Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Helmi 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(1000)

Novartis CEO Vasant Narasimhan on Transforming a 250-Year-Old Company

Novartis CEO Vasant Narasimhan on Transforming a 250-Year-Old Company

a16z general partner Jorge Conde talks with Vasant Narasimhan, CEO of Novartis International, about transforming a 250-year-old conglomerate into a pure play medicines company and unlocking $180 billi...

16 Helmi 58min

Balaji and Dan Wang: The Engineering State vs Lawyerly State

Balaji and Dan Wang: The Engineering State vs Lawyerly State

Balaji Srinivasan speaks with Dan Wang, author of Breakneck, about China's industrial rise, America's competing strengths in software and finance, and what happens when an engineering state and a lawy...

13 Helmi 1h 3min

Anish Acharya: Is SaaS Dead in a World of AI?

Anish Acharya: Is SaaS Dead in a World of AI?

In this episode from 20VC, Harry Stebbings talks with Anish Acharya, general partner at a16z, about the future of SaaS in an AI world. Anish argues that software is completely oversold and that the ge...

12 Helmi 1h 21min

How Magic Johnson Built a Billion-Dollar Portfolio in 30 Years

How Magic Johnson Built a Billion-Dollar Portfolio in 30 Years

a16z’s Chris Lyons speaks with Earvin "Magic" Johnson about his 30-year journey from athlete to billionaire businessman. They cover the art of deal-making, lessons from mentors Michael Ovitz and Dr. J...

11 Helmi 1h 5min

Marc Andreessen: Who Runs the World’s AI?

Marc Andreessen: Who Runs the World’s AI?

Cisco president and CPO Jeetu Patel speaks with a16z cofounder Marc Andreessen about why AI may finally break a 50-year productivity slump—and what's at stake if America doesn't win the race. They dis...

10 Helmi 26min

The State of Markets

The State of Markets

a16z Head of Investor Relations Jen Kha speaks with general partner David George about the state of AI and private technology markets. David shares data on why AI companies are growing 2.5x faster tha...

9 Helmi 47min

Balaji & Benedict Evans: When Tech Breaks Industries

Balaji & Benedict Evans: When Tech Breaks Industries

This episode originally appeared on the Network State Podcast. Balaji Srinivasan and Benedict Evans sit down in Singapore for a wide-ranging conversation on the mechanics of disruption. Evans, a forme...

6 Helmi 2h 6min

Why This Isn't the Dot-Com Bubble | Martin Casado on WSJ's BOLD NAMES

Why This Isn't the Dot-Com Bubble | Martin Casado on WSJ's BOLD NAMES

Christopher Mims and Tim Higgins of the Wall Street Journal sit down with a16z General Partner Martin Casado on WSJ’s Bold Names to ask whether the AI spending boom is a bubble waiting to burst. Marti...

5 Helmi 29min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
psykopodiaa-podcast
mimmit-sijoittaa
rss-rahapodi
rss-oivalluksia-rahasta-elamasta
rss-rahamania
ostan-asuntoja-podcast
hyva-paha-johtaminen
rahapuhetta
pomojen-suusta
rss-sami-miettinen-neuvottelija
rss-ammattipodcast
rss-lentopaivakirjat
inderespodi
yrittaja
rss-lahtijat
rss-bisneksen-pehmea-puoli
rss-sisalto-kuntoon
rss-yritys-ja-erehdys
rss-turvassa-tyopaikalla