T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:67- Finding
Unverified Remote Shell Script Download and Execution
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 67
Vulnerability Type: Remote payload retrieval and execution
Risk Level: HighVulnerable Code:
bash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / LinuxTechnical Analysis
The installation instruction pipes a remotely downloaded script directly into Bash. The script is not pinned to a version, inspected before execution, or verified using a cryptographic checksum or signature. Although HTTPS provides transport protection, it does not prevent execution of a malicious payload if the hosting infrastructure, publisher account, domain, or installation script is compromised.
Because the effective script can change after this Skill has been reviewed, its actual behavior cannot be determined from the audited package. Installing the CLI is also outside the Skill's normal
Bash(oo *)operational scope and exceeds the minimum privileges required when the documented prerequisite—that the CLI is already installed—is enforced.Attack Path
- A Motion operation fails because the
oocommand is unavailable. - The user or agent follows the first-time setup instruction.
curlretrieves the current contents ofhttps://cli.oomol.com/install.sh.- The response is passed directly to Bash without validation or inspection.
- If the remote source or delivery infrastructure has been compromised, attacker-controlled shell commands execute with the privileges of the invoking user.
Impact Assessment
A malicious installer could execute arbitrary commands under the invoking account, read or modify accessible files, collect credentials and agent state, install additional software, alter local tools, or establish persistence. If the command is run from a privileged account or subsequently requests elevated privileges, the impact could extend to system-wide compromise. No evidence proves that the currently hosted script is malicious ...[truncated 68 chars]
- A Motion operation fails because the
- Remediation
View remediation
Remediation Suggestions
- Remove the direct
curl | bashinstallation pattern. - Treat the CLI as a prerequisite and ask the user to install it manually from an independently verified official release.
- Pin installation to a specific release and immutable artifact URL.
- Download the artifact to disk without executing it immediately.
- Verify a publisher-provided SHA-256 checksum and, preferably, a cryptographic signature using a trusted public key.
- Display the source, version, destination, and expected changes before requesting explicit user approval.
- Run installation with ordinary user privileges and avoid elevation unless a documented step strictly requires it.
- Fail safely when verification cannot be completed.
- Remove the direct
