The Donald Trump administration has introduced a new policy that could significantly expand the role of private technology companies in the United States fight against international cybercrime. Under a national security presidential memorandum signed on August 13, 2026, selected private companies may conduct limited offensive cyber operations against foreign criminal organisations, provided the activities are carried out under government supervision.
The new framework is aimed primarily at transnational criminal organisations that use digital infrastructure to conduct cybercrime, fraud and other illegal activities against people and businesses in the United States. The administration has argued that private technology companies possess specialised technical capabilities that could help government agencies respond more effectively to increasingly sophisticated cyber threats.
Under the policy, participating companies will not receive unrestricted authority to conduct cyber operations independently. Instead, their activities will require government direction and oversight. The Department of Justice and the Department of Homeland Security are expected to play important roles in supervising the operations.
The authorised activities could include cyber surveillance and operations designed to disrupt, degrade or disable digital infrastructure used by foreign criminal groups. The policy therefore goes beyond conventional cybersecurity measures, where private companies generally focus on protecting their own networks and responding to attacks.
The administration's decision comes amid growing concerns over cyber enabled fraud and other crimes carried out by international criminal networks. US authorities have increasingly worked with technology and cybersecurity companies to identify malicious infrastructure, disrupt online criminal operations and protect victims.
Earlier this year, the US Department of Justice announced a joint effort involving government agencies and private industry to disrupt cyber enabled fraud and cryptocurrency related criminal activity. During that operation, private companies voluntarily disrupted millions of accounts associated with transnational criminal actors and helped freeze cryptocurrency linked to alleged money laundering activities.
The latest memorandum represents a further step in this public private cooperation by creating a framework for more direct cyber operations. Companies selected to participate will need to meet government requirements concerning technical capabilities and security standards. Reports also indicate that participating firms must maintain a financial bond of at least one million dollars as part of the accountability framework.
The policy has also raised questions among cybersecurity experts and legal specialists. One major concern is attribution. Cybercriminal groups frequently operate through compromised servers and infrastructure belonging to innocent organisations or individuals. An operation aimed at criminal infrastructure could therefore unintentionally affect systems that are not connected to the criminal activity.
Another concern involves the possibility of escalation. Foreign criminal networks can sometimes have links to individuals or organisations operating with the knowledge or support of foreign governments. Determining whether a cyber target is purely criminal or connected to a state actor can be difficult. Any mistaken identification could create diplomatic or international security complications.
The policy also raises questions about the legal status and responsibilities of private employees participating in government authorised cyber operations. Unlike military personnel and government officials, private sector employees may face different legal and security circumstances when conducting operations against systems located overseas.
The Trump administration has nevertheless presented the initiative as an effort to use the capabilities of the private sector more effectively against cybercrime. Officials argue that criminal networks are increasingly sophisticated and that government agencies can benefit from the expertise, technology and resources available within the private cybersecurity industry.
The move marks a notable change in the traditional division between government led cyber operations and private sector cybersecurity. While private companies have long assisted governments by sharing threat intelligence and protecting critical infrastructure, the new framework could allow selected companies to take a more direct role in disrupting foreign cybercriminal infrastructure.
The implementation of the policy will likely receive close attention from cybersecurity experts, lawmakers and international governments. Its effectiveness will depend on the safeguards established by federal agencies, the accuracy of intelligence used to identify targets and the ability of authorities to prevent unintended consequences.
For now, the initiative represents a significant shift in US cybersecurity policy, giving vetted private firms a potentially larger role in government authorised offensive cyber operations against foreign criminal networks while maintaining federal oversight.

