US lawmakers and expert witnesses used a House Homeland Security hearing to debate whether the United States should expand offensive cyber operations in response to China-linked intrusions into US critical infrastructure and telecom networks, including reported access to “lawful intercept” systems used for court-authorized surveillance. Witnesses argued for embedding offensive cyber thinking across government and integrating cyber more deeply into military doctrine, while also pointing to an emerging national cyber strategy expected to include an offensive-operations pillar and greater public-private collaboration.
Several participants cautioned that expanding cyber offense without strengthening domestic resilience could increase escalation risk and leave US networks exposed, citing concerns such as CISA’s reported loss of roughly one-third of its workforce and the need to fund defensive modernization of federal systems. Separately published commentary about “gray zone” cyber disruption tied to Venezuela reflects the broader policy narrative around cyber-enabled coercion, but it does not add substantiated technical details about the hearing’s core issue or the China-linked intrusions driving the push for a more aggressive posture.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Experts at the hearing discussed a larger private-sector role in supporting government offensive cyber operations, while warning against direct private-sector 'hack back' because of liability, escalation, and collateral-damage risks. A hybrid model in which companies support government-led operations received the broadest support, alongside calls for clearer legal protections and policy frameworks.
During the hearing, Rep. Bennie Thompson said CISA had lost roughly one-third of its workforce over the prior year and argued the U.S. should not expand offensive cyber operations before improving federal cyber defenses. Witnesses also stressed that CISA needs sufficient funding, staffing, and authority to coordinate public-private cyber efforts.
A House Homeland Security cybersecurity subcommittee convened a hearing on how the United States should deter foreign cyberattacks, including whether offensive cyber operations should play a larger role. Lawmakers and expert witnesses debated deterrence, retaliation risks, and the need to balance offensive capabilities with stronger domestic defenses.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcenextgov.com
Open sourcecyberscoop.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.