English News / 英文新聞閱讀
科技 · Technology · · 642 words · B1-B2

US Government to Allow Private Companies to Conduct Cyberattacks

New policy aims to fight foreign criminal groups using private sector expertise

🕒 生成時間: (台北時間)

⚠️ 本文由 AI 綜合多家報導生成,事實請以原始來源為準。

Summary · 摘要

The Trump administration has announced a new program allowing private security firms to carry out cyberattacks against overseas criminal groups. These companies will work under the supervision of the Departments of Justice and Homeland Security. The initiative targets groups involved in ransomware, fraud, and other cybercrimes. However, experts warn that the plan carries significant legal and safety risks. Critics also worry that these operations could accidentally harm innocent people or create international tension.

川普政府宣布了一項新計畫,允許私人安全公司對海外犯罪集團發動網路攻擊。這些公司將在司法部與國土安全部的監督下運作。該計畫旨在針對涉及勒索軟體、詐騙及其他網路犯罪的團體。然而,專家警告此計畫伴隨著重大的法律與安全風險。批評者也擔心,這些行動可能會誤傷無辜民眾或引發國際緊張局勢。

閱讀模式 ·

The United States government is preparing to change how it fights international cybercrime. According to Ars Technica, the Trump administration has launched a new program that will allow private security firms to conduct cyberattacks against criminal groups based in other countries. This is a major shift in policy, as the government has previously kept these types of offensive operations under its own control.

Under the new rules, private companies will be authorized to perform "Cyber Surveillance Operations" and "Cyber Effects Operations." These terms mean that firms can watch criminal networks and launch attacks to stop them. As reported by The Verge, these private companies will work under the strict control and oversight of the Department of Justice and the Department of Homeland Security. To participate, companies must prove they have high technical skills and must hold a bond of at least $1 million, which they will lose if they break their agreement with the government.

The goal of this program is to use the skills of the private sector to stop crimes like ransomware, phishing, and financial fraud. A fact sheet released with the presidential memo explains that these private businesses are currently "underutilized" forces in the fight against digital criminals. The government believes that by using the innovative capabilities of private firms, the United States can more effectively combat groups that target American citizens and organizations.

However, the plan has raised many concerns among experts. One of the biggest challenges is identifying who is actually behind a cyberattack. Ben Bernstein, a manager at the cybersecurity firm Huntress, noted that criminals rarely launch attacks from their own servers. Instead, they often route their traffic through innocent networks, such as those at hospitals or small businesses. Bernstein warned that it is nearly impossible to "strike back" at these criminals without accidentally causing damage to innocent people or their systems.

There are also significant legal and geopolitical risks for the companies involved. Jason Healey, a researcher at Columbia University, told Cybersecurity Dive that anyone taking part in these operations faces a high personal legal risk. Furthermore, Jake Williams from the company Hunter Strategy mentioned that Americans who participate in these operations could be seen as "non-uniformed combatants" if they travel to other countries. This could put their personal safety at risk if they are captured or identified while abroad.

Another difficulty is the complex nature of international relationships. As pointed out by Cybersecurity Dive, it is often very hard to tell if a criminal group is acting alone or if they have ties to a foreign government. If a private firm accidentally attacks a group that is actually supported by a foreign state, it could lead to serious diplomatic or legal conflicts. The government has stated that the program will only target groups that are not part of a foreign government, but critics argue that this distinction is often unclear in the real world.

Until now, the US government has prohibited private companies from taking offensive actions against hackers without specific approval from a court. This new program marks the first time the government has officially authorized private businesses to conduct these kinds of attacks as part of a national strategy. While the administration sees this as a necessary step to protect American interests, the practical details of how these operations will be managed remain unclear. As the program begins, both the government and the private sector will need to find ways to manage these risks while attempting to reduce the growing number of cyberattacks against the United States.

選擇題練習 · Quiz

4

  1. 細節 Detail

    1.What requirement must private companies meet to participate in the government's new cyber program?

  2. 推論 Inference

    2.Why might a private firm accidentally cause diplomatic tension under this new program?

  3. 單字情境 Vocabulary

    3.In the third paragraph, what does the word 'underutilized' mean in the context of the private sector's role?

  4. 主旨 Main Idea

    4.What is the primary focus of the article regarding the US government's new cyber policy?

請回答全部 4 題後再提交

易誤解詞彙 · Words to watch

這些字字面意思和文中用法不同,或是不常見的詞性/片語。

bond noun
A sum of money paid as a guarantee that someone will fulfill a legal obligation.
保證金、擔保金。
💡 常見作「連結、關係」,這裡指法律上的擔保金。文中:must hold a bond of at least $1 million, which they will lose if they break their agreement with the government.
strike back phrasal verb
To attack someone in response to an attack they have made against you.
反擊、回擊。
💡 由動詞 strike 與副詞 back 組成,字面意思容易理解,但在資安語境下特指對駭客進行報復性攻擊。文中:Bernstein warned that it is nearly impossible to "strike back" at these criminals without accidentally causing damage to innocent people or their systems.
ties noun (plural)
Connections or relationships between people or groups.
關係、聯繫。
💡 常見作動詞(綁),這裡作名詞指涉與政府的關聯。文中:it is often very hard to tell if a criminal group is acting alone or if they have ties to a foreign government.

原始來源 · Sources

本文內容由 AI 從以下來源綜合改寫。事實請以原始來源為準。

Generated by: gemini/gemini-3.1-flash-lite