Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Episoder(1000)

a16z Podcast: On the Genomics of Disease, From Science to Business

a16z Podcast: On the Genomics of Disease, From Science to Business

Once we sequenced the human genome, we'd know the cause of -- and therefore be able to help cure -- all diseases... Or so we thought. Turns out, 20,000 genes (and counting) didn't really explain why d...

18 Okt 201630min

a16z Podcast: Stickers! Filters! Memes! Livestreams!

a16z Podcast: Stickers! Filters! Memes! Livestreams!

From glittery reaction gifs modded by grandparents to rage faces on Reddit, stickers (gifs and other layered images) and emotive “biaoqing” have taken over messaging culture in China and beyond. Stick...

12 Okt 201647min

a16z Podcast: Truce for Mobile, Battle for VR

a16z Podcast: Truce for Mobile, Battle for VR

The most recent Oculus Connect event (the third and largest yet) has been lauded as bringing us closer than ever to the future promised for virtual reality or VR. There have been many hardware moves b...

10 Okt 201635min

a16z Podcast: Mastering the Game (with David Oyelowo)

a16z Podcast: Mastering the Game (with David Oyelowo)

This special episode of the a16z Podcast is based on a Q&A from an early screening we hosted of Disney's Queen of Katwe, now in theaters. The movie -- directed by Mira Nair and based on a book by Tim ...

30 Sep 201621min

a16z Podcast: From Data Warehouses to Data Lakes

a16z Podcast: From Data Warehouses to Data Lakes

From the silver age of on-prem software companies like SAP and Siebel Systems to the golden age of enterprise software-as-a-service, we're now seeing an explosion of data. All types, all sizes, and al...

22 Sep 201628min

a16z Podcast: Welcome to the New Era of Commerce

a16z Podcast: Welcome to the New Era of Commerce

Just as "social networking" is a bland term that doesn't really capture the layers of what happens underneath (and on top of) social networking platforms, "crowdfunding" is a broader phenomenon than w...

18 Sep 201627min

a16z Podcast: Apple and the Case of Invisible But Audible Innovation

a16z Podcast: Apple and the Case of Invisible But Audible Innovation

"Apple isn't just a tech company; it's a tastemaker." Remember the iconic ads of dancing silhouettes in black, with only the headphone wires visible in white? They were a critical part of the larger b...

13 Sep 201633min

a16z Podcast: Sleep!

a16z Podcast: Sleep!

Sleep, productivity, and creatively are intimately linked, for better and for worse. And "we are living under a collective delusion that burnout is the way to succeed," observes Arianna Huffington, au...

6 Sep 201628min

Populært innen Business og økonomi

stopp-verden
dine-penger-pengeradet
lydartikler-fra-aftenposten
e24-podden
rss-borsmorgen-okonominyhetene
rss-penger-polser-og-politikk
pengepodden-2
finansredaksjonen
utbytte
rss-politisk-preik
livet-pa-veien-med-jan-erik-larssen
morgenkaffen-med-finansavisen
pengesnakk
tid-er-penger-en-podcast-med-peter-warren
stormkast-med-valebrokk-stordalen
lederpodden
rss-sunn-okonomi
okonomiamatorene
rss-markedspuls-2
lederskap-nhhs-podkast-om-ledelse