T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:37- Finding
Execution of Mutable Remote Installation Payloads
- Content
View full analysis
" src = urllib.request.urlopen("https://stipend.sh/address.py").read().decode() ns = {"__name__": "stipend_address"} exec(src, ns) ns["main"]() ``` ### Technical Analysis Every documented installation route downloads mutable code from `stipend.sh` and immediately executes it. The remote payload is not included in the audited project, pinned to an immutable release, checked against a cryptographic digest, or verified with a trusted signature. The following execution channels are exposed: - Shell execution through `curl | sh` - PowerShell execution through `irm | iex` - Python execution through `urllib.request` and `exec` Displaying Python source with `print(src)` does not enforce review, establish authenticity, or prevent subsequent execution. The effective code can change after the Skill has been reviewed. Consequently, neither the behavior of the installer nor claims that private keys remain local can be verified from the supplied artifact. This exceeds the minimum privileges needed to distribute a wallet. The software could instead be supplied as reviewable, versioned files or an integrity-pinned package without granting a we ...[truncated 1435 chars]- Remediation
View remediation
