T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:64- Finding
Unverified Remote Shell Script Execution
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 64
Vulnerability Type: Remote payload retrieval and execution
Risk Level: HighVulnerable Code:
bash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / LinuxTechnical Analysis
The installation instruction streams a remotely hosted script directly into Bash. The effective executable payload is retrieved at runtime and can change after the Skill has been reviewed. No fixed release version, cryptographic checksum, digital signature, or manual inspection step is required before execution.
The URL belongs to the vendor identified by the Skill, and the instruction is only presented as a fallback when the CLI is unavailable. Nevertheless, direct
curl | bashexecution creates a supply-chain trust boundary that is unnecessary for ordinary RocketReach search and lookup operations. If the hosting infrastructure, DNS resolution, TLS termination, CDN, or vendor release process is compromised, arbitrary commands can be supplied to the shell.Attack Path
- The
ooCLI is absent, causing the documented first-time setup path to apply. - An agent or user executes the provided installation command.
- The current contents of
https://cli.oomol.com/install.share downloaded without version pinning or independent integrity verification. - The response body is immediately interpreted by Bash.
- A compromised or malicious response executes arbitrary commands with the privileges of the user running the command.
Impact Assessment
The remote payload receives the full ambient privileges of the invoking shell. Depending on those privileges and the payload, it could read or modify user files, access environment variables and local credentials, install additional software, alter shell configuration, establish persistence, or invoke network services. If run from an elevated shell, the potential impact may extend to system-wide compromis ...[truncated 271 chars]
- The
- Remediation
View remediation
Remediation Suggestions
- Do not pipe downloaded content directly into a shell.
- Direct users to a version-pinned release from an authenticated official distribution channel.
- Download the installer to a local file before execution and require explicit user approval.
- Publish and verify a SHA-256 or stronger checksum over a trusted channel.
- Prefer cryptographic release signatures and validate the signer against a pinned vendor key.
- Document the installer's required filesystem and network effects so users can assess its privilege requirements.
- Run installation without administrative privileges unless a specific, documented component requires elevation.
- Where available, use a platform package manager with signed metadata and pinned package versions.
