T07 · Tool Hijacking and Spoofing
- Location
SKILL.md:27- Finding
PATH-Based Helper Suite Hijacking
- Content
View full analysis
/dev/null)" 2>/dev/null || echo "$HOME/.claude/skills/flutter-updater/bin")" _SKILL_BASE="$(dirname "$_SKILL_DIR" 2>/dev/null || echo "$HOME/.claude/skills/flutter-updater")" ``` ### Technical Analysis The mandatory preamble uses `which flutter-updater-config` to locate an executable through the process's `PATH`. It then treats the executable's parent hierarchy as the trusted Skill installation directory. Subsequent phases execute numerous programs relative to the resulting `$_SKILL_BASE`, including configuration, version-checking, project-state, target-detection, SDK-check, classification, changelog, and report-saving helpers. Consequently, control of the first `flutter-updater-config` entry in `PATH` effectively provides control over the helper suite used by the Skill. The fallback path does not protect against this issue because it is only selected when lookup fails. An attacker-controlled executable that resolves successfully prevents the fallback from being used. The commands are also run automatically during the mandatory preamble, before the user approves any SDK or breaking dependency update. The project artifact contains only Markdown files and does not include the referenced helper implementations. Their integrity and internal network behavior therefore cannot be independently verified through this artifact. ### Attack Path 1. An attacker obtains the ability to create files in a directory that appears before the legitimate Skill directory in the victim's `PATH`. This could be a compromised development tool directory, user-writable local binary directory, or manipulated shell environment. 2. The attacker creates an executable named `flutter-updater-config` in that directory. 3. The attacker places additiona ...[truncated 1082 chars]- Remediation
View remediation
