Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Helmi 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Jaksot(1000)

a16z Podcast: Of Governors and Mayors, and Tech Policy

a16z Podcast: Of Governors and Mayors, and Tech Policy

Many of the big tech policy issues of the day play out more so at the state and local level, not just federal level. The decisions that cities and states make every day -- from autonomous vehicles to ...

15 Joulu 201711min

a16z Podcast: Taking the Pulse on Bio

a16z Podcast: Taking the Pulse on Bio

This conversation between the members of a16z's bio team -- including general partners Jorge Conde and Vijay Pande; Malinka Walaliyadde; and Jeffrey Low (the interviewer) -- takes a quick pulse on whe...

14 Joulu 201728min

a16z Podcast: Scaling Healthcare

a16z Podcast: Scaling Healthcare

No matter how grand a vision for a particular industry, disruption in practice is hard. This is especially true in industries like healthcare, which have long been resistant to software-driven change....

13 Joulu 201719min

a16z Podcast: Market Shifts

a16z Podcast: Market Shifts

NASDAQ CEO Adena Friedman runs one of the world's largest financial services companies, including the NASDAQ stock exchange that's home to more than 3,500 listed companies. They were also the creator ...

10 Joulu 201734min

a16z Podcast: On Data and Data Scientists in the Age of AI

a16z Podcast: On Data and Data Scientists in the Age of AI

Data, data, everywhere, nor any drop to drink. Or so would say Coleridge, if he were a big company CEO trying to use A.I. today -- because even when you have a ton of data, there's not always enough s...

5 Joulu 20179min

a16z Podcast: AI, from 'Toy' Problems to Practical Application

a16z Podcast: AI, from 'Toy' Problems to Practical Application

When you have “a really hot, frothy space” like AI, even the most basic questions — like what is it good for, how do you make sure your data is in shape, and so on — aren’t answered. This is just as t...

2 Joulu 201734min

a16z Podcast: The Rise of the CCO

a16z Podcast: The Rise of the CCO

There's a new C-level role in town: the CCO, or Chief Customer Officer. This episode (based on a previous event) is all about the rise of this new role, why it's so important -- and what the actual sc...

18 Marras 201725min

a16z Podcast: How Founders Hire a VP of Product

a16z Podcast: How Founders Hire a VP of Product

Hiring a VP of Product -- especially as the founder of the company -- can almost feel like handing over your baby to someone else to hold, observes a16z executive talent team partner Caroline Horn, wh...

10 Marras 201729min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
psykopodiaa-podcast
rss-rahapodi
pomojen-suusta
ostan-asuntoja-podcast
rss-rahamania
rss-draivi
herrasmieshakkerit
inderespodi
rss-sami-miettinen-neuvottelija
rahapuhetta
rss-myyntikoulu
rss-seuraava-potilas
salkunrakentaja-podi
rss-lahtijat
rss-bisnesta-bebeja
rss-ainin-sekatoimisto
rss-set-for-life-sijoita-ja-vaurastu
hyva-paha-johtaminen