T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:17- Finding
Remote Bun Installer Is Downloaded and Executed Without Integrity Verification
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 17
Vulnerability Type: Remote payload retrieval and execution
Risk Level: HighComplete Code Snippet:
bash # Install Bun first curl -fsSL https://bun.sh/install | bash export PATH="$HOME/.bun/bin:$PATH"Technical Analysis
The installation instructions pipe a remotely retrieved script directly into
bash. Althoughbun.shis the official Bun domain and HTTPS provides transport protection, the downloaded script is mutable and is neither pinned to a specific release nor checked against a cryptographic digest or signature.Consequently, the code actually executed can differ from the content reviewed in this Skill. The shell receives the current response from the remote endpoint with the permissions of the user following the instructions. The
-f,-s,-S, and-Loptions affect HTTP behavior but do not authenticate the contents of the script beyond ordinary TLS validation.This exceeds the minimum privilege needed to document or invoke the Supalytics CLI. Installing a runtime may be necessary when Bun is absent, but immediate execution of an unverified, mutable response is not necessary.
Attack Path
- A user or agent follows the installation instructions.
curlrequests the current installer fromhttps://bun.sh/install.- If the hosting account, CDN, DNS/TLS trust chain, or upstream installer is compromised, the response can contain attacker-controlled shell commands.
- The response is passed directly to
bashwithout review or integrity validation. - The payload executes with the invoking user's permissions and can modify files, credentials, shell configuration, or installed tools available to that account.
Impact Assessment
Successful exploitation provides arbitrary command execution as the user running the installation command. This can expose that user's analytics credentials, OAuth tokens, source code, ...[truncated 251 chars]
- Remediation
View remediation
Remediation Suggestions
- Do not pipe a network response directly into a shell.
- Prefer an operating-system package manager or a documented, version-pinned Bun release.
- Download the installer or release artifact to a local file, verify a publisher-provided cryptographic signature or SHA-256 digest, inspect it, and only then execute it.
- Pin the expected Bun version rather than relying on the latest mutable installer.
- Run installation as an unprivileged user and clearly warn users not to invoke the installer with
sudo. - Treat runtime installation as a user-confirmed prerequisite rather than automatically executing it in an agent context.
