White House bans foreign-made equipment for power generation over cyber backdoor concerns
The Trump administration on Wednesday issued an executive order banning the acquisition of foreign-made technology used to manage electricity and power.
The White House said the decision was made because “certain foreign actors are increasingly creating and exploiting vulnerabilities” in the technology — known as bulk-power systems.
The order warns that the equipment powering critical infrastructure may have digital backdoors allowing foreign governments to access equipment remotely or cause supply-chain disruptions.
“During my first term, I found that the bulk-power system could be a target of those seeking to commit malicious acts against the United States, including malicious cyber activities, because of the significant risks that a successful attack would have on our economy, human health and safety, and national defense,” President Donald Trump said.
The order follows a string of concerning cyberattacks on critical infrastructure.
Water utilities in at least 12 states experienced cyberattacks last month and on Wednesday, the federal cyber defense agency said it "observed malicious cyber activity targeting over 100 internet-exposed systems” in the water and wastewater sector.
In the United Kingdom, hackers reportedly shut down a small British power plant for four days. The National Security Agency and FBI recently published an advisory about an artificial intelligence-powered “active threat” to a specific brand of operational technology used by the energy, water and agricultural industries.
While no countries were officially blamed for the incidents, several experts have pointed the finger at Iranian hackers. In addition to Iran, U.S. officials have previously attributed past attacks on critical infrastructure to Russian and Chinese hackers.
The FBI disrupted a Chinese botnet on Wednesday they said was used to breach the Federal Reserve, NASA and other federal agencies managing critical infrastructure.
‘An unusual and extraordinary threat’
Wednesday’s order focuses on the technology that manages energy transmission lines rated at 69,000 volts or higher, as well as substations, control rooms, power generating stations, reactors and more.
It also covers associated software and firmware that could be remotely accessed or updated by foreign governments.
The order calls foreign-made bulk-power system electric equipment an “unusual and extraordinary threat” and bans the acquisition or installation of the tools in the U.S.
The Defense, Commerce and Energy Departments are tasked with checking transactions involving bulk-power system electric equipment.
Federal agencies can also impose conditions on previously purchased equipment but must consider whether replacements are available.
A list will be created and published outlining pre-qualified equipment and vendors. Senior officials have 120 days to create rules and regulations around the issue and determine which countries “warrant particular scrutiny under the provisions of this order.”
Agencies will also need to identify currently used bulk-power system electric equipment that is considered at risk and submit a plan to the White House about how they plan to “identify, inventory, isolate, monitor, or replace such items as soon as practicable.”
The White House did not respond to requests for comment about what precipitated the executive order.
Cybersecurity experts and government agencies have repeatedly warned that government-backed hackers are deploying artificial intelligence in attacks on critical infrastructure — simplifying potentially devastating attacks.
After the executive order was published, OpenAI, Google and dozens of other tech and finance giants issued a warning that there is a “limited window to strengthen cyber defenses” before AI-enabled cyberattacks “will become far more widespread and sophisticated as models around the world become increasingly capable.”
“The companies and public services our communities depend on — from hospitals to water treatment plants to the infrastructure that powers the internet — are at risk,” OpenAI said, warning that security teams for critical infrastructure have been “historically under-resourced.”
The company said governments need to coordinate cyber defense at local, national, and international levels while also sharing actionable threat intelligence.
Jonathan Greig
is a Breaking News Reporter at Recorded Future News. Jonathan has worked across the globe as a journalist since 2014. Before moving back to New York City, he worked for news outlets in South Africa, Jordan and Cambodia. He previously covered cybersecurity at ZDNet and TechRepublic.



