Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Episoder(1000)

David Solomon & Ben Horowitz on Building Organizational Resilience & Navigating Macro Uncertainty

David Solomon & Ben Horowitz on Building Organizational Resilience & Navigating Macro Uncertainty

a16z general partner David Haber spoke with Goldman Sachs CEO David Solomon and a16z cofounder Ben Horowitz on the current macro environment, enterprise AI adoption, and crypto and AI policy. Solomon ...

2 Feb 36min

“Anyone Can Code Now” - Netlify CEO Talks AI Agents

“Anyone Can Code Now” - Netlify CEO Talks AI Agents

Netlify's CEO, Matt Biilmann, reveals a seismic shift nobody saw coming: 16,000 daily signups—five times last year's rate—and 96% aren't coming from AI coding tools. They're everyday people accidental...

30 Jan 57min

Marc Andreessen on Why This Is the Most Important Moment in Tech History

Marc Andreessen on Why This Is the Most Important Moment in Tech History

Recently, Marc Andreessen joined Lenny Rachitsky on Lenny's Podcast. They talked about why 2025 may be the most significant year in tech history, how AI is reshaping the future of product managers, de...

29 Jan 1h 41min

Ben Horowitz and Balaji Srinivasan on Netscape and Network States

Ben Horowitz and Balaji Srinivasan on Netscape and Network States

Can a country be built from the internet up? Not as a metaphor or an online community, but as a system that replaces institutions we usually think of as fixed, money, law, and governance.In this conve...

28 Jan 42min

Healthcare 2026: AI Doctors, GLP-1s, and Insurance Defection

Healthcare 2026: AI Doctors, GLP-1s, and Insurance Defection

Out-of-Pocket is a healthcare education company founded by Nikhil Krishnan that helps people understand how healthcare works and how to navigate it in practice. In this episode, a16z investing partner...

27 Jan 1h 34min

The Hidden Economics Powering AI

The Hidden Economics Powering AI

In this episode, Jen Kha, Head of Investor Relations, and David George, General Partner, discuss how late-stage private markets are evolving as AI reshapes scale, capital intensity, and growth timelin...

26 Jan 1h 4min

How Mintlify Is Rebuilding Documentation for Coding Agents

How Mintlify Is Rebuilding Documentation for Coding Agents

Mintlify is a documentation platform built by cofounders Han Wang and Hahnbee Lee to help teams create and maintain developer docs. In this episode, Andreessen Horowitz general partners Jennifer Li an...

23 Jan 44min

Inferact: Building the Infrastructure That Runs Modern AI

Inferact: Building the Infrastructure That Runs Modern AI

Inferact is a new AI infrastructure company founded by the creators and core maintainers of vLLM. Its mission is to build a universal, open-source inference layer that makes large AI models faster, ch...

22 Jan 43min

Populært innen Business og økonomi

stopp-verden
lydartikler-fra-aftenposten
dine-penger-pengeradet
e24-podden
rss-borsmorgen-okonominyhetene
rss-penger-polser-og-politikk
finansredaksjonen
pengepodden-2
rss-sunn-okonomi
morgenkaffen-med-finansavisen
utbytte
livet-pa-veien-med-jan-erik-larssen
tid-er-penger-en-podcast-med-peter-warren
pengesnakk
okonomiamatorene
liberal-halvtime
lederpodden
stormkast-med-valebrokk-stordalen
rss-markedspuls-2
arcticpodden