The Trump administration has issued an executive order banning the acquisition of foreign-made technology used to manage electricity and power, citing cybersecurity risks. The White House stated that “certain foreign actors are increasingly creating and exploiting vulnerabilities” in bulk-power systems, which are essential for the nation’s critical infrastructure. This order highlights concerns that such equipment may contain digital backdoors, allowing foreign governments to access systems remotely or disrupt supply chains.
President Donald Trump emphasized the potential threats posed to the bulk-power system, noting that successful cyberattacks could significantly impact the economy, human health, safety, and national defense. The order comes in response to a series of cyberattacks targeting critical infrastructure, including recent incidents affecting water utilities in at least 12 states, where malicious activity was observed on over 100 internet-exposed systems.
Concerns Over Cybersecurity Threats
In the UK, hackers reportedly shut down a small power plant for four days, raising alarms about the vulnerability of energy systems worldwide. The National Security Agency and FBI have issued advisories regarding an artificial intelligence-powered “active threat” to operational technology used across various sectors, including energy and agriculture. While no specific countries were blamed for these incidents, experts have pointed to Iranian hackers as potential culprits, alongside previous attributions to Russian and Chinese hackers.
The executive order specifically targets technology managing energy transmission lines rated at 69,000 volts or higher, including substations and control rooms. It also encompasses associated software and firmware that could be remotely accessed by foreign entities. The order categorizes foreign-made bulk-power system equipment as an “unusual and extraordinary threat,” prohibiting its acquisition or installation in the U.S.
Implementation and Future Steps
The Defense, Commerce, and Energy Departments will oversee transactions involving this equipment, with federal agencies empowered to impose conditions on previously purchased items. A list of pre-qualified equipment and vendors will be published, and officials have 120 days to establish regulations and identify countries that require closer scrutiny. Agencies must also report on currently used equipment deemed at risk and outline plans for monitoring or replacing these items.
Cybersecurity experts have warned that government-backed hackers are increasingly using artificial intelligence to enhance their attacks on critical infrastructure. Following the executive order, major tech companies, including OpenAI and Google, cautioned that there is a “limited window to strengthen cyber defenses” before AI-enabled cyberattacks become more sophisticated and widespread. They stressed the need for coordinated cyber defense efforts at all levels of government and the sharing of actionable threat intelligence.
For further details, refer to the full report by The Record.
Follow Cyber Warriors Middle East for further global cybersecurity developments.



