Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-09-29 02:15:5225-09-29 02:15:5700:00:050 → 5
Maintaining25-09-29 02:15:5725-09-29 02:20:5700:05:005
Decreasing25-09-29 02:20:5725-09-29 02:20:5800:00:010 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 115 (+15) 0 12.19 (-0.90) 3 (0) 60 (-2) 0.38 (+0.05) 0.00 (+0.00)
GET get_analysis_latest_cpe 118 (+18) 0 125.54 (+13.70) 33 (+2) 309 (+15) 0.39 (+0.06) 0.00 (+0.00)
GET get_analysis_status 118 (+18) 0 5.57 (+0.32) 1 (0) 52 (+1) 0.39 (+0.06) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 117 (+17) 0 1036.02 (+227.96) 250 (-161) 1564 (+366) 0.39 (+0.06) 0.00 (+0.00)
GET get_purl_gc 118 (+18) 118 1.42 (+0.12) 1 (0) 5 (-1) 0.39 (+0.06) 0.39 (+0.06)
GET get_sbom[sha256:720e4451…a939656247164447] 118 (+18) 0 1302.11 (+511.08) 213 (+76) 3494 (+1717) 0.39 (+0.06) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 117 (+17) 0 907.18 (+115.36) 283 (-65) 1422 (+330) 0.39 (+0.06) 0.00 (+0.00)
GET list_advisory 116 (+16) 0 447.43 (-130.90) 125 (-176) 988 (+42) 0.39 (+0.05) 0.00 (+0.00)
GET list_advisory_paginated 116 (+16) 0 352.04 (-75.78) 102 (-112) 530 (-44) 0.39 (+0.05) 0.00 (+0.00)
GET list_importer 114 (+14) 0 3.01 (+0.21) 1 (0) 47 (+28) 0.38 (+0.05) 0.00 (+0.00)
GET list_organizations 116 (+16) 0 11.03 (+3.15) 1 (-1) 51 (+16) 0.39 (+0.05) 0.00 (+0.00)
GET list_packages 114 (+14) 0 355.77 (-166.74) 89 (-201) 834 (-95) 0.38 (+0.05) 0.00 (+0.00)
GET list_packages_paginated 114 (+14) 0 330.62 (-70.02) 98 (+40) 562 (-27) 0.38 (+0.05) 0.00 (+0.00)
GET list_products 119 (+19) 0 11.75 (+2.59) 2 (0) 67 (+15) 0.40 (+0.06) 0.00 (+0.00)
GET list_sboms 119 (+19) 0 1287.07 (+11.09) 600 (-22) 1989 (+110) 0.40 (+0.06) 0.00 (+0.00)
GET list_sboms_paginated 119 (+19) 0 2869.34 (+1313.96) 499 (+6) 8072 (+4730) 0.40 (+0.06) 0.00 (+0.00)
GET list_vulnerabilities 115 (+15) 0 229.67 (-88.61) 55 (-42) 364 (-40) 0.38 (+0.05) 0.00 (+0.00)
GET list_vulnerabilities_paginated 114 (+14) 0 172.18 (-24.30) 41 (-67) 289 (+26) 0.38 (+0.05) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 117 (+17) 0 60.50 (-5.17) 10 (+1) 193 (-2) 0.39 (+0.06) 0.00 (+0.00)
GET search_advisory 115 (+15) 0 777.67 (-168.85) 136 (-190) 2112 (+209) 0.38 (+0.05) 0.00 (+0.00)
GET search_exact_purl 119 (+19) 0 9.79 (+1.73) 2 (0) 63 (+7) 0.40 (+0.06) 0.00 (+0.00)
GET search_purls 119 (+14) 0 1820.04 (-3944.47) 603 (-2438) 5299 (-1110) 0.40 (+0.05) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 117 (+17) 0 710.54 (+218.64) 222 (+22) 1099 (+257) 0.39 (+0.06) 0.00 (+0.00)
Aggregated 2684 (+379) 118 562.63 (-104.73) 1 (0) 8072 (+1663) 8.95 (+1.26) 0.39 (+0.06)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (+1) 7 (0) 9 (-2) 11 (-6) 46 (+8) 53 (-2) 56 (0) 60 (-2)
GET get_analysis_latest_cpe 110 (+19) 120 (+22) 150 (+20) 170 (0) 190 (-20) 200 (-40) 280 (+10) 309 (+19)
GET get_analysis_status 3 (+1) 3 (0) 4 (+1) 4 (0) 6 (-1) 46 (+13) 51 (+1) 52 (+1)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 1,000 (+200) 1,000 (+200) 1,000 (+100) 1,000 (+100) 1,000 (+100) 1,000 (0) 1,000 (0) 1,564 (+564)
GET get_purl_gc 1 (0) 1 (0) 1 (0) 2 (+1) 3 (+1) 4 (+1) 4 (-1) 5 (-1)
GET get_sbom[sha256:720e4451…a939656247164447] 430 (-170) 500 (-300) 3,000 (+2,100) 3,000 (+2,000) 3,000 (+1,223) 3,000 (+1,223) 3,000 (+1,223) 3,000 (+1,223)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 900 (+100) 900 (0) 1,000 (+100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 450 (-50) 480 (-120) 500 (-100) 500 (-200) 600 (-200) 700 (-200) 700 (-200) 988 (+88)
