Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
mongodb-openvz-crashtest
Advanced tools
Stress test for MongoDB running under OpenVZ.
If you want to run MongoDB on a VPS (virtual private server), you might encounter frightening messages when looking in the log-file or when opening the shell:
[initandlisten]
[initandlisten] ** WARNING: You are running in OpenVZ. This is known to be broken!!!
[initandlisten]
There are many sources in the web, some of them are out-dated, others not. To be sure whether you really run into problems, it is possible to test this with this little node.js program.
No guarantee that a negative test means that you won't have any problems!
Either clone this git repo or install with npm install mongodb-openvz-crashtest
.
You can change the configuration by editing config.json
. In my example I used 2MB as the document
size and 4K documents to create at least 8GB of volume, as my VPS has 8GB of virtual memory.
In the directory of the installed package, run node .
Find more infos and links on my wiki page.
I already had Node.js installed on my VPS. Didn't want to install Java and Maven and neither wanted to run the test through ssh-tunnel. If you prefer to use a Java program for this, have a look at zlowred / mongodb-openvz-test.
MIT
FAQs
Stress test for MongoDB running under OpenVZ
The npm package mongodb-openvz-crashtest receives a total of 1 weekly downloads. As such, mongodb-openvz-crashtest popularity was classified as not popular.
We found that mongodb-openvz-crashtest demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.