White House Lets Contractors Join Offensive Cyber Operations

On Thursday, a Trump administration national security memo directed the National Coordination Center (NCC) to build a program that would let private security firms take part in government-authorized cyber operations against overseas transnational criminal organizations. The Departments of Justice and Homeland Security are assigned oversight, and the target set includes ransomware, phishing, sextortion, financial fraud, and impersonation scams. The program would let selected firms carry out cyber surveillance operations and cyber effects operations, meaning they could gather intelligence on those groups or take disruptive action against their systems. That is a marked shift: offensive cross-border cyber work would no longer be limited to the state, so attribution, escalation control, and liability become part of the operating picture for the contractor as well as the government. For firms that might be recruited, the issue is less a single campaign than the permission structure itself. If it goes live, the legal and operational risk of overseas disruption moves into the private sector, while DOJ and DHS inherit a new oversight burden over actions that can have real effects beyond the U.S. border.

Part of the PlainSec briefing for 2026-08-14

Every edition of this story: White House Lets Contractors Join Offensive Cyber Operations

Sources