Forgot your password?
typodupeerror
United States IT

Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work (propublica.org) 32

President Donald Trump signed into law this month a measure that prohibits anyone based in China and other adversarial countries from accessing the Pentagon's cloud computing systems. From a report: The ban, which is tucked inside the $900 billion defense policy law, was enacted in response to a ProPublica investigation this year that exposed how Microsoft used China-based engineers to service the Defense Department's computer systems for nearly a decade -- a practice that left some of the country's most sensitive data vulnerable to hacking from its leading cyber adversary.

U.S.-based supervisors, known as "digital escorts," were supposed to serve as a check on these foreign employees, but we found they often lacked the expertise needed to effectively supervise engineers with far more advanced technical skills. In the wake of the reporting, leading members of Congress called on the Defense Department to strengthen its security requirements while blasting Microsoft for what some Republicans called "a national betrayal." Cybersecurity and intelligence experts have told ProPublica that the arrangement posed major risks to national security, given that laws in China grant the country's officials broad authority to collect data.

This discussion has been archived. No new comments can be posted.

Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work

Comments Filter:
  • nice job keep the PHB's in the USA while the real tech people are offshored

  • Wait, what? (Score:5, Insightful)

    by molarmass192 ( 608071 ) on Friday January 02, 2026 @04:29PM (#65897607) Homepage Journal

    "ProPublica investigation this year that exposed how Microsoft used China-based engineers to service the Defense Department's computer systems for nearly a decade"

    MS let foreign employees service DoD systems? I can't even begin to fathom how this is even remotely possible. Is there a CCP mule leading services at MS? If not, there should be a congressional hearing on this, because this level of incompetence is really inexcusable.

    • Re:Wait, what? (Score:4, Insightful)

      by ffkom ( 3519199 ) on Friday January 02, 2026 @05:00PM (#65897663)

      MS let foreign employees service DoD systems?

      Yes, and they will do it again, because it earns them a little more profit, and that is the only thing that counts for corporations of that size. May may hide the outsourcing a little better next time for PR reasons, like adding another layer of "domestic person A being the contractor, but relaying everything to/from N cheaper employees abroad".

    • Re:Wait, what? (Score:5, Insightful)

      by djinn6 ( 1868030 ) on Friday January 02, 2026 @05:08PM (#65897679)

      From ProPublica [propublica.org]:

      The arrangement, which was critical to Microsoft winning the federal government’s cloud computing business a decade ago, relies on U.S. citizens with security clearances to oversee the work and serve as a barrier against espionage and sabotage.

      But these workers, known as “digital escorts,” often lack the technical expertise to police the work of foreign engineers with far more advanced skills, ProPublica found.

      So there was a loophole in the rules. And of course they're doing this to save money, so the Americans they hired weren't highly technical and probably can't identify attempts at subterfuge.

      I mean even if someone very technical was there the perform the supervision, it would still be hard to defend against a persistent attacker.

    • Re: (Score:2, Flamebait)

      The bar really has been lowered for fucking up.

      • Re: Wait, what? (Score:4, Informative)

        by kenh ( 9056 ) on Friday January 02, 2026 @06:58PM (#65897857) Homepage Journal

        Uh, to be clear, the current administration is stopping the practice.

        President Donald Trump signed into law this month a measure that prohibits anyone based in China and other adversarial countries from accessing the Pentagon's cloud computing systems.

        How about foreign nationals living in ANY adversarial country (including China) not be allowed to work on anything related to national defense? If they can't even bother to move to the U.S. let's keep them away from our defense systems? OK?

        • Re: (Score:2, Interesting)

          One small problem with that. Plenty of them would love to move to the US, however a core component of the Trump regime is to end immigration of any kind. Visas are being revoked left and right. Mass deportations. Banning of other visas. Insane border checks (5 years of social media plus personal info on all relatives). The Reich under Stephen Miller is gunning for their all white America.
          • One small problem with that. Plenty of them would love to move to the US, however a core component of the Trump regime is to end immigration of any kind. Visas are being revoked left and right. Mass deportations. Banning of other visas. Insane border checks (5 years of social media plus personal info on all relatives). The Reich under Stephen Miller is gunning for their all white America.

