T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:57- Finding
Unverified Remote Bash Installer Execution
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 57
Vulnerability Type: Remote payload retrieval and execution
Risk Level: HighVulnerable Code:
bash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / LinuxTechnical Analysis
The installation instruction downloads a mutable script from an external URL and pipes it directly into Bash. The script is executed without first saving and inspecting it, pinning it to a reviewed version, or validating a cryptographic checksum or digital signature.
The package does not contain the installer, so its effective behavior cannot be determined from the audited files. If the hosting account, domain, DNS resolution, TLS termination, or release pipeline is compromised, the remote response can be replaced with arbitrary shell commands after this Skill has been reviewed.
Installing the required CLI supports the declared Táve integration, but executing unverified remote content is not the minimum privilege or minimum-risk mechanism needed to install it.
Attack Path
- The
ooCLI is unavailable and an operator follows the documented first-time setup. - An attacker compromises or otherwise gains control over the installer delivery path.
- The attacker modifies
install.shto contain malicious shell commands. curlretrieves the modified response.- The pipe sends the response directly to Bash without integrity verification or review.
- The malicious commands execute with the privileges of the user running the installation command.
Impact Assessment
Successful exploitation provides arbitrary command execution under the invoking user's account. The resulting payload could read or modify user-accessible files, steal locally available credentials or session data, alter shell configuration, install persistence mechanisms, or compromise other accounts and services accessible from the host. If the command is run with elevated p ...[truncated 59 chars]
- The
- Remediation
View remediation
Remediation Suggestions
Remove the pipe-to-shell installation command. Distribute the CLI through a trusted operating-system package manager or provide a version-pinned release artifact from an official release channel. Publish a SHA-256 or stronger checksum and a digital signature through an independently protected channel, then require verification before execution.
If a script remains necessary, download it to a local file, verify its signature and expected digest, allow it to be inspected, and execute it only after explicit user approval. Document the files, network access, and privileges required by the installer, and advise users not to run it as an administrator unless a specific operation strictly requires elevation.
