Anatomy of the SolarWinds Hack: Who What Where When How
a16z Podcast1 Feb 2021

Anatomy of the SolarWinds Hack: Who What Where When How

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

Episoder(904)

a16z Podcast: Engineering a Revolution at Work

a16z Podcast: Engineering a Revolution at Work

From file cabinets to typewriters, spreadsheets and word processing the tools we use for work change not only what we do, but the culture of our workplace. Steven Sinofsky, a veteran of building software tools for productivity, discusses the latest revolution in technology-enabled tools with Benedict Evans. Why today’s cloud-based tools change the role of managers, and why the perfect tool will never exist (nor would you want it to).

10 Apr 201423min

a16z Podcast: China and Tech

a16z Podcast: China and Tech

China has been a tough market to crack for U.S. internet companies. One of the key reasons is China has its own crop of hugely successful and highly innovative companies. Andreessen Horowitz’s Chris Dixon, Connie Chan and Benedict Evans highlight the key players in China, and what non-Chinese companies can learn from them. Where Chinese companies and money are headed next.

30 Mar 201417min

a16z Podcast: Oculus and the (Mind-Blowing) Reality of Virtual Reality

a16z Podcast: Oculus and the (Mind-Blowing) Reality of Virtual Reality

Up until now virtual reality has been a disappointment for all those people pining for their own personal holodeck. But advances in the components required to create a truly immersive digital 3D experience have finally broken through much of what has been holding virtual reality back. As a consequence, Oculus VR is building something that is nothing short of a new medium. Andreessen Horowitz’s Chris Dixon, Balaji Srinivasan and Gil Shafir discuss the present and future potential of virtual reality. Take heart, the holodeck can’t be far away now.

28 Mar 201412min

a16z Podcast: The Rise of Full Stack Startups

a16z Podcast: The Rise of Full Stack Startups

Suppose you develop a new technology that is valuable to some industry. The old approach was to sell or license your technology to the existing companies in that industry. The new approach is to build a complete, end-to-end product or service that bypasses existing companies. Andreessen Horowitz’s Chris Dixon, Balaji Srinivasan and Benedict Evans discuss the reasons behind, and advantages of, going “full stack.”

27 Mar 201418min

a16z Podcast: Searching for Mobile’s Own PageRank

a16z Podcast: Searching for Mobile’s Own PageRank

The mobile experience is still in its 1995 Yahoo phase, a sea of apps and websites without an easy way to find what you want and need on your smartphone. What will be mobile’s version of PageRank, the algorithm that made the web manageable? What is the interaction model and the form - app, card, URL – that will help us find, explore and engage with people, products and services from our mobile devices? Andreessen Horowitz’s Chris Dixon, Benedict Evans and Balaji Srinivasan delve into the options.

24 Mar 201412min

a16z Podcast: Where is the Technology That "Matters?" Right Here

a16z Podcast: Where is the Technology That "Matters?" Right Here

There is a recurring theme that the tech industry is busy cranking out fluffy social apps rather than hardcore technology. Not the case, say Chris Dixon, Benedict Evans and Balaji Srinivasan. Not only are tech entrepreneurs going after the deficiencies in healthcare, transportation, finance, energy - you name it - with new approaches riding on top of sophisticated technologies, what looks like fluff today often wields some serious influence tomorrow.

21 Mar 201414min

a16z Podcast: The State of the Bitcoin Ecosystem, and a Theory on Satoshi

a16z Podcast: The State of the Bitcoin Ecosystem, and a Theory on Satoshi

Andreessen Horowitz's Chris Dixon and Balaji Srinivasan discuss the state of the Bitcoin ecosystem now that the Mt. Gox dust has settled. What's next in crypto-currency, and a theory on Bitcoin creator Satoshi (not Dorian) Nakamoto.

20 Mar 201415min

a16z Podcast: Apple and Google Won the Mobile OS War, But a New War Has Already Begun

a16z Podcast: Apple and Google Won the Mobile OS War, But a New War Has Already Begun

Apple and Google won the mobile OS war, but the next war – to build big businesses on top of Android and iOS – is just beginning. Andreessen Horowitz Partner Benedict Evans untangles what the next phase of mobile means for entrepreneurs, Apple and Google's competitors, and consumers eager for the next great gadget.

13 Mar 201427min

Populært innen Business og økonomi

stopp-verden
dine-penger-pengeradet
e24-podden
rss-penger-polser-og-politikk
rss-borsmorgen-okonominyhetene
finansredaksjonen
utbytte
tid-er-penger-en-podcast-med-peter-warren
aksjesladder
livet-pa-veien-med-jan-erik-larssen
pengepodden-2
morgenkaffen-med-finansavisen
pengesnakk
rss-sunn-okonomi
lederpodden
nordnet-norge
stormkast-med-valebrokk-stordalen
okonomiamatorene
stinn-av-gryn
rss-impressions-2