President Trump has signed a national security memorandum that paves the way for private sector companies to collaborate with law enforcement in carrying out hacking operations against transnational criminal organizations. The move marks a significant shift in how the government tackles cybercrime, and raises questions about the potential risks and benefits of involving private industry in these sensitive activities.
The memo cites sustained fraud and other cyber-enabled campaigns from transnational criminal organizations as justification for expanding the role of private sector companies in helping law enforcement. According to the White House, this is just one step in a broader effort to combat cybercrime, following on from an executive order in March focused on addressing financial crimes.
Under the memorandum, a federal coordination center will be established to oversee and manage a program that authorizes participating companies to conduct hacking operations against foreign cyber-enabled transnational criminal organizations. These companies will have to undergo rigorous vetting by the Justice Department or Department of Homeland Security before being cleared for participation, and must adhere to existing laws, including the Computer Fraud and Abuse Act.
The program is designed to tap into the expertise and resources of private sector companies, while maintaining government oversight and control. Participating companies will be able to work with other private sector entities to receive threat information and propose cyber operations to address those threats. The memo also includes provisions for regular reporting and evaluation of participating companies’ technical proficiency.
The move has drawn both praise and criticism from experts in the field. Some, like former White House cyber official Josh Steinman, see it as a positive development that brings new resources and expertise into the fight against cybercrime. Others, however, are more cautious, warning that giving private sector companies too much leeway in hacking operations could have unintended consequences.
One of the key concerns is that this approach may create a situation where private sector companies are more focused on generating profits from their involvement than on actually addressing the underlying threats. Jason Kitka, a former Cyber Command official, has described the memo as “a perpetual motion machine for billable threats”, suggesting that the program could be used to justify expensive and ineffective hacking operations.
Despite these concerns, many experts see this development as an important step forward in how the government approaches cybercrime. Chris Wysopal, co-founder of Veracode, has called it “a pretty big shift in US cyber policy” that marks a significant departure from previous proposals that would have given private sector companies too much leeway in hacking operations.
For security professionals and individuals, this development highlights the need for continued vigilance and awareness in the face of evolving threats. As the government and private sector collaborate on new approaches to tackling cybercrime, it’s essential to remember that effective cybersecurity requires a comprehensive and coordinated effort, not just from governments or companies, but from individuals as well.
In practical terms, this means staying informed about emerging threats and vulnerabilities, using robust security measures to protect personal and professional data, and being cautious when engaging with unfamiliar entities online. By taking these steps, we can all contribute to a safer and more secure digital landscape, even in the face of increasingly complex and sophisticated threats.
Source: CyberScoop — 2026-08-13