National Cyber Director Sean Cairncross emphasized the urgent need for the United States to counter China's efforts to export surveillance technologies and promote a global "clean American tech stack." Speaking at the 2025 Meridian Summit, Cairncross highlighted concerns over Chinese cyber operations targeting critical US infrastructure and called for stronger messaging and engagement with international partners to deter such activities. He argued that the US has not sufficiently signaled to China that its cyber behavior is unacceptable and poses strategic risks to American interests.
Simultaneously, analysis of international technical standards reveals that China has been actively shaping the protocols governing critical infrastructure worldwide by dominating standards bodies and committees. Chinese engineers and ministries have increased their influence in setting specifications for technologies such as 6G wireless, industrial automation, and port operations, giving Beijing significant leverage over global systems. This influence, combined with evidence of Chinese cyber campaigns targeting US infrastructure, underscores the strategic challenge posed by China's dual approach of technical standard-setting and cyber operations.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
In its annual implementation report released around the same time, CSC 2.0 said the Office of the National Cyber Director does not have enough authority to carry out its mission as originally intended. The report's authors and allies called for strengthening the office.
Speaking at the 2025 Meridian Summit in Washington, D.C., U.S. National Cyber Director Sean Cairncross said the United States should counter China's global surveillance push by promoting a 'clean American tech stack' to partners. He also said the administration's forthcoming national cybersecurity strategy would be shorter and less prescriptive, and emphasized strengthening ONCD's role.
The Cybersecurity Information Sharing Act of 2015 expired in early October 2025, ending its existing legal protections for cyber threat-data sharing. Sean Cairncross later urged Congress to renew it for 10 years.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.