news.mlab.sh
Back to the feed
threat-intel

FBI puts its cyber strategy on paper

Medium
Summary

The FBI has released its first public cybersecurity strategy, outlining a shift towards a more proactive and continuous approach to combating cybercrime and nation-state hacking. The strategy focuses on four key pillars: imposing costs on adversaries, providing victim support, collaborating with industry, and bolstering the FBI’s own digital capabilities. This represents a move away from infrequent, large-scale operations and towards a sustained effort to disrupt cyber threats.

The FBI has released its inaugural public cybersecurity strategy, a significant step towards a more proactive and continuous approach to addressing the growing threat landscape. This strategy details how the bureau intends to combat malicious actors and digital criminal gangs, moving away from previous methods of operation that relied on infrequent, large-scale operations. The document is intended to guide the FBI’s teams, field offices, and global presence in countering cyber threats.

Previously, similar strategies existed but were either classified or handled by specific threat units. This 17-page strategy, devoid of classified annexes, follows the FBI’s recent efforts, including 50 ‘sequenced operations’ since the start of 2025, such as efforts to remove Russian military intelligence from vulnerable U.S. home routers and a collaboration with Microsoft to dismantle the Lumma malware infrastructure.

The strategy is built around four key pillars: first, imposing costs on adversaries through legal action and financial sanctions; second, providing support and assistance to victims of cybercrime; third, fostering collaboration with industry partners; and fourth, strengthening the FBI’s own digital capabilities. The FBI will use standard law enforcement metrics – arrests, recovered funds, and victim engagement – to measure success.

According to Assistant Director Brett Leatherman, the strategy aims to shift the FBI’s approach, moving away from waiting for ideal opportunities and towards a more consistent and urgent engagement with cyber threats. He highlighted recent trends, including a decrease in ransomware payments and observed behavioral changes by companies supporting nation-state hacking regimes.

Leatherman emphasized that the FBI acknowledges the ongoing and substantial cyber threat to the United States, but believes this strategy will contribute to a positive change in behavior and a reduction in digital threats over the next six to twelve months.

Read the full article at The Record