Security News
The Risks of Misguided Research in Supply Chain Security
Snyk's use of malicious npm packages for research raises ethical concerns, highlighting risks in public deployment, data exfiltration, and unauthorized testing.
fastly-search
Advanced tools
A utility for ingesting & querying Fastly accounts with ElasticSearch.
A utility for indexing & querying a Fastly account with ElasticSearch for quick, terse & granular searches.
To use this, you need a Fastly API key & an ElasticSearch 7 compatible server.
$ export ELASTICSEARCH_URL={Your Elasticsearch DSN goes here}
$ export FASTLY_API_KEY={Your Fastly API key goes here}
$ npx fastly-search
Local development depends on Docker, and ships with a Kibana UI for inspecting local results. You can get started with the below commands:
$ docker-compose up -d
$ export ELASTICSEARCH_URL=http://$(docker port fastly-search-elasticsearch 9200)/
$ export FASTLY_API_KEY={Your Fastly API key goes here}
$ open http://$(docker port fastly-search-kibana 5601)/app/discover
$ npm run start
TBC, but in theory this can write to any ElasticSearch 7 host.
active:true AND NOT wafs:*
backends.address:s3.amazonaws.com
vcls.content:"sub vcl_hash"
FAQs
A utility for ingesting & querying Fastly accounts with ElasticSearch.
The npm package fastly-search receives a total of 0 weekly downloads. As such, fastly-search popularity was classified as not popular.
We found that fastly-search demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Snyk's use of malicious npm packages for research raises ethical concerns, highlighting risks in public deployment, data exfiltration, and unauthorized testing.
Research
Security News
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.