16 Minutes News by a16z

Anatomy of a Hack: SolarWinds and Ripples Beyond


Listen Later

In this special “3x”-long episode of our (otherwise shortform) news analysis show 16 Minutes -- past such 2-3X explainer episodes have covered section 230, Tiktok, GPT-3, the opioid crisis, more -- we cover the SolarWinds hack, one of the largest (if not the largest!) publicly known hacks of all time... and the ripple effects are only now starting to be revealed. Just this week, the U.S. Cybersecurity and Infrastructure Security Agency shared (as reported in the Wall Street Journal) that approximately 30% of both private-sector and government victims linked to the hack had no direct connection to SolarWinds. So who was compromised, do they even know, can they even know?!

Because this hack is a supply-chain compromise involving various third-party software and services all connected together in a "chain of chains", the knock-on effects of it will be revealed (or not!) for years to come. So what do companies -- whether large enterprise, mid-sized startup, or small business -- do? What actually happened, and when does the timeline really begin? While first publicly revealed in December 2020 -- we first covered the news in episode #49 here when it first broke, and there have been countless headlines since (about early known government agency victims, company investigations, other tool investigations, debates over who and how and so on) -- the hack actually began not just a few months but years earlier, involving early tests, legit domains, and a very long game.

We help cut through the headline fatigue of it all, tease apart what's hype/ what's real, and do an "anatomy of a hack" step-by-step teardown -- the who, what, where, when, how; from the chess moves to technical details -- in an in-depth yet accessible way with Sonal Chokshi in conversation with a16z expert and former CSO Joel de la Garza and outside expert Steven Adair, founder and president of Volexity. The information security firm (which specializes in incident response, digital forensics/ memory analysis, network monitoring, and more) not only posted guidance for responding to such attacks, but also an analysis based on working three separate incidents involving the SolarWinds hackers. But how did they know it was the same group? And why was it not quite the perfect crime?

image: Heliophysics Systems Observatory spacecraft characterize, in the highest cadence, the constant stream of particles exploding from the sun affect Earth, the planets, and beyond via NASA Goddard Space Flight Center / Flickr

...more
View all episodesView all episodes
Download on the App Store

16 Minutes News by a16zBy Andreessen Horowitz

  • 4.5
  • 4.5
  • 4.5
  • 4.5
  • 4.5

4.5

105 ratings


More shows like 16 Minutes News by a16z

View all
This Week in Startups by Jason Calacanis

This Week in Startups

1,267 Listeners

a16z Podcast by Andreessen Horowitz

a16z Podcast

1,002 Listeners

The Twenty Minute VC (20VC): Venture Capital | Startup Funding | The Pitch by Harry Stebbings

The Twenty Minute VC (20VC): Venture Capital | Startup Funding | The Pitch

512 Listeners

Invest Like the Best with Patrick O'Shaughnessy by Colossus | Investing & Business Podcasts

Invest Like the Best with Patrick O'Shaughnessy

2,288 Listeners

Azeem Azhar's Exponential View by Azeem Azhar

Azeem Azhar's Exponential View

610 Listeners

NVIDIA AI Podcast by NVIDIA

NVIDIA AI Podcast

324 Listeners

Capital Allocators – Inside the Institutional Investment Industry by Ted Seides – Allocator and Asset Management Expert

Capital Allocators – Inside the Institutional Investment Industry

806 Listeners

Masters of Scale by WaitWhat

Masters of Scale

3,964 Listeners

Bold Names by The Wall Street Journal

Bold Names

1,444 Listeners

FYI - For Your Innovation by ARK Invest

FYI - For Your Innovation

389 Listeners

The Memo by Howard Marks by Oaktree Capital Management

The Memo by Howard Marks

411 Listeners

Raising Health by Andreessen Horowitz, a16z Bio + Health

Raising Health

143 Listeners

a16z Live by Andreessen Horowitz

a16z Live

25 Listeners

Business Breakdowns by Colossus | Investing & Business Podcasts

Business Breakdowns

336 Listeners

web3 with a16z crypto by a16z crypto, Sonal Chokshi, Chris Dixon

web3 with a16z crypto

58 Listeners

BG2Pod with Brad Gerstner and Bill Gurley by BG2Pod

BG2Pod with Brad Gerstner and Bill Gurley

434 Listeners