            It has been now for many years that if you are Chinese, there is a really good chance that the Chinese government is compelling you to share information. I mean, it would be a shame if your relatives were to suffer adversity.

            You might find it a plus in your book if secrets were relayed, but I suppose you might feel differently if your country had workers in classified work sending your countries state secrets to China - or perhaps you would like even less of your countries secrets went to the USA - eh?

    • Re:Wait, what? (Score:4, Informative)

      by geekmux ( 1040042 ) on Friday January 02, 2026 @06:22PM (#65897811)

      "ProPublica investigation this year that exposed how Microsoft used China-based engineers to service the Defense Department's computer systems for nearly a decade"

      MS let foreign employees service DoD systems? I can't even begin to fathom how this is even remotely possible. Is there a CCP mule leading services at MS? If not, there should be a congressional hearing on this, because this level of incompetence is really inexcusable.

      NIST 800-53 pre-dates NIST 800-171 pre-dates CMMC. And I'd have to believe that Controlled Unclassified Information (CUI) is the bare minimum standard when talking about "Pentagon" related InfoSec guardrails.

      Microsoft's GC Cloud mandating US citizen based support has been around for years now. I have no idea why the hell the Pentagon of all places would be skimping on these mandates, but I can tell you that skimping is quite rampant among defense contractors. Two years after implementing 800-171, a study found 98% of contractors were still not fully compliant.

    • The good news is there's no actual security risk there.

      The bad news is that the reason there is no security risk is the modern ruling class is a global class and they're all working together to fuck you in the ass. So there isn't any actual risk among major countries because they're all in the same club together.

      You are not in that club. Statistically you probably believe that you are. And even if intellectually you know you're not you probably vote like you are. Again statistically.
    • by gweihir ( 88907 )

      Indeed. Absolutely incredible. Whoever negotiated those contracts belongs in prison for treason. I mean, this is not even about China. You do not allow foreign access to your secret-level government IT infrastructure, period. But I guess MS pays really good bribes.

  • Aren't jobs like these reserved for H-1B Indian contractors?

  • by dskoll ( 99328 ) on Friday January 02, 2026 @04:46PM (#65897641) Homepage

    But Russia's OK.

    • by ffkom ( 3519199 )

      But Russia's OK.

      I know Fortune 500 companies that are outspoken against Russia's war against Ukraine in public, and at the same time hire cheap Russians that reached western countries mere months ago (and they are certainly not "fugitives"). Virtue signaling is cheap, but there is money to save on wages, morals and security be damned.

  • that this was not already the case.

  • Off-topic, but... (Score:5, Insightful)

    by jargonburn ( 1950578 ) on Friday January 02, 2026 @05:04PM (#65897669)
    Shouldn't it really be called a "War Bill", now?
  • So USA only? (Score:5, Insightful)

    by ukoda ( 537183 ) on Friday January 02, 2026 @05:08PM (#65897677) Homepage

    President Donald Trump signed into law this month a measure that prohibits anyone based in China and other adversarial countries from accessing the Pentagon's cloud computing systems.

    So that would be every country on the planet, except the USA and maybe Russia?

  • by JBMcB ( 73720 ) on Friday January 02, 2026 @05:18PM (#65897695)
    Not sure how this is allowed as ITAR covers a lot of this ground already.

    https://en.wikipedia.org/wiki/... [wikipedia.org]
  • China chips so easily. One good drop and the whole thing shatters.
  • by jacks smirking reven ( 909048 ) on Friday January 02, 2026 @07:06PM (#65897869)

    And no matter what aisle you sit on they are worth reading, we complain about the news so much but they are an org that is on the ground breaking stories.

    Also nothing wrong with this legislation and really the next step I'd prefer to see is the DoD develop the skill-set and human capital that it manage these systems themselves and they don't need the services of a Microsoft or an Amazon. Isn't there or shouldn't there be an IT equivalent to Army Corp of Engineers?

  • We're losing the game we created, so we're creating a new league where we can again be the winners.

  • Thats not enough to build one of those Battleships

Nothing succeeds like the appearance of success. -- Christopher Lascl

Working...