{
  "id": 860570,
  "title": "The US will let private security firms hack overseas cybercriminals for the first time",
  "url": "https://urgent.news/2026/08/14/the-us-will-let-private-security-firms-hack-overseas-cybercriminals",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-14T10:19:00.000Z",
  "source": {
    "name": "TechSpot",
    "slug": "techspot",
    "url": "https://www.techspot.com/news/113484-us-private-security-firms-hack-overseas-cybercriminals-first.html"
  },
  "original_language": "en",
  "account": "The United States is set to permit private security firms to engage in offensive cyber operations against overseas cybercriminals for the first time, according to a new White House initiative. Traditionally, US private companies have been restricted to defending their own networks, but this new program will allow approved firms to surveil, disrupt, and even destroy overseas cybercriminal infrastructure while adhering to federal authority. President Donald Trump signed the National Security Presidential Memorandum on Wednesday, marking the first authorization of private companies to conduct offensive cyber operations. The targets of these operations will be foreign cyber-enabled transnational criminal organizations that target US individuals, businesses, or government entities. The White House emphasizes that the program will focus on combating ransomware, phishing, financial fraud, sextortion, and impersonation scams.\n\nThe Homeland Security Task Force's National Coordination Center will oversee the program, with joint executive directors from the Department of Justice and Department of Homeland Security. Companies participating in the program must contract with one of these departments and pass rigorous vetting procedures covering technical expertise, operational experience, facility security, and personnel. Rules for the program are expected to be finalized within 60 days and must accommodate both large corporations and smaller specialized firms.\n\nAuthorized companies will have the authority to conduct covert cyber surveillance, including accessing systems without the owner's consent. They may also engage in more aggressive cyber effects operations, such as manipulating, disrupting, denying, degrading, or destroying systems, networks, infrastructure, and data. However, every operation requires written approval and must remain under federal supervision. Program directors cannot authorize actions that could result in death or serious injury or constitute a use of force or armed attack under international law.\n\nWhile the program aims to protect Americans from foreign-based organized criminal groups exploiting them in cyberspace, there are potential risks involved. Criminals often use compromised systems belonging to innocent parties, which could lead to collateral damage. Determining whether a cybercriminal group is connected to a foreign government can also be challenging, as the memo assumes independence unless clear intelligence proves otherwise. Legal experts warn that staff participating in the program could face prosecution in foreign jurisdictions. There are also concerns about escalation, unintended consequences, and inadequate interagency coordination.",
  "summary": "President Donald Trump signed the National Security Presidential Memorandum on Wednesday. The move marks the first time the federal government has authorized private companies to conduct offensive cyber operations. Read Entire Article",
  "key_points": [
    "US permits private security firms to conduct offensive cyber operations overseas.",
    "Targets foreign cyber-enabled transnational criminal organizations harming US interests.",
    "Program overseen by Homeland Security Task Force with strict vetting requirements."
  ],
  "editors_take": "The US government's decision to authorize private security firms to conduct offensive cyber operations against overseas cybercriminals shifts the traditional defensive role of private companies and may lead to increased risks and unintended consequences.",
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}