Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
logzio-nodejs
Advanced tools
A nodejs implementation for sending logs to Logz.IO cloud service Copy of logzio-nodejs
NodeJS logger for Logz.io. The logger stashes the log messages you send into an array which is sent as a bulk once it reaches its size limit (100 messages) or time limit (10 sec) in an async fashion. It contains a simple retry mechanism which upon connection reset (server side) or client timeout, wait a bit (default interval of 2 seconds), and try this bulk again. It does not block other messages from being accumulated and sent (async). The interval increases by a factor of 2 between each retry until it reaches the maximum allowed attempts (3).
By default, any error is logged to the console. This can be changed by supplying a callback function.
Nodejs
with version 14.x or abovevar logger = require('logzio-nodejs').createLogger({
token: '__YOUR_ACCOUNT_TOKEN__',
type: 'YourLogType' // OPTIONAL (If none is set, it will be 'nodejs')
});
// sending text
logger.log('This is a log message');
// sending an object
var obj = {
message: 'Some log message',
param1: 'val1',
param2: 'val2'
};
logger.log(obj);
Note: If logzio-js is used as part of a serverless service (AWS Lambda, Azure Functions, Google Cloud Functions, etc.), add logger.sendAndClose()
at the end of the run. For example sync Lambda and async Lambda
http
, https
or udp
. Default: http
listener.logz.io
udp
default port is 5050
, for http
is 8070
and 8071
is for https
2000
(2 sec)100
.3
false
@timestamp_nano
Default: false
false
extraFields : { field_1: "val_1", field_2: "val_2" , ... }
.A few notes are worth mentioning regarding the use of the UDP protocol:
bufferSize
is slightly different in this case. The messages will still be sent separately, but the logger will wait for the buffer to reach the size specified before sending out all the messages. If you want each message to be sent out immediately, then set bufferSize = 1
.2.1.8
User-Agent
not optional and add the version to it.2.1.7
axios
to v1.6.4
(contributed by @gcagle3)2.1.6
14-20
axios
to v1.6.0
(contributed by @gcagle3)2.1.5
2.1.4
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.0.4 - 1.0.6
1.0.3
1.0.2
1.0.1
0.4.14
0.4.12
0.4.6
0.4.4
@timestamp
and @timestamp_nano
will no longer be overriden given a custom value by the user.0.4.3
@timestamp
field to the logs on the client's machine (and not when it reaches the server)0.4.1
request
dependency to 2.75.00.4.0
0.3.10
0.3.9
0.3.8
sendAndClose()
method which immediately sends the queued messages and clears the global timer0.3.6
0.3.5
0.3.4
jsonToString()
was throwing an error in the catch()block0.3.2
0.3.1
log
with a string parameter, the object isn't constructed properly.npm install
to install required dependenciesnpm test
to run unit testsFAQs
A nodejs implementation for sending logs to Logz.IO cloud service Copy of logzio-nodejs
The npm package logzio-nodejs receives a total of 33,181 weekly downloads. As such, logzio-nodejs popularity was classified as popular.
We found that logzio-nodejs demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.