T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:58- Finding
Unverified Remote Installation Scripts Are Executed Directly
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, lines 58-62
Vulnerability Type: Remote payload retrieval and execution
Risk Level: HighVulnerable Code
bash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / Linuxpowershell irm https://cli.oomol.com/install.ps1 | iex # Windows PowerShellTechnical Analysis
The first-time setup instructions download installation scripts from an external server and immediately execute them through Bash or PowerShell. Neither command pins the installer to an immutable version nor verifies a cryptographic checksum or publisher signature before execution.
As a result, the code actually executed can change after the Skill has been reviewed. A compromise of the hosting service, publishing account, DNS or TLS infrastructure, or installer delivery pipeline could replace the expected installer with arbitrary commands. The
curl | bashandirm | iexpatterns also prevent users from meaningfully inspecting the downloaded content before it runs.Installing the CLI may be necessary to use the declared connector functionality, but immediate execution of an unverified remote script is not the minimum privilege or minimum-risk mechanism required to perform that setup.
Attack Path
- The
ooCLI is absent, causing the documented first-time setup path to apply. - An attacker compromises or gains control over the remote installer or its delivery infrastructure.
- The attacker modifies
install.shorinstall.ps1to include malicious commands. - A user or agent follows the setup instructions.
- The remote content is passed directly to Bash or PowerShell without verification.
- The malicious commands execute with all privileges available to the invoking user.
Impact Assessment
Successful exploitation permits arbitrary local command execution under the invoking user's account. Depending on that account's permissions ...[truncated 662 chars]
- The
- Remediation
View remediation
Remediation Suggestions
- Remove the direct
curl | bashandirm | iexinstructions. - Prefer a trusted platform package manager with a version-pinned package and documented publisher identity.
- If standalone installers are required, download a specific immutable release to a local file rather than executing a mutable URL:
- Pin an explicit release version.
- Publish an expected SHA-256 or stronger checksum through a separate trusted channel.
- Verify the checksum before execution.
- Verify a cryptographic publisher signature where supported.
- Allow the user to inspect the downloaded script before running it.
- Require explicit user approval before installing software or executing any installer.
- Run installation with ordinary user privileges unless a specific operation demonstrably requires elevation; do not automatically invoke
sudoor an elevated PowerShell session. - Document the files, directories, network destinations, and permissions used by the installer.
- Fail closed if signature or checksum verification does not succeed.
- Remove the direct
