Signed on August 14, 2026, a new White House memorandum directs the National Coordination Center to establish a program allowing vetted U.S. private sector companies to hack foreign Transnational Criminal Organizations. The initiative aims to counter cybercrime and protect American citizens by executing surveillance and disruptive cyber operations against predatory foreign networks.
The policy marks a shift in how the United States approaches offensive cybersecurity operations. By partnering with private corporations to execute digital maneuvers, the administration is blurring the boundary between state-sponsored intelligence agencies and private enterprise. It is a play to combat digital fraud, but it lands in a regulatory minefield.
Inside the 60-Day Mandate for Private Cyber Offensives
According to reporting by Ravie Lakshmanan at The Hacker News, the newly signed White House memo instructs the National Coordination Center to stand up a formal program within 60 days. This framework permits authorized U.S. firms to carry out two distinct categories of operations targeting foreign Transnational Criminal Organizations, or TCOs. The first category covers cyber surveillance operations capable of accessing sensitive data without authorization from the owner or operator. The second involves cyber effects operations designed to disrupt, denial, degradation, or destruction of information systems, networks, or infrastructure.

The directive applies to foreign groups executing cyber-enabled crimes against the U.S. government, a U.S. person, or U.S. interests. Unless proof exists to demonstrate such a link, designated targets are barred from being an official component of a foreign government or operating entirely under foreign state oversight. To keep participating contractors in check, the program mandates strict minimization procedures. Should a company direct its actions at a U.S. citizen, domestic infrastructure, or any network managed by a U.S. individual, all activities must stop immediately while the National Coordination Center is alerted so it can inform the Department of Justice.
The Scale of Transnational Cybercrime
This policy pivot arrives on the heels of federal estimates highlighting the financial toll of foreign criminal syndicates. An accompanying White House fact sheet reveals that American consumers reported an estimated $20.8 billion in losses to cyber-enabled crimes. These syndicates rely heavily on ransomware deployment, malware, phishing, financial fraud, sextortion, pig butchering scams, and impersonation. By partnering with vetted U.S. companies, the administration hopes to counter TCO threats.

Yet, legal hurdles remain. Existing U.S. laws prohibit private companies from conducting cyber attacks or disruption operations without court authorization. Pointing out potential pitfalls, Paul Rosenzweig observed that several cybersecurity professionals feel the directive steers America’s cyber defenses in an improper direction.
Parallel Shifts in Global Cyber and AI Regulation
The push to unleash private hacking capabilities coincides with a broader global reevaluation of offensive cyber policy. In Germany, the government approved a draft legislation that grants its foreign and domestic intelligence agencies powers to dismantle hostile servers, disrupt foreign cyber networks, hack back against state-sponsored hackers, and sabotage adversaries’ supply chains.
Simultaneously, domestic regulatory intersections are tightening. President Donald Trump signed an executive order requiring leading artificial intelligence companies to voluntarily submit flagship models for government cybersecurity testing before public deployment. Prompted by advanced models capable of surfacing decades-old vulnerabilities, this parallel effort underscores how advanced software engineering and offensive cyber capabilities are increasingly viewed as strategic capabilities. Sabeen Malik, VP of Global Government Affairs and Public Policy at Rapid7, noted that both administrations are converging on the reality that frontier technology functions as a strategic capability comparable to advanced cyber tools, semiconductors, or dual-use military technologies.
As the 60-day countdown for the National Coordination Center ticks down, the intersection of private enterprise and state-sanctioned offensive hacking will test the limits of international law. Whether commercial firms can execute targeted disruptions without triggering collateral damage remains a central AI policy fault line for the rest of this decade.