T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:56- Finding
Unverified Remote Installer Downloaded and Executed Directly
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, lines 56–60
Vulnerability Type: Remote payload retrieval and execution
Risk Level: Criticalbash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / Linuxpowershell irm https://cli.oomol.com/install.ps1 | iex # Windows PowerShellTechnical Analysis
The first-time setup instructions retrieve mutable scripts from external URLs and immediately pass their contents to a command interpreter. Neither command pins a release, verifies a cryptographic signature or checksum, nor gives the user an opportunity to inspect the downloaded code before execution.
Installing the
ooCLI supports the declared Scrapfly functionality, but immediate pipe-to-shell execution is not the minimum privilege or minimum-trust installation method required to achieve that purpose. The effective installer payload is not included in the reviewed project and can change after this Skill has been audited.The project does not establish that the current remote scripts are malicious. Nevertheless, this pattern creates a remote code-execution channel: compromise of the distribution server, publishing account, DNS path, or another relevant supply-chain component could cause arbitrary attacker-controlled code to execute.
Attack Path
- An attacker compromises or gains the ability to modify the installer served from
cli.oomol.com, or otherwise causes that trusted URL to return attacker-controlled script content. - The
oocommand is unavailable, causing a user or agent to follow the documented first-time setup instructions. curlorirmdownloads the modified script.- The shell pipeline forwards the response directly to Bash or PowerShell without integrity verification or review.
- The attacker-controlled script executes with all permissions held by the invoking process.
- The script can then access available local data, modify user-own ...[truncated 782 chars]
- An attacker compromises or gains the ability to modify the installer served from
- Remediation
View remediation
Remediation Suggestions
- Remove the direct
curl | bashandirm | iexinstallation instructions. - Direct users to a versioned release artifact hosted through an authenticated official release channel.
- Pin the installer or binary to a specific reviewed version rather than retrieving a mutable latest script.
- Publish a SHA-256 digest and, preferably, a cryptographic signature backed by a documented verification key.
- Download the artifact to a local file without executing it, then verify its checksum and signature before use.
- Allow the user to inspect the installer and require explicit approval before execution.
- Prefer a platform package manager with signed packages and version pinning where available.
- Run installation with ordinary user privileges. Request elevation only for a narrowly defined operation that demonstrably requires it.
- Document the installer’s expected file changes, network destinations, credential handling, and rollback procedure.
- If automated installation remains necessary, vendor a reviewed installer into the release process and protect updates with reproducible builds, signed provenance, and release integrity controls.
- Remove the direct
