review every cyber operations package and provide written approval and direction to the Participating Company before action may be taken.”

The memorandum builds on an executive order from March that ordered federal agencies to take a more robust stance against cybercrime, which continues to siphon billions each year from Americans through scams, ransomware attacks and cyberattacks.

A fact sheet released by the White House alongside the memorandum said American consumers reported $20.8 billion in cyber-related losses last year.

The goal of the latest effort, according to the memorandum, is to incorporate the “ingenuity of the private sector” — arguing that American businesses “have historically been underutilized in efforts to identify and disrupt criminal networks operating in cyberspace.”

Since taking office last year, Trump administration officials have repeatedly stated a desire to focus on offensive cyber operations. National Cyber Director Sean Cairncross hinted at private sector offensive cyber operations in March.

“Thus, it is the policy of the United States to use all instruments of national power, including the innovative capabilities of the private sector, to combat cybercrime,” the memorandum says.

The memorandum is light on details about what will happen in thorny situations where cybercriminal organizations are tied to nation-state hacking groups or government entities. Earlier this year, State Department officials said there is evidence tying many of the Chinese gangs that run Southeast Asian scam centers to Chinese government projects.

The DOJ recently implicated several government and military officials in Cambodia and Myanmar in indictments targeting the transnational criminal organizations that run lucrative romance and financial scams through compounds in both countries.

Several cybersecurity experts questioned the lack of legal protections in the memorandum and expressed concerns about the potential for foreign governments to directly target cybersecurity employees involved in the program. What would be the protocol if mistakes were made or targets misidentified, some asked.

Others worried about U.S. employees facing situations similar to the experience of a Chinese citizen on vacation in Italy who was recently arrested and extradited to the U.S. on accusations of working for a cybersecurity company that launched attacks against American companies on behalf of the Chinese government.

Bennie Thompson (D-MS), ranking member of the Committee on Homeland Security, said he has serious concerns about the legal implications for the participating companies and other potential unintended impacts, noting that the oversight procedures are unclear.

“We all recognize the need to protect Americans from cyber-enabled crimes, but the proper venue to address this challenge is through the Administration working with Congress to ensure the necessary authorities, legal procedures, and resources are in place rather than a presidential memorandum that raises as many questions as it answers,” he said.

$1 million penalty

Participating companies would sign contracts with DOJ or DHS and “undergo rigorous vetting” so that their “performance adheres to the strict operational procedures outlined in the implementation guidance.”

The companies would get access to threat information that may help their cyber operations and work alongside federal, state and local officials to disrupt cybercrime operations

Federal agencies have two months to develop operating procedures and minimum standards companies must meet in order to participate. The standards will include “technical proficiency, proven performance of cyber operations, facility security, personnel vetting, competence, reliability, and other factors.”

DHS and the DOJ will create a framework for how targets will be identified and companies will need to report their activities to the federal government on a routine basis.

The White House did not respond to requests for comment about whether companies have already agreed to participate but the memorandum says they are seeking both large and small firms for different aspects of the scheme.

Participating companies will have to disclose all of their contractual relationships to the federal government and will face a penalty of at least $1 million if any aspect of the deal is violated. They will be evaluated annually in order to continue participating in the program.

The memorandum notes that procedures will need to be created governing what happens when a company “discovers operational activity exceeding the parameters and restrictions of the cyber operation … such as unintentional targeting of (1) a United States person, (2) an information system residing in the United States, or (3) an information system under the control of a United States person.”

If any of those are caught up in an operation, the companies must “cease such operation, conduct minimization procedures, and immediately notify the NCC, which shall notify the Department of Justice.”

Companies will also be forced to notify the federal government if they discover an imminent cyberattack against U.S. critical infrastructure or uncover a plot that may result in loss of life.

References in this story

  1. Expanding Capabilities to Combat Transnational Cyber-Enabled Crime www.whitehouse.gov MEMORANDUM FOR THE VICE PRESIDENT THE SECRETARY OF STATE THE SECRETARY OF THE TREASURY THE SECRETARY OF WAR THE ATTORNEY GENERAL THE SECRETARY OF COMMERCE
  2. White House floats Victims Restoration Program for millions affected by cyber fraud therecord.media An executive order calls for the creation of a Victim Restoration Program in 90 days that will provide “restoration or remission to victims of cyber-enabled fraud schemes from funds clawed back, forfeited, or seized…
  3. FBI: Cyber fraud surges to $17.6 billion in losses as scams, crypto theft soar therecord.media Cyber-enabled fraud was behind 85% of all losses reported to the FBI in 2025 and constituted 45% of the 1,008,597 complaints it's IC3 unit received overall.
  4. Fact Sheet: President Donald J. Trump Expands Capabilities to Combat Transnational Cyber-Enabled Crime www.whitehouse.gov THWARTING CYBER CRIMES: Today, President Donald J. Trump signed a National Security Presidential Memorandum (NSPM) empowering U.S. Federal law
  5. New White House cyber strategy pledges to ease regulations, ‘impose costs’ on bad actors therecord.media The White House unveiled its National Cyber Strategy, pledging more offensive cyber actions against criminal networks and adversarial governments.
  6. US official accuses China of supporting, exploiting cyber scam crisis in Southeast Asia therecord.media A senior U.S. official accused China’s government of implicitly backing Chinese criminal syndicates running cyber scam compounds across Southeast Asia and of exploiting a crisis that has resulted in billions being…
  7. US sanctions Cambodian senator for millions earned through scam compounds therecord.media The Treasury Department said Cambodian senator Kok An was being sanctioned alongside 28 others involved in his scam center operation.
  8. DOJ takes down Myanmar scam center website spoofing TickMill trading platform therecord.media The FBI said several victims used the domain and told agents that they were shown lucrative returns on what they thought were legitimate investments.
  9. Daniel May (@danielrmay) on X x.com There doesn’t appear to be anything in here about protection or indemnity, safety from foreign prosecution, retaliation, privacy, a future administration feeling differently, loss of clearance, or just something going…
  10. Nick Carr (@ItsReallyNick) on X x.com My biggest concern with private sector offensive action vs crime – having run the global cybercrime & ransomware intelligence team for almost 4 years – is just how difficult attribution in criminal operations is…
  11. Italy extradites alleged Chinese state hacker to US therecord.media A Chinese national accused of being a member of a state-backed hacking group that allegedly broke into systems to steal COVID-19 vaccine information has been extradited to the U.S. from Milan.
  12. Advanced Cyber Threat Intelligence | Recorded Future www.recordedfuture.com Get real-time, actionable cyber threat intelligence with Recorded Future. Mitigate cyber risks, prioritize threats, and proactively secure your organization.
  13. Martin Matishak (@martinmatishak) on X twitter.com Senior Cybersecurity Reporter for @TheRecord_Media. Send tips to [email protected]. Signal: mmatishak.80
  14. Martin Matishak (@martinmatishak.bsky.social) bsky.app Senior Cybersecurity Reporter at The Record from Recorded Future News. Send tips to [email protected]. Signal: mmatishak.80
  15. jon greig (@jgreigj) on X twitter.com @TheRecord_Media cybersecurity reporter. formerly @zdnet @cambodiadaily @haitiantimes_ — send tips to [email protected] or signal: jgreig.51
  16. jon greig (@jgreig.bsky.social) bsky.app cybersecurity reporter for The Record. formerly: zdnet, techrepublic, blavity, haitian times, cambodia daily — send tips to [email protected] or signal: jgreig.51

Guides related to this story

← Back to all news