Skip to content
Search

Latest Stories

Cyber Initiatives Group Fall Summit
cipherbrief

Welcome! Log in to stay connected and make the most of your experience.

Input clean

Wanted: A US Strategy for 'Offense' in Cybersecurity

Experts offer ideas for an approach that moves from 'passivity to proactivity' in response to cyber threats

Pentagon logo is seen ahead of a press conference at the Pentagon in Washington D.C., United States on August 20, 2024. (Photo by Celal Gunes/Anadolu via Getty Images)

BOTTOM LINE UP FRONT — The U.S. is facing an onslaught from adversaries in cyberspace, and while conversations about the response has focused on bolstering cybersecurity defenses, some have argued for an approach more geared to offense. That’s the view of many experts and of some officials in the new Trump administration, including National Security Advisor Mike Waltz, who has said the U.S. should “start going on offense and start imposing… higher costs and consequences” for cyberattacks directed at U.S. targets. 
The U.S. has already taken retaliatory action against bad cyber actors; in one of his final acts as president, Joe Biden issued an executive order on cybersecurity that grants expanded authorities for sanctions against those who launch cyberattacks against U.S. critical infrastructure. Soon after, the Treasury Department sanctioned an alleged hacker and companies in China linked to the recent Salt Typhoon hack of U.S. telecommunications firms. Washington has imposed similar sanctions and financial restrictions on entities linked to other recent China-linked attacks, and the Department of Defense’s most recent Cyber Strategy instructed the department to prepare responses to “destructive cyber attacks.” But many experts believe the U.S. still lacks a clear offensive cyber strategy.

The Cipher Brief asked experts what such a strategy might look like. They offered a range of ideas – from offensive “playbooks” to cyber counterstrikes to an increased role for the private sector – all in the name, as one expert put it, of making “the leap from passivity to proactivity.”

Keep reading...Show less
Access all of The Cipher Brief’s national security-focused expert insight by becoming a Cipher Brief Subscriber+ Member.
Threat Con 2025

Related Articles

Beyond Defense: Building a Strategic U.S.–Japan Cyber Partnership

EXPERT PERSPECTIVE / OPINION — As the U.S.–Japan alliance confronts an era where digital threats increasingly target economic stability and national [...] More

Cutting Cyber Intelligence Undermines National Security

OPINION — America’s cyber intelligence capabilities are being eviscerated while the threats to national security emanating from cyber space are [...] More

The Cybersecurity Law that’s Quietly Keeping America Safe is About to Expire

OPINION / EXPERT PERSPECTIVE — The clock is ticking toward September 30, 2025, when one of America's most vital cybersecurity protections will expire [...] More

How Culture Will Impact the AI Race

OPINION — In recent years, senior U.S. Department of Defense leaders have repeatedly emphasized that the U.S. military’s most important asymmetric [...] More

Expert Q&A: Undersea Cables Under Attack, from Outside and Within

EXPERT Q&A — Reports of damage to undersea cables across the world are on the rise, with suspected foul play in many of these incidents. These cables [...] More

Are Undersea Cables a “Backdoor for Espionage” Against the U.S.?

Are Undersea Cables a “Backdoor for Espionage” Against the U.S.?

CIPHER BRIEF REPORTING — The Federal Communications Commission (FCC) and members of Congress are warning that China may be engaged in underwater [...] More

{{}}