Executing MIMIKATZ & Password Scraping via NPM ‘Postinstall’ Script – SentinelOne’s Demo – Forensics

In this video, we explore a critical aspect of software security: the execution of malicious programs through ‘postinstall’ scripts in npm packages. SentinelOne sheds light on how threat actors can leverage these scripts, typically used in Node.js development, to initiate attacks such as Mimikatz. We analyze the potential risks when these scripts are run with […]
