Trump guts digital ID rules, claims they help 'illegal aliens' commit fraud
- Reference: 1749560529
- News link: https://www.theregister.co.uk/2025/06/10/trump_cybersecurity_eo_digital_ids/
- Source link:
In his last few days in office, President Biden signed a [1]executive order (EO) focused on cybersecurity that aimed to eliminate the use of stolen and fake identities by criminal gangs, because they are used to "systemically defraud public benefits programs costs taxpayers and wastes Federal Government funds."
To accomplish this goal, Biden’s [2]presidential mandate directed federal agencies to work with states to develop and issue mobile driver's licenses and the infrastructure needed to verify these types of digital ID cards.
[3]
Trump’s order wipes out a section of the Biden order, titled "Solutions to Combat Cybercrime and Fraud".
[4]
[5]
It seems an odd section of his predecessor's EO to eliminate, especially for the tough-on-crime-and-government-waste Republican administration.
President Trump’s reasoning for [6]axing the digital identity section of Biden's directive reflects a belief that digital IDs make it easier for immigrants to access welfare payments, so don’t prevent fraud and cybercrime.
[7]
The [8]White House said it is "removing a mandate for US government issued digital IDs for illegal aliens that would have facilitated entitlement fraud and other abuse."
Eliminating this digital ID requirement "in the name of preventing fraud, waste, and abuse is like claiming we need safer roads while removing guardrails from bridges," Center for Democracy and Technology CEO Alexandra Reeve Givens said in an email to The Register . She added that the Biden order did not mandate government-issued digital IDs for undocumented immigrants: "That's simply not true," she said.
The number one perpetrator of identity fraud today is absolutely fraud rings, criminal organizations, and nation states
"Well-established best practices like phishing-resistant standards and privacy-preserving mobile IDs are essential to making all future federal systems secure," she added. "The only beneficiaries of this step backward are hackers who want to break into federal systems, fraudsters who want to steal taxpayer money from insecure services, and legacy vendors who want to maintain lucrative contracts without implementing modern security protections."
Billions lost, but not to immigrants
Plus, according to cybersecurity and identity management experts, immigrants aren't the ones raking in billions using stolen identities to facilitate digital fraud and other crimes. Ransomware gangs and foreign-government-sponsored goons are the real source of money lost to fraud and fake identities.
"The number one perpetrator of identity fraud today is absolutely fraud rings, criminal organizations, and nation states," Jordan Burris told The Register . Burris is the public sector VP at Socure, which provides digital identity verification and fraud prevention. During the first Trump administration, he served as chief of staff to the White House federal CIO.
Jeremy Grant, a former senior executive advisor at NIST and coordinator of the Better Identity Coalition, which advocates for stronger digital security and privacy policies, also aid foreign attackers use fake digital identities for financially motivated fraud.
[9]
"Chinese state-sponsored attackers have stolen billions through identity-centric attacks," Grant [10]said on LinkedIn. "The Justice Department has noted North Korea stole more than $2 billion to fund its nuclear program through similar attacks targeted against banks and crypto exchanges, and more recently spoofed identities to place North Koreans in remote IT jobs to generate additional money to fuel its weapons of mass destruction."
[11]Biden signs sweeping cybersecurity order, just in time for Trump to gut it
[12]Trump's cyber czar pick grilled over CISA cuts: 'If we have a cyber 9/11, you're the guy'
[13]Dem senators pen stern letter urging Noem to reinstate cyber review board
[14]Why is China deep in US networks? 'They're preparing for war,' HR McMaster tells lawmakers
Burris, however, remains hopeful that axing the digital identity section of Biden’s January EO will pave the way for the Trump administration to enact more substantive protections.
"To be completely frank, the provision as it existed before was lackluster and was going to do very little towards stopping what the advanced nation-state fraud that we see today," he said. "The Trump Administration has before it now an imperative to accelerate all their efforts around anti-fraud and digital identity."
Burris has long advocated for [15]treating digital identity as critical infrastructure — and securing it as such. He also wants to see the Trump administration develop a national strategy around digital fraud, and share signals and intelligence around fraud patterns and campaigns in real time along the lines of the cybersecurity threat-intel sharing efforts.
"What I don't want to see as we go through the remainder of this presidency and no action being taken related to digital identity," he said.
Mandated Voluntary secure-by-design software
Of course, the digital ID piece wasn't the only "problematic" section in Biden's order, according to the White House.
Another of the directives that Trump's order cut is the mandate that software companies that sell to the government must follow secure software development practices - and submit proof of doing so to CISA.
Biden's order also required the federal government to come up with a "coordinated set of practical and effective security practices to require when it procures software" – essentially minimum cybersecurity requirements.
In the new EO, Trump eliminated both requirements. Instead of forcing software providers to submit so-called "secure software development attestations" to CISA, the order makes secure-by-design practices voluntary.
It tasks NIST with setting up a public-private consortium to guide best practices for secure software development, and to issue updated recommendations on securely deploying patches and updates.
