Grid Order Targets Foreign Backdoors
Executive Order 14420 bars risky foreign grid gear, empowering DOE to vet or remove equipment.
President Trump has signed an executive order declaring a national emergency to address vulnerabilities in the U.S. bulk power system, specifically targeting foreign-supplied electrical equipment that could harbor hidden backdoors. The order, issued as Executive Order 14420, comes amid rapid growth in data centers, AI, advanced manufacturing, and defense production, which officials say magnifies the impact of any disruption to grid reliability.
Why a National Emergency?
The order argues that the U.S. bulk power system faces a heightened threat from foreign adversaries who could exploit backdoors embedded in grid equipment for remote access or sabotage. According to the order, dependence on grid reliability means that even a single compromised component could have cascading effects across the country.
While the order does not name any specific country, its structure closely mirrors a 2020 Trump-era bulk-power order that led to a Department of Energy prohibition order targeting entities associated with China. That earlier prohibition was later revoked after a Biden administration review, but the new executive order signals a renewed focus on supply chain risks.
Scope of the New Rules
The order applies to critical infrastructure operating bulk-power system transmission lines rated at 69 kilovolts or higher, but explicitly excludes local electricity distribution facilities. Targeted technologies include transformers, inverters, energy storage systems, and industrial control systems (ICS) such as remote terminal units (RTUs), programmable logic controllers (PLCs), and safety systems. The order also covers associated firmware, software, and remote access capabilities.
Under the new directives, any acquisition, import, transfer, or installation of foreign-produced bulk-power equipment initiated after August 26, 2026, is prohibited if the transaction involves designated entities. Restrictions apply to hardware or software deemed to pose risks of sabotage, unauthorized access, malicious remote operation, or supply disruption.
Shifting to Supply Chain Risks
While much attention has focused on state-sponsored Chinese actors actively targeting U.S. power grid networks through intrusions, this order pivots toward mitigating upstream supply chain risks and embedded hardware backdoors. This marks a shift from defending against active attacks to preventing the introduction of compromised equipment in the first place.
Officials noted that dependence on grid reliability magnifies the impact of foreign supply chain disruptions or targeted attacks that exploit built-in backdoors for remote access.
What Happens to Existing Gear?
For equipment installed before the new executive order, the Energy Department can mandate security controls. Following consultation with defense and intelligence leaders, it can require grid operators to identify, isolate, monitor, secure, disconnect, or replace certain components to neutralize operational threats, while ensuring service continuity and safety.
This provision gives the DOE authority to act retroactively on equipment already in use, potentially forcing utilities to retrofit or replace components deemed risky. The order emphasizes that any such actions must maintain service continuity and safety, suggesting a careful balancing act between security and reliability.
Mitigation and Pre-Qualification
To support ongoing grid operations, energy authorities may negotiate mitigation agreements or publish an official list of pre-qualified equipment and vendors exempt from the baseline prohibitions. This two-track approach—prohibiting untrusted gear while allowing vetted alternatives—aims to avoid a sudden gap in equipment availability that could destabilize the grid.
The pre-qualification list could become a key tool for utilities and vendors, offering a clear path forward for compliant equipment. However, the criteria for inclusion on the list have not been detailed, leaving some uncertainty for suppliers.
Key Numbers at a Glance
- 69 kV: Minimum voltage threshold for covered transmission lines
- August 26, 2026: Effective date for the prohibition on new acquisitions or installations
- Executive Order 14420: The specific order number issued by the President
Implications for the Power Sector
This order could have significant consequences for utilities, vendors, and the broader energy industry. For utilities, it means that the provenance of every transformer, RTU, and software update becomes a security matter, not just a procurement decision. The mandate to potentially disconnect or replace equipment already in the field suggests that some operators may face costly retrofits or forced replacements if their gear is deemed risky.
For foreign suppliers, the order creates an uncertain environment where being on the wrong side of a designation could shut off access to the U.S. market overnight. Even for domestic vendors, the pre-qualification process may become a de facto gold standard for compliance, but the absence of a list could be a deal-breaker for smaller suppliers without the resources to undergo security reviews.
The shift toward upstream supply chain risk is a significant development. The industry has spent years defending against active intrusions, but this order suggests that the next major threat may be lying dormant inside the hardware itself—waiting to be triggered. As the DOE begins to implement these new authorities, the power grid's resilience will depend on how effectively regulators and industry can navigate this new landscape without compromising the reliability that underpins modern life.
Sources
- SecurityWeek Original source
Continue Reading
IoT Botnets and Water Systems Top ThreatsDay
A weekly roundup: 296K-device botnet, 100+ water systems targeted, and a SharePoint RCE chain.
OpenAI Agents Cheat Test, Breach Hugging Face
An internal OpenAI test went awry, leading AI agents to hack into Hugging Face's network.
Hidden HTML Hijacks AI Email Summarizers
Forcepoint shows invisible text can silently change what an AI assistant reads in your email.