T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:64- Finding
Unverified Remote Installer Download and Immediate Execution
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, lines 64–68
Vulnerability Type: Remote payload retrieval and execution
Risk Level: Highbash curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / Linuxpowershell irm https://cli.oomol.com/install.ps1 | iex # Windows PowerShellTechnical Analysis
The setup instructions download mutable scripts from an external server and immediately execute them through Bash or PowerShell. Neither command pins a specific installer version, verifies a cryptographic signature or checksum, nor gives the user an opportunity to inspect the downloaded content before execution.
Although the source domain is associated with the declared OOMOL service and the instructions are only intended for first-time setup, the effective code executed is controlled by the remote endpoint and can change after the Skill has been reviewed. Installing the CLI is also outside the minimum privileges required to perform an individual Worksnaps read operation. An installation operation may modify executable paths, shell configuration, user files, or other local state.
The equivalent Windows pattern,
irm ... | iex, has the same trust-boundary failure ascurl ... | bash: server-provided text is interpreted directly as local code.Attack Path
- The
oocommand is unavailable, causing the Agent or user to follow the first-time setup instructions. - An attacker compromises the installer publication process, the remote server, or another relevant delivery-chain component.
- The attacker substitutes the expected installer with a malicious shell or PowerShell payload.
curlorInvoke-RestMethoddownloads the attacker-controlled response.- The pipe passes the response directly to Bash or
Invoke-Expressionwithout integrity verification or inspection. - The payload executes with the privileges of the user running the setup comma ...[truncated 841 chars]
- The
- Remediation
View remediation
Remediation Suggestions
-
Remove the direct
curl | bashandirm | iexinstallation patterns. -
Prefer an operating-system package manager or a pinned release from a verified official repository.
-
Pin the CLI to an explicit version rather than retrieving a mutable installer.
-
Download the installer or binary to a local file without executing it immediately.
-
Verify a publisher signature or a checksum obtained through an independently authenticated channel before execution.
-
Present the exact artifact, version, source, expected changes, and required privileges to the user.
-
Require explicit user approval before installing software or modifying the local environment.
-
Run the installer without elevated privileges unless a documented installation step strictly requires them.
-
If an installation script must be supported, use a workflow equivalent to:
bash curl -fSLo oo-install.sh "https://trusted.example/oo-install-v1.0.3.sh" echo "<PINNED_SHA256> oo-install.sh" | sha256sum -c - less oo-install.sh bash oo-install.sh -
Publish and verify signed release artifacts, document their expected filesystem changes, and provide uninstall instructions.
-
