Obama signs Executive Order authorizing targeted sanctions over cyberattacks
A New Tool Against Cyber Threats — It's one of the great paradoxes of our Information Age—the very technologies that empower us to do great good can also be used by adversaries to inflict great harm.
Context & Ripple Effects
Six weeks after urging companies to share threat data with each other and the government via an executive order on information sharing, Obama is adding the punitive half of the toolkit: targeted sanctions against those behind cyberattacks. The pairing matters because shared intelligence is only useful if it feeds consequences, and until now the US had no standing financial weapon aimed at individual hackers and their sponsors.
The order also fills a gap left by Congress, which has not passed comprehensive cyber legislation despite the administration's funding requests — including a proposed 35% increase in cybersecurity spending and the $19B Cybersecurity National Action Plan announced later in Obama's term.
First-order effects
- Foreign individuals and entities behind significant cyberattacks become subject to asset freezes and entry bans, giving Treasury and State a direct lever against named hackers rather than relying on indictments alone.
- US companies hit by major intrusions gain a formal escalation path: their incident reports can now trigger financial penalties abroad, not just attribution statements.
Second-order effects
- The sanctions pipeline depends on the private-sector intelligence flow created by February's info-sharing order, pulling companies deeper into a government enforcement apparatus they previously only fed passively.
- State-linked hacking groups now face personal financial exposure, raising the cost calculus for adversaries like Russia — a dynamic that culminates years later when the US pairs new sanctions with planned network operations in retaliation for the SolarWinds breach.
Third-order effects
- Executive orders are becoming the primary way presidents assemble cyber policy absent legislation: this sanctions tool, the later Cyber Incident Severity Schema, the removal of PPD-20's limits on offensive cyberweapons, and Trump's 2026 cybercrime EO each extend the same playbook across administrations of both parties.
- If every administration keeps layering authorities by fiat, the presidency itself becomes the control plane for American cyber posture — with each new order able to expand or constrain what the next inherits.
The trend: Presidents are building a standing, cross-party cyber toolkit through executive orders — sanctions, severity codification, and offensive doctrine — as Congress cedes the field.