Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(1000)

Vitalik Buterin on Human Agency in the AI Era

Vitalik Buterin on Human Agency in the AI Era

Sophia Dew and Binji Pande speak with Vitalik Buterin about technology, human agency, and how the internet is changing the way people think, build, and relate to the world around them. Drawing from hi...

15 Maj 26min

Ben Horowitz - "Your ONLY job is Right Product, Right Time"

Ben Horowitz - "Your ONLY job is Right Product, Right Time"

Ben Horowitz shares lessons from building and scaling companies, drawing on his experience as a founder and CEO. He explains why a founder’s primary responsibility comes down to one thing: delivering ...

14 Maj 18min

Energy, Minerals, and the Physical Stack Behind AI

Energy, Minerals, and the Physical Stack Behind AI

Erin Price-Wright speaks with Turner Caldwell and Drew Baglino about what it will take to close America's critical minerals gap and modernize the power infrastructure that underpins the AI economy. Wi...

13 Maj 24min

Lloyd Blankfein on Risk, Crisis, and Leadership

Lloyd Blankfein on Risk, Crisis, and Leadership

David Haber speaks with Lloyd Blankfein, former CEO of Goldman Sachs, about leadership, risk, and navigating moments of extreme uncertainty. Drawing on his experience leading Goldman through the finan...

12 Maj 1h 12min

Marc Andreessen on Builder Culture in the Age of AI

Marc Andreessen on Builder Culture in the Age of AI

Erik Torenberg speaks with Marc Andreessen about the state of AI, media, and the broader cultural and economic shifts shaping the internet. They discuss how narratives around AI, from fear to hype, ar...

11 Maj 1h 4min

Ben Horowitz on the Next Technology Era

Ben Horowitz on the Next Technology Era

David Ulevitch speaks with Ben Horowitz about what it means to lead the technology industry at scale, and the responsibilities that come with it. Following the firm’s largest-ever fundraise, they disc...

8 Maj 29min

Crypto Fund 5: We Raised $2.2B. Here’s Why.

Crypto Fund 5: We Raised $2.2B. Here’s Why.

Robert Hackett speaks with the general partners at a16z crypto about the launch of their fifth crypto fund and the current state of the industry. They reflect on how crypto has evolved from an ideolog...

7 Maj 1h 2min

The New Space Race: NASA, Artemis, and the Race to the Moon

The New Space Race: NASA, Artemis, and the Race to the Moon

Morgan Brennan speaks with NASA Administrator Jared Isaacman about the next phase of American space exploration and the urgency behind returning to the moon. They discuss the Artemis program, the chal...

6 Maj 29min

Populärt inom Business & ekonomi

framgangspodden
varvet
badfluence
rss-jossan-nina
rss-svart-marknad
rss-borsens-finest
svd-tech-brief
avanzapodden
uppgang-och-fall
bathina-en-podcast
dynastin
rss-dagen-med-di
rss-kort-lang-analyspodden-fran-di
tabberaset
lastbilspodden
fill-or-kill
rss-inga-dumma-fragor-om-pengar
rss-dr-bjorklund
rss-veckans-trade
24fragor