US cracks down on sale of hacking tools to Russia and China

Representational image depecting cybersecurity protection
(Image credit: Shutterstock)

The US Department of Commerce announced today that it will begin exerting more control over the sale of cybersecurity tools and surveillance software to countries that might pose a national security threat.

The Department’s Bureau of Industry and Security (BIS) issued an interim rule with the intention of reigning in the “export, re-export or transfer” of certain items that it believes can be used for malicious cyber activities.

“These items warrant controls because these tools could be used for surveillance, espionage, or other actions that disrupt, deny or degrade the network or devices on it,” argues the BIS in the rule.

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window <<

The SiliconANGLE reports that the department believes such tools can lead to human rights abuses when in the hands of authoritarian governments.

Not stifling research

The new rule will take effect in 90 days, and would cover software such as Pegasus, a spyware developed by the Israeli NSO Group, that was recently exposed as being used by certain governments to keep tabs on activists, and journalists.

With the new rule, any sale of such software and equipment, to countries including China, and Russia, would require a license from the BIS, which will only grant one after thoroughly vetting the end user.

The Commerce department reportedly argues that the rule has been carefully worded so as to not curb US-based cybersecurity researchers from collaborating with their peers around the world.

“The Commerce Department’s interim final rule imposing export controls on certain cybersecurity items is an appropriately tailored approach that protects America’s national security against malicious cyber actors while ensuring legitimate cybersecurity activities,” clarified Secretary of Commerce Gina Raimondo through a statement. 

Via SiliconANGLE

Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
IT
US government says companies are no longer allowed to send bulk data to these nations
US President Donald Trump speaks to the press as he signs an executive order to create a US sovereign wealth fund, in the Oval Office of the White House on February 3, 2025, in Washington, DC.
US set to pause cyber-offensive operations against Russia - but CISA says it won't stop
Microchip on a motherboard with Flag of China and USA. Concept for the battle of global microchips production.
Nvidia says latest US restrictions on China AI chips will ‘stifle competition’
Digital US flag
Biden orders review, new rules governing US national cybersecurity
An American flag flying outside the US Capitol building against a blue sky
The FCC is creating a security council to bolster US defenses against cyberattacks
An American flag flying outside the US Capitol building against a blue sky
White House unveils "US Cyber Trust Mark" to help determine if your devices are secure
Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring