Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Avsnitt(1000)

AI Inside the Enterprise

AI Inside the Enterprise

Steven Sinofsky, board partner at a16z, Aaron Levie, CEO of Box, and Martin Casado, general partner at a16z, discuss the reality of AI inside enterprises. They cover the gap between Silicon Valley and...

24 Apr 1h

Martin Shkreli on AI, Pharma, and What Actually Matters

Martin Shkreli on AI, Pharma, and What Actually Matters

Erik Torenberg speaks with Martin Shkreli, American investor and businessman, about how he sees the AI landscape, from OpenAI to Anthropic, and what actually matters beyond the hype. They also talk th...

23 Apr 48min

Balaji Srinivasan: Prove Correct, Not Just Go Direct

Balaji Srinivasan: Prove Correct, Not Just Go Direct

Erik Torenberg and Theo Jaffee speak with Balaji Srinivasan, angel investor, entrepreneur, and author of The Network State, about how AI is transforming media, eroding trust, and reshaping how informa...

22 Apr 2h 1min

Marc Andreessen: Monitoring the Situation and the Future of Media

Marc Andreessen: Monitoring the Situation and the Future of Media

Erik Torenberg and Theo Jaffee speak with Marc Andreessen, cofounder and general partner at a16z, about the launch of Monitoring the Situation (MTS), a new, always-on media network on X. They discuss ...

21 Apr 1h 7min

Rethinking Git for the Age of Coding Agents with GitHub Cofounder Scott Chacon

Rethinking Git for the Age of Coding Agents with GitHub Cofounder Scott Chacon

Matt Bornstein speaks with Scott Chacon, cofounder of GitHub and CEO of GitButler, about why Git's user interface has barely changed since 2005, how GitButler is rethinking version control for both hu...

20 Apr 47min

Network Effects, AI Costs, and the Future of Consumer Investing with Anish Acharya on The Kevin Rose Show

Network Effects, AI Costs, and the Future of Consumer Investing with Anish Acharya on The Kevin Rose Show

This episode originally aired on The Kevin Rose Show. Kevin Rose speaks with Anish Acharya, general partner at a16z, about how AI is rewriting the rules of consumer software, the defensibility of netw...

19 Apr 58min

The System Behind Self-Driving: Waymo’s Dmitri Dolgov

The System Behind Self-Driving: Waymo’s Dmitri Dolgov

Waymo is now delivering hundreds of thousands of fully autonomous rides each week — but getting there required more than better models. It meant building a complete system for training, evaluating, an...

17 Apr 1h 4min

Technology, Culture, and the Next AI Interface with signüll

Technology, Culture, and the Next AI Interface with signüll

Erik Torenberg and Anish Acharya, general partners at a16z, speak with signüll about how technology reshapes culture, relationships, and the products we build. The conversation covers tacit knowledge ...

16 Apr 34min

Populärt inom Business & ekonomi

framgangspodden
varvet
rss-jossan-nina
rss-svart-marknad
svd-tech-brief
rss-borsens-finest
badfluence
uppgang-och-fall
avanzapodden
bathina-en-podcast
fill-or-kill
rss-inga-dumma-fragor-om-pengar
24fragor
lastbilspodden
rss-dagen-med-di
kapitalet-en-podd-om-ekonomi
tabberaset
rss-veckans-trade
rss-kort-lang-analyspodden-fran-di
borsmorgon