By Interestana AI Editorial — AI-drafted, human-overseen. How we report
US Firms Authorized for Offensive Cyber Operations

President Donald Trump signed a memorandum on Tuesday, March 12, 2024, that authorizes vetted private U.S. companies to conduct offensive cyber operations against foreign criminal networks. This directive, issued by the White House, aims to empower private sector entities to proactively disrupt and dismantle cybercriminal organizations operating outside of U.S. jurisdiction. The program allows these companies to engage in activities that were previously the sole purview of government agencies, marking a significant shift in U.S. cyber policy.
The memorandum outlines specific conditions and limitations for these operations. Companies must be vetted by the U.S. government to ensure they possess the necessary technical capabilities and adhere to strict legal and ethical guidelines. The operations are intended to target networks engaged in activities such as ransomware attacks, financial fraud, and intellectual property theft that directly harm U.S. interests. The directive emphasizes that these actions are to be conducted at the companies' own legal risk, meaning they will bear responsibility for any unintended consequences or legal challenges arising from their operations. This contrasts with government-led operations, which are typically shielded by sovereign immunity.
This initiative reflects a growing recognition of the limitations of purely defensive cyber strategies and the increasing sophistication of transnational cybercriminal groups. By enabling private companies to take offensive action, the U.S. government seeks to augment its own cyber defense and offense capabilities without directly engaging its military or intelligence agencies in every instance. This approach could potentially lead to more agile and targeted responses to cyber threats, leveraging the specialized expertise and resources available within the private sector. However, it also introduces complexities related to attribution, international law, and the potential for escalation.
The program's authorization comes with a clear understanding that the participating companies will operate under a framework that requires transparency with the government regarding their activities. The memorandum does not grant a blank check for cyber warfare but rather a carefully defined scope of engagement. The success of this program will likely depend on the effectiveness of the vetting process, the clarity of the legal boundaries, and the ability to manage the inherent risks associated with offensive cyber operations. The White House has indicated that this is a strategic move to adapt to the evolving cyber threat landscape and to foster a more robust public-private partnership in cybersecurity.
Original source — read the full reporting at the publisher:
Read on DecryptGet the weekly AI digest
AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.