19 August 2026

Donald Trump empowers US private companies to conduct cyber-attacks

The Guardian  |  Nick Robins-Early

US President Donald Trump signed a national security presidential memorandum on August 13, 2026, authorizing US private companies to conduct offensive cyber operations against foreign criminal entities under federal direction. The directive targets transnational criminal organizations involved in ransomware, financial fraud, and digital strikes that recently targeted critical infrastructure systems across multiple states, including Minnesota water facilities.

The initiative operationalizes the administration's March 2026 national cybersecurity policy, which seeks to leverage commercial technical capabilities against sophisticated foreign adversaries. Under the new framework, private firms will establish threat information-sharing partnerships with federal, state, local, tribal, territorial, and commercial entities to identify hostile networks and propose targeted countermeasures. The Department of Homeland Security will coordinate implementation to maintain strict state authority over corporate hack-back operations. However, deputizing commercial contractors creates significant legal liability challenges, which previously prompted questions from legal experts regarding international escalation and collateral damage risks.

Comment

Delegating offensive cyber authority to commercial contractors fundamentally alters the operational command structure maintained by US Cyber Command. While state-directed cyber operations rely on unified deconfliction protocols across Title 10 military and Title 50 intelligence authorities, corporate-led offensive actions introduce parallel command pathways. Commercial entities operating under Department of Homeland Security oversight create structural attribution ambiguities during active digital engagements.

This fragmentation complicates real-time battle management during high-intensity network operations. When private contractors execute retaliatory counter-intrusions, the lack of direct integration with the National Cyber Investigative Joint Task Force risks overlapping with ongoing intelligence collection. Operational control becomes fractured when corporate contractors execute strikes outside the synchronised target lists of the Cyber National Mission Force.

Strategic Question for Discussion
Which mechanism is more likely to fail during a rapid escalation cycle — the deconfliction process between commercial contractors and the Cyber National Mission Force, or the legal oversight boundaries separating DHS and Title 50 intelligence operations?
Share your assessment in the comments below.

No comments: