Skip to content
Search

Latest Stories

Follow Us:
Top Stories

Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work

The measure, which emerged in response to a ProPublica investigation, bars Microsoft engineers in China and other adversarial countries from servicing sensitive Pentagon cloud computing systems.

News

Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work

President Donald Trump with Secretary of State Marco Rubio, left, and Secretary of Defense Pete Hegseth

Tasos Katopodis/Getty Images

President Donald Trump signed into law this month a measure that prohibits anyone based in China and other adversarial countries from accessing the Pentagon’s cloud computing systems.

The ban, which is tucked inside the $900 billion defense policy law, was enacted in response to a ProPublica investigation this year that exposed how Microsoft used China-based engineers to service the Defense Department’s computer systems for nearly a decade — a practice that left some of the country’s most sensitive data vulnerable to hacking from its leading cyber adversary.


U.S.-based supervisors, known as “digital escorts,” were supposed to serve as a check on these foreign employees, but we found they often lacked the expertise needed to effectively supervise engineers with far more advanced technical skills.

In the wake of the reporting, leading members of Congress called on the Defense Department to strengthen its security requirements while blasting Microsoft for what some Republicans called “a national betrayal.” Cybersecurity and intelligence experts have told ProPublica that the arrangement posed major risks to national security, given that laws in China grant the country’s officials broad authority to collect data.

Microsoft pledged in July to stop using China-based engineers to service Pentagon cloud systems after Defense Secretary Pete Hegseth publicly condemned the practice. “Foreign engineers — from any country, including of course China — should NEVER be allowed to maintain or access DoD systems,” Hegseth wrote on X.

In September, the Pentagon updated its cybersecurity requirements for tech contractors, banning IT vendors from using China-based personnel to work on Defense Department computer systems. The new law effectively codifies that change, requiring Hegseth to prohibit individuals from China, Russia, Iran and North Korea from having direct or indirect access to Defense Department cloud computing systems.

Microsoft declined to comment on the new law. Following the earlier changes, a spokesperson said the company would “work with our national security partners to evaluate and adjust our security protocols in light of the new directives.”

Rep. Elise Stefanik, a Republican who serves on the House Armed Service Committee, celebrated the development, saying it “closes contractor loopholes … following the discovery that companies like Microsoft exploited” them. Sen. Tom Cotton, the GOP chair of the Senate Select Committee on Intelligence who has been critical of the tech giant, also heralded the legislation, saying it “includes much-needed efforts to protect our nation’s critical infrastructure, which is threatened by Communist China and other foreign adversaries.”

The legislation also bolsters congressional oversight of the Pentagon’s cybersecurity practices, mandating that the secretary brief the congressional defense committees on the changes no later than June 1, 2026. After that, such briefings will take place annually for the next three years, including updates on the “effectiveness of controls, security incidents, and recommendations for legislative or administrative action.”

As ProPublica reported, Microsoft initially developed the digital escort program as a work-around to a Defense Department requirement that people handling sensitive data be U.S. citizens or permanent residents.

The company has maintained that it disclosed the program to the Pentagon and that escorts were provided “specific training on protecting sensitive data” and preventing harm. But top Pentagon officials have said they were unaware of Microsoft’s program until ProPublica’s reporting.

A copy of the security plan that the company submitted to the Defense Department in 2025 showed Microsoft left out key details of the escort program, making no reference to its China-based operations or foreign engineers at all.

This summer, Hegseth announced that the department had opened an investigation into whether any of Microsoft’s China-based engineers had compromised national security. He also ordered a new third-party audit of the company’s digital-escort program. The Pentagon did not respond to a request for comment on the status of those inquiries.


Trump Signs Defense Bill Prohibiting China-Based Engineers in Pentagon IT Work was originally published by ProPublica and is republished with permission.


Read More

Keeping Kids Safe Online?: Understanding the Debate Over AI Age Verification
boy in gray shirt using black laptop computer
Photo by Thomas Park on Unsplash

Keeping Kids Safe Online?: Understanding the Debate Over AI Age Verification

This nonpartisan policy brief, written by an ACE fellow, is republished by The Fulcrum as part of our partnership with the Alliance for Civic Engagement and our NextGen initiative — elevating student voices, strengthening civic education, and helping readers better understand democracy and public policy.

Key Takeaways

Keep ReadingShow less
Global leaders sitting around a circular table at the G7 Summit on June 18, 2026.

G7 leaders, G7 outreach partners and global tech CEOs attend a working lunch on innovation and AI at the G7 Summit on June 17, 2026 in Evian-les-Bains, France.

Anna Moneymaker / Getty Images

At G7 Meeting, AI Titans Showed Themselves to Be the World’s New “Power Elite”

Seventy years ago, in 1956, the sociologist C. Wright Mills published a startling exposé of the hidden forces controlling the government in the United States. What Mills labeled “the power elite” occupied leading roles in corporations, the military, and political institutions.

Mills’ book was designed to explore the shadowy world in which the power elite operated and to expose the enormous behind-the-scenes influence of a group whose decisions had great consequences for “the underlying populations of the world.” At the time it appeared, commentators credited Mills with “developing a theory of where the decisive power lies in American society, how it got there, and how it is exercised.”

Keep ReadingShow less
The U.S. Pentagon.

Buried in the 2027 NDAA, Section 224 could fundamentally reshape U.S.-Israel defense ties. Is Congress creating an irreversible military partnership?

Getty Images, Westend61

America Should Stay Single

As we wait to see what comes of ceasefire negotiations between the United States and Iran, the House just released its 2027 National Defense Authorization Act (NDAA). Buried within it lies Section 224, titled the “United States-Israel Defense Technology Cooperation Initiative,” a provision representing what would be a radical departure from how we work with even our strongest allies, turning America’s relationship with a close collaborator into a permanent military-industrial integration. The U.S. has worked with NATO partners on co-production and shared supply chains in the past, but never like this. Many are calling it a merger. We should all be calling it off.

Section 224 could inextricably link the fate of our country’s defense to another’s. The Secretary of Defense would be directed to designate an executive agent to fuse ventures with Israel so significantly that it would touch almost every area of defense tech: AI, autonomous systems, energy, cyber, biotech, and beyond. It also proposes “network” and “data fusion,” which means, as the director of the Democratizing Foreign Policy program at the Quincy Institute warned, “the U.S. military’s data could soon be the Israeli military’s data.America First may soon sound more like a sarcastic punchline than a platform.

Keep ReadingShow less
AI Could Save Thousands—So Why Is Healthcare Still Hitting the Brakes?

Discover how generative AI in healthcare could reduce misdiagnoses, improve chronic disease management, and save hundreds of thousands of lives—if policymakers accelerate adoption instead of waiting for risk-free perfection.

Getty Images / Pakorn Supajitsoontorn

AI Could Save Thousands—So Why Is Healthcare Still Hitting the Brakes?

Imagine that the only way Americans traveled was on foot or on horseback. And assume that 100,000 people died each year because they couldn’t reach a hospital in time or firefighters arrived too late.

Suddenly, they learned that thanks to a technological breakthrough, cars and trucks will become widely available within three years.

Keep ReadingShow less