T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:62- Finding
Unverified Remote Shell Script Execution on macOS and Linux
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 62
Vulnerability Type:T03: Remote Payload Retrieval and Execution
Risk Level: HighVulnerable Code:
bash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / LinuxTechnical Analysis
The installation command downloads a mutable script from an external URL and immediately pipes it into Bash. It does not pin an immutable release, display the script for review, or verify a cryptographic checksum or signature before execution.
Although HTTPS protects the script while in transit, it does not ensure that the hosted payload remains identical to the version reviewed during this audit. Compromise of the hosting service, DNS infrastructure, deployment pipeline, or publisher account could cause arbitrary attacker-controlled commands to be returned and executed.
Installing the CLI may be a legitimate setup requirement, but executing an unverified remote script is not the minimum privilege or safest mechanism necessary to support API.Bible read operations.
Attack Path
- The
oocommand is unavailable, causing the user or agent to follow the first-time setup instructions. - An attacker compromises the installer host, its release pipeline, or another component capable of changing the response from
https://cli.oomol.com/install.sh. - The user executes the documented command.
curlretrieves the current remote response without validating its checksum, signature, or immutable version.- Bash immediately executes the response with all permissions available to the invoking account.
- The malicious installer can access local data, alter files or tools, install persistence, or make additional network requests.
Impact Assessment
Successful exploitation provides arbitrary command execution under the invoking user's privileges. The accessible scope may include user files, shell configuration, application credentials, API ...[truncated 335 chars]
- The
- Remediation
View remediation
Remediation Suggestions
-
Remove the pipe-to-shell installation command.
-
Direct users to a trusted package manager or an official, version-pinned release artifact.
-
If a script is unavoidable, separate download from execution so it can be inspected first.
-
Pin the installer to an immutable version rather than a mutable
install.shendpoint. -
Publish a cryptographic checksum or signature through an independent trusted channel and require verification before execution.
-
Run installation with ordinary user privileges unless a narrowly defined operation explicitly requires elevation.
-
Document the installer's expected network connections, filesystem changes, and installed binaries.
-
Prefer an instruction such as:
bash curl -fSLo oo-install.sh "https://trusted.example/releases/v1.2.3/install.sh" echo "<expected-sha256> oo-install.sh" | sha256sum --check - less oo-install.sh bash oo-install.sh
-
