White House Plans Private-Sector Role in Cybercrime Operations
The White House has announced a new initiative that would allow selected American businesses to support federal efforts against transnational cybercrime. The policy, outlined in an August 12 presidential memorandum, directs the government to make greater use of private-sector technical expertise in identifying and disrupting criminal networks operating online.
The program will be managed by President Donald Trump’s National Coordination Center, working with the Justice Department and Department of Homeland Security. Participating companies will undergo federal vetting and enter contracts defining their responsibilities. They may receive information from federal, state, local, tribal, and territorial authorities to locate threats and recommend operational responses.
Potential targets include organizations linked to ransomware, phishing, financial fraud, and sextortion. Although the initiative expands the private sector’s role, companies will not receive unrestricted authority to conduct offensive cyber operations. Proposed actions must receive approval from federal agencies and comply with the Computer Fraud and Abuse Act, which prohibits unauthorized retaliatory hacking. The center has 60 days to establish procedures.
The memorandum builds on a March 6 executive order aimed at strengthening the federal response to cybercrime, fraud, and predatory schemes affecting Americans. It also follows private-sector developments, including Google’s creation of a cybersecurity disruption unit focused on active defense measures.
Supporters of broader private participation have compared the concept to historical “letters of marque,” which authorized private actors to act against enemy vessels on a government’s behalf. Some conservative policymakers have previously suggested adapting that framework to address cybercriminals.
Critics, however, have raised questions about accountability, legal boundaries, diplomatic consequences, and the risk that operations could affect systems or individuals outside their intended targets. The administration’s procedures will therefore determine how companies are selected, what actions are permitted, and how oversight is applied. Implementation details remain pending federal review.