Anatomy of the SolarWinds Hack: Who What Where When How
The a16z Show1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Stay Updated:

Find a16z on YouTube: YouTube

Find a16z on X

Find a16z on LinkedIn

Listen to the a16z Show on Spotify

Listen to the a16z Show on Apple Podcasts

Follow our host: https://twitter.com/eriktorenberg

Please note that the content here is for informational purposes only; should NOT be taken as legal, business, tax, or investment advice or be used to evaluate any investment or security; and is not directed at any investors or potential investors in any a16z fund. a16z and its affiliates may maintain investments in the companies discussed. For more details please see a16z.com/disclosures.


Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Avsnitt(1000)

a16z Podcast: Beyond CES: Connected Home Devices, Voice, and More

a16z Podcast: Beyond CES: Connected Home Devices, Voice, and More

In this hallway conversation of the a16z Podcast, Benedict Evans and Steven Sinofsky discuss CES 2018 and share insight on what they took from this year's show. How much can you discern each company's...

22 Jan 201833min

a16z Podcast: Mental Models for Understanding Crypto Tokens

a16z Podcast: Mental Models for Understanding Crypto Tokens

This episode of the a16z Podcast goes deep on various trends in cryptocurrencies -- from mental models for understanding tokens and what may give them long-term value; to the role of stablecoins in th...

22 Jan 201834min

a16z Podcast: Reinventing Food

a16z Podcast: Reinventing Food

It's surprising that how (and what) we eat has actually changed very little over the ages, despite how much we’ve advanced as a species. Now, however -- driven by globalization, environmental factors,...

13 Jan 201819min

a16z Podcast: Revisiting the Gene

a16z Podcast: Revisiting the Gene

The complete sequencing of the human genome is one of the most powerful examples of technology and science in action: We've gone from needing $3 billion and over 13 years to read a single human genome...

10 Jan 201815min

a16z Podcast: Community and Culture, Online

a16z Podcast: Community and Culture, Online

We’re so used to thinking of “community” as our friends, families, and neighbors. But what a community is, and who it is made of, has changed thanks to the internet, and without our noticing it. What ...

6 Jan 201820min

a16z Podcast: Fintech for the People

a16z Podcast: Fintech for the People

New fintech companies are democratizing access to financial services in different ways, whether it's making food stamps more efficient, no longer waiting two weeks for a paycheck, or enabling anyone w...

19 Dec 201718min

a16z Podcast: Trends in Cryptocurrencies

a16z Podcast: Trends in Cryptocurrencies

The internet, believe it or not, was just the beginning. Yes, it spawned an incredible number of uses (some unexpected), from marketplaces and commerce to publishing and social networks... but that’s ...

19 Dec 201722min

a16z Podcast: The $200 PC in the Enterprise

a16z Podcast: The $200 PC in the Enterprise

What capabilities do enterprise companies really want from their computers? Twenty years ago, those capabilities might've been bundled into a mainframe. Ten years ago, it might've been the PC. Today, ...

19 Dec 201732min

Populärt inom Business & ekonomi

badfluence
framgangspodden
varvet
rss-jossan-nina
uppgang-och-fall
rss-borsens-finest
rss-svart-marknad
avanzapodden
svd-tech-brief
fill-or-kill
rss-inga-dumma-fragor-om-pengar
bathina-en-podcast
dynastin
lastbilspodden
borsmorgon
rss-kort-lang-analyspodden-fran-di
24fragor
rss-dagen-med-di
kapitalet-en-podd-om-ekonomi
montrosepodden