President Donald Trump has signed a National Security Presidential Memorandum (NSPM) directing federal agencies to expand efforts to use cyber capabilities against transnational criminal organizations (TCOs) that operate outside the United States and target Americans.
The White House said the memorandum is intended to strengthen federal law enforcement efforts to disrupt foreign-based criminal networks involved in cyber-enabled crimes, including ransomware, phishing campaigns, financial fraud, sextortion schemes, and impersonation scams.
Under the NSPM, the Homeland Security Task Force’s National Coordination Center (NCC) will establish a program focused on conducting specific cyber operations against foreign TCOs. The program will be led by two executive directors from the Department of Justice and the Department of Homeland Security.
The memorandum directs the NCC to work with vetted private-sector companies to support these efforts by leveraging industry expertise and technology capabilities. Participating companies may enter into agreements with other private entities and federal, state, local, tribal, and territorial agencies to share threat information and propose cyber operations addressing identified threats.
The White House said the program will operate under U.S. government direction, control, and authority, with procedures developed by the program’s executive directors and the Homeland Security Council to ensure operations comply with the Constitution, U.S. laws, and applicable international agreements.
The announcement highlights the growing impact of cyber-enabled crime targeting individuals, businesses, and communities. According to the White House fact sheet, Americans reported more than $20.8 billion in losses from cyber-enabled crime in 2025. The fact sheet also noted that online scams and attacks disproportionately affect vulnerable populations, including seniors, children, and low-income families.
The administration pointed to several recent cyber and online safety actions, including a June 2025 executive order focused on strengthening cybersecurity protections against foreign cyber threats, a September 2025 notice to help financial institutions identify and disrupt financially motivated sextortion, and a March 2026 executive order addressing cybercrime, fraud, and predatory schemes targeting Americans.
The memorandum also follows the administration’s previous efforts related to online exploitation and national cybersecurity, including the signing of the TAKE IT DOWN Act in May 2025 and a June 2026 NSPM focused on cybersecurity protections for the nation’s National Security Systems.
The White House said the new framework is intended to improve coordination between government and private-sector partners and provide additional tools to counter foreign-based criminal organizations using digital methods to target Americans.


