T06 · System Persistence
- Location
SKILL.md:233- Finding
Persistent Hourly Execution Through Cron
- Content
View full analysis
` (fresh SAD, verify proof and compare pubkey), `/index.json` (menu/goods/fees). 4. Classify: UP (all probes ok), DEGRADED (reachable but something failed), DOWN (timenow unreachable). Sellers = role Seller or fee-bearing services. 5. Publish an HTML report to the doc root `index.html` (atomic write: tmp file + rename). The report doubles as catalog/flyer source material. 6. Run from cron hourly; log runs and keep `last-report.json` state. ``` ### Technical Analysis The Skill directs the operator or agent to install an hourly cron job. Cron survives the initiating Skill run and continues to perform network requests and filesystem writes across sessions without renewed user authorization. Health monitoring is related to the declared CARP functionality, but persistent scheduling is not necessary for ordinary on-demand queue processing or endpoint management. The instructions do not define a least-privileged account, bounded execution time, network allowlist, secure cron environment, retention policy, or removal procedure. The scheduled process also consumes directory information and publishes generated HTML. If directory data, peer metadata, or report content is malicious or improperly escaped by the eventual implementation, repeated unattended processing can amplify downstream risks. ### Attack ...[truncated 1108 chars]- Remediation
View remediation
