The US government has reversed decades of cybersecurity policy by allowing private companies to conduct offensive cyber operations. The new order permits 'hack back' attacks previously prohibited under federal law.
The shift marks a significant departure from existing restrictions that have long prevented private sector involvement in offensive cybersecurity activities. Under the new framework, authorized firms can now engage in defensive counterattacks against hackers targeting their systems.
The policy change aims to strengthen US cybersecurity by leveraging private sector capabilities and speed. Companies operating under the new rules will gain authority to identify and respond to threats more directly, rather than relying solely on government intervention.
Details regarding oversight mechanisms, liability protections, and authorization criteria remain part of the implementation process. The order applies to select private firms meeting unspecified security and operational standards.
Cybersecurity experts have raised both opportunities and concerns about the shift, noting potential risks including escalation and unintended consequences alongside benefits of faster threat response.
Flock's CEO acknowledged the company failed to prevent law enforcement misuse of its tracking data and announced new policy changes to address the problem.
Meta is rolling out Scam Alert, an optional feature that uses on-device machine learning to detect suspicious messages on WhatsApp. The tool joins existing scam detection for device linking requests.
Flock Safety is implementing new privacy guardrails for its automated license plate reader technology following backlash over misuse concerns and mass surveillance allegations.