Microsoft President Brad Smith calls on Donald Trump to “push harder” against cyberattacks from Russia, China, and Iran amid a wave of state-sponsored hacks
Big Tech group's president calls on new US administration to take tougher approach on state-sponsored cyber attacks
Context & Ripple Effects
Smith's appeal extends a long-running Microsoft position that governments need clearer rules and consequences for state-backed cyber activity. His earlier call for a Digital Geneva Convention framed the issue as an international norm-setting problem, while Microsoft's criticism of government vulnerability stockpiling focused on the risks created by state cyber practices.
The intervention also places Microsoft more visibly in the incoming administration's security-policy debate. That matters because Smith has repeatedly used the company's policy platform to press governments to take a more active role in technology governance.
First-order effects
- Microsoft publicly aligns itself with a tougher US response to cyber activity attributed to Russia, China, and Iran, raising the political salience of those threats for the new administration.
- Smith's statement makes cyber deterrence—not only corporate defense—a stated policy priority for one of the largest enterprise-technology suppliers.
Second-order effects
- Other major technology providers may face greater pressure to state whether they support stronger government action and to coordinate more closely with public-sector cyber policy.
- A tougher posture could sharpen friction around cross-border technology relationships, especially for companies operating across US and Chinese markets.
Third-order effects
- The episode reinforces a shift in which large technology companies act as security-policy participants, not merely operators responding to government rules.
- If such appeals translate into policy, the enduring question will be whether deterrence, international norms, and private-sector disclosure can be aligned without turning technology firms into proxies for state conflict.
The trend: State-backed cyber risk is pushing major technology companies to seek a larger role in shaping national-security policy and international cyber norms.