"The shift toward voluntary guidance sounds nice, however in practice it often means slower adoption and fewer safeguards," Bugcrowd CEO Dave Gerry told The Register . "It's hard to see how this makes us safer,” he added.
Secure software attestations "were put in place to reduce risk across the supply chain," Gerry added. "This order walks away from important lessons. Cybersecurity should be a nonpartisan commitment to national resilience — not a political bargaining chip." ®
Get our [16]Tech Resources
[1] https://www.theregister.com/2025/01/17/biden_cybersecurity_eo/
[2] https://bidenwhitehouse.archives.gov/briefing-room/presidential-actions/2025/01/16/executive-order-on-strengthening-and-promoting-innovation-in-the-nations-cybersecurity/
[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2aEhWlQsD13qlhmT_Qvn1XwAAAAA&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0
[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44aEhWlQsD13qlhmT_Qvn1XwAAAAA&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33aEhWlQsD13qlhmT_Qvn1XwAAAAA&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[6] https://www.whitehouse.gov/presidential-actions/2025/06/sustaining-select-efforts-to-strengthen-the-nations-cybersecurity-and-amending-executive-order-13694-and-executive-order-14144/
[7] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44aEhWlQsD13qlhmT_Qvn1XwAAAAA&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[8] https://www.whitehouse.gov/fact-sheets/2025/06/fact-sheet-president-donald-j-trump-reprioritizes-cybersecurity-efforts-to-protect-america/
[9] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/front&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33aEhWlQsD13qlhmT_Qvn1XwAAAAA&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[10] https://www.linkedin.com/posts/jeremy-grant-jgrantindc_coordinator-jeremy-grants-statement-on-the-activity-7337603491772719104-W-J0
[11] https://www.theregister.com/2025/01/17/biden_cybersecurity_eo/
[12] https://www.theregister.com/2025/06/05/trump_cyber_nominee_cairncross/
[13] https://www.theregister.com/2025/06/02/senators_to_noem_reestablish_csrb/
[14] https://www.theregister.com/2025/05/29/china_preparing_war_mcmaster/
[15] https://www.linkedin.com/posts/jordan-burris-60588a70_securing-americas-digital-destiny-a-blueprint-activity-7262889052150886402-RHyy/
[16] https://whitepapers.theregister.com/
Just read the article
The only thing I can say, is accurately reflected in the choice of icon.
Who on earth is advising this gelatinous, orange Eton Mess?
In fact, I think an Eton Mess (look it up) may be a better choice for drafting and issuing EOs in the White House!
This really is cretinary of the highest order!!
Re: Just read the article
Is the President:
1, A Russian asset
2, A Chinese asset
3, A N. Korean asset
4. A moron
4, All.of the above?
Re: Just read the article
Yes...
Dumb
So now the standards for digital IDs and the security around them will be determined by other states. Europe, China, Japan. But not the USA.
Trump really is the dimmest bulb in the ugliest of gold plated yet surprisingly dim chandeliers...
Re: Dumb
The plan was just to use your Twitter account to vote, but now he's fallen out with his best boy....
Re: Dumb
Global standard for digital IDs?? Tell me you're an NWO fanboy without telling me!
BTW, here's a perfect example of the Hegelian Dialectic at play. Trump says digital ID bad = Anti-Trumpers get a hard on for it. Roll on the next Democrat administration and the immediate implementation of said digital ID.
I really wonder whether the masses will ever sus the false left-right paradigm, or whether it will work for the elites in perpetuity.
"President Trump’s reasoning..."
You got me with those three words.
He has the reasoning skills of a potty training toddler.
Re: "President Trump’s reasoning..."
Generous of you to assume he has any reasoning skills at all.
Re: "President Trump’s reasoning..."
You're assuming that he can use a potty in the first place.
Reliable rumour is that he wears training pants at all times
True optimism
Burris, however, remains hopeful that axing the digital identity section of Biden’s January EO will pave the way for the Trump administration to enact more substantive protections.
Well, good luck with that.
Conspiracy theory:
Seems like part of a strategy to make it easy to separate a large part of the population from a large part of its assets. (See also Crypto — a perfect place for your pension pot.)
Help commit fraud
If there is one thing you can count on as sure as the sun rises, it's a Republican projecting.
He just told us they, the current GOP, ARE going to commit fraud. Wait, I mean more fraud. ------------------------->>>>
Self-regulate
Instead of forcing software providers to submit so-called "secure software development attestations" to CISA, the order makes secure-by-design practices voluntary.
Would that be like the FAA allowing Boeing to self-regulate on the 737-MAX?
Bankrupt the USA?
Every business Trump has owned and managed has lost money.
The US economy will be no exception.
I guess the real reason behind this is to save big tech money and possibly make it easier for favoured scumbags to commit fraud.
And as someone has already mentioned, it ramps up the reasons to declare convenient emergencies as the US speeds towards authoritarianism.
The more fraud and insecurity...
... the greater the opportunity to declare an "emergency".