White House Opens Hack-Back Role for Private Firms

On August 12, President Trump signed a presidential memorandum that lets vetted U.S. private companies conduct offensive cyber operations against foreign criminal networks, under Justice Department and Homeland Security oversight. The program is aimed at transnational criminal organizations behind ransomware, phishing, and sextortion. The memo separates the work into surveillance operations, which mean breaking into a target’s systems to collect intelligence, and cyber effects operations, which mean disrupting, denying, degrading, or destroying systems or data. Both need written approval, and participating companies must post at least $1 million in escrow, so this is not ordinary defense work; it is government-directed intrusion with legal and escalation consequences attached. For firms that opt in, the exposure sits beyond their own networks: they are no longer only protecting customers, they are taking part in state-backed operations that can trigger foreign retaliation and compliance scrutiny.

Part of the PlainSec briefing for 2026-08-13

Every edition of this story: White House Opens Hack-Back Role for Private Firms

Sources