From the journal

Trump Signs Executive Order on AI Cybersecurity and Frontier Model Review, United States, June 2026

President Trump signed the Executive Order 'Promoting Advanced Artificial Intelligence Innovation and Security' on 2 June 2026, directing federal agencies to deploy AI-enabled cyber defenses within 30 days, establishing a voluntary arrangement for pre-release government access to covered frontier AI models within 60 days, and creating an AI cybersecurity clearinghouse coordinated by the Secretary of the Treasury. The order charges the Attorney General with prioritizing criminal enforcement under 18 U.S.C. 1028, 1030, and 1343 against those who use AI to unlawfully access or damage computer systems. No mandatory licensing or pre-clearance requirement for AI models is created.

3 min read

President Trump signed the Executive Order 'Promoting Advanced Artificial Intelligence Innovation and Security' on 2 June 2026. The order takes immediate effect through existing agency authority and does not require congressional enactment. It imposes 30-day mandates for cyber defense measures and 60-day mandates for frontier model access framework development. Named recipients of specific direction include the Committee on National Security Systems, the Secretary of War, the Secretary of Homeland Security through CISA, the Secretary of the Treasury, and the Director of the Office of Personnel Management.

Section 2 directs named federal officials to prioritize cyber defense of National Security Systems as defined in 44 U.S.C. 3552(b)(6)(A) within 30 days. Section 2(d) requires the Secretary of the Treasury to form an AI cybersecurity clearinghouse within 30 days; the clearinghouse coordinates vulnerability scanning and patch distribution in voluntary collaboration with AI developers and infrastructure operators. Section 3 directs the Secretary of the Treasury and the Director of NSA to develop, within 60 days, a classified benchmarking process for designating covered frontier models and a voluntary arrangement under which AI developers may provide the federal government with access to those models for up to 30 days before public release. Section 4 invokes 18 U.S.C. 1028, 1030, and 1343 as the statutory basis for prioritized criminal prosecution of AI-enabled computer fraud, unauthorized access, and wire fraud. Section 3(c) expressly prohibits reading the order to authorize mandatory governmental licensing, pre-clearance, or permitting for AI model development, publication, or distribution.

AI developers whose models may qualify as covered frontier models face a voluntary participation decision in the pre-release access arrangement; the NSA benchmarking threshold has not yet been set and must be developed within 60 days of 2 June 2026. Federal contractors will face the most direct pressure to adopt AI-enabled defensive measures within the 30-day window. Critical infrastructure operators, named in the order as rural hospitals, community banks, and local utilities, are eligible under Section 2(c) to receive CISA-administered access to cybersecurity tools, including potentially covered frontier models. The Attorney General's enforcement priority under Section 4 will affect individuals and organizations that deploy AI to access computer systems without authorization or to commit wire fraud.

The order accompanied two related instruments: a White House Fact Sheet dated 2 June 2026 and National Security Presidential Memorandum NSPM-11 issued 5 June 2026, which has not been publicly released. The voluntary character of the frontier model access arrangement differs from the mandatory pre-market approval approach developed under Executive Order 14110 on the Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence, which the current administration rescinded on taking office. Open questions include the NSA benchmarking threshold that will determine covered frontier model designation and the confidentiality and intellectual-property protections applicable during the pre-release government access window.

Licentium advises AI developers, financial technology firms, and critical infrastructure operators on U.S. federal AI policy compliance, executive order implementation, and voluntary government engagement strategies. Organizations assessing their obligations under this order, and developers of frontier models considering pre-release engagement with federal agencies, are invited to contact our team. Work we undertake includes AI regulatory compliance, AI security risk assessment, federal contracting and AI procurement requirements, voluntary government engagement strategy for AI model developers, and criminal law exposure analysis for AI-related conduct.

Source: Executive Order: Promoting Advanced Artificial Intelligence Innovation and Security, The White House, 2 June 2026

AI Regulatory

More from the journal

See all
Illia Prokopiev

Hawala and Underground Banking in FATF’s 2026 Report

The Financial Action Task Force (FATF) published a September 2026 report on professional money laundering through underground banking, hawala and other similar service providers (HOSSPs). The questions are what its findings establish, how they relate to FATF standards, and what responses they support. No domestic jurisdiction, transaction or enforcement proceeding has been specified. The analysis addresses international standards and attributed country examples; it does not determine liability or operational duties under an unidentified national law.

China's Supreme People's Court Issues AI Dispute Adjudication Opinions, 7 September 2026

The Supreme People's Court of China issued the Opinions on Lawfully Adjudicating Disputes Involving Artificial Intelligence, Fafa [2026] No. 10, on 7 September 2026. The document runs to 24 articles across five parts and directs courts nationwide on infringement liability, intellectual property, procedural rules and criminal matters arising from the use of AI. It is the first national judicial guidance of its kind in China.

California CCPA Automated Decisionmaking Rules Bind Businesses from 1 January 2027

The California Privacy Protection Agency regulations on automated decisionmaking technology were approved by the Office of Administrative Law on 22 September 2025 and took effect on 1 January 2026. A business that uses automated decisionmaking technology to make significant decisions about consumers must comply from 1 January 2027. The same rulemaking sets staged deadlines for cybersecurity audits and for risk assessment reporting to the Agency.