GET list_advisory_paginated 370 (-80) 380 (-90) 400 (-90) 410 (-90) 460 (-40) 480 (-20) 500 (-74) 500 (-74)
GET list_importer 2 (0) 2 (0) 3 (+1) 4 (+1) 5 (+1) 7 (-7) 10 (-9) 47 (+28)
GET list_organizations 4 (-2) 5 (-2) 6 (-2) 11 (+1) 41 (+25) 46 (+24) 49 (+15) 51 (+16)
GET list_packages 370 (-100) 380 (-100) 390 (-110) 410 (-190) 490 (-310) 500 (-400) 600 (-300) 800 (-100)
GET list_packages_paginated 320 (-100) 350 (-80) 380 (-80) 390 (-90) 420 (-80) 460 (-40) 500 (-89) 562 (-27)
GET list_products 6 (0) 7 (0) 8 (+1) 10 (+1) 46 (+35) 53 (+7) 59 (+9) 67 (+15)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,989 (+989) 1,989 (+110) 1,989 (+110) 1,989 (+110) 1,989 (+110)
GET list_sboms_paginated 2,000 (0) 3,000 (+1,000) 4,000 (+2,000) 4,000 (+2,000) 5,000 (+3,000) 6,000 (+4,000) 7,000 (+4,000) 8,000 (+5,000)
GET list_vulnerabilities 220 (-120) 250 (-100) 270 (-90) 280 (-90) 290 (-90) 300 (-90) 360 (-40) 360 (-40)
GET list_vulnerabilities_paginated 180 (-20) 190 (-10) 200 (-10) 210 (-10) 220 (0) 260 (+20) 289 (+29) 289 (+29)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 58 (-11) 69 (-6) 75 (-4) 93 (-2) 110 (-10) 160 (0) 190 (+10) 190 (-5)
GET search_advisory 700 (-100) 700 (-200) 900 (-100) 1,000 (0) 1,000 (-903) 2,000 (+97) 2,000 (+97) 2,000 (+97)
GET search_exact_purl 5 (+1) 6 (+2) 7 (+2) 8 (+3) 17 (+8) 51 (-1) 57 (+3) 63 (+7)
GET search_purls 1,000 (-5,000) 1,000 (-5,000) 2,000 (-4,000) 4,000 (-2,000) 4,000 (-2,000) 5,000 (-1,000) 5,000 (-1,000) 5,000 (-1,000)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 700 (+210) 800 (+300) 800 (+200) 900 (+300) 900 (+200) 1,000 (+200) 1,000 (+200) 1,000 (+200)
Aggregated 280 (-70) 390 (-80) 600 (0) 900 (+100) 1,000 (0) 2,000 (0) 5,000 (-1,000) 8,000 (+2,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 115 [200]
GET get_analysis_latest_cpe 118 [200]
GET get_analysis_status 118 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 117 [200]
GET get_purl_gc 118 [403]
GET get_sbom[sha256:720e4451…a939656247164447] 118 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 117 [200]
GET list_advisory 116 [200]
GET list_advisory_paginated 116 [200]
GET list_importer 114 [200]
GET list_organizations 116 [200]
GET list_packages 114 [200]
GET list_packages_paginated 114 [200]
GET list_products 119 [200]
GET list_sboms 119 [200]
GET list_sboms_paginated 119 [200]
GET list_vulnerabilities 115 [200]
GET list_vulnerabilities_paginated 114 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 117 [200]
GET search_advisory 115 [200]
GET search_exact_purl 119 [200]
GET search_purls 119 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 117 [200]
Aggregated 118 [403], 2,566 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 116 (+16) 0 (0) 14.71 (-3.12) 7 (-2) 37 (0) 0.39 (+0.05) 0.00 (+0.00)
1.1 list_organizations 116 (+16) 0 (0) 11.20 (+3.08) 1 (-1) 51 (+15) 0.39 (+0.05) 0.00 (+0.00)
1.2 list_advisory 116 (+16) 0 (0) 447.49 (-130.92) 125 (-176) 988 (+42) 0.39 (+0.05) 0.00 (+0.00)
1.3 list_advisory_paginated 116 (+16) 0 (0) 352.13 (-75.77) 102 (-112) 530 (-44) 0.39 (+0.05) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 115 (+15) 0 (0) 12.30 (-0.82) 3 (0) 60 (-2) 0.38 (+0.05) 0.00 (+0.00)
1.5 search_advisory 115 (+15) 0 (0) 777.73 (-168.85) 136 (-190) 2112 (+209) 0.38 (+0.05) 0.00 (+0.00)
1.6 list_vulnerabilities 115 (+15) 0 (0) 229.77 (-88.54) 55 (-42) 364 (-40) 0.38 (+0.05) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 114 (+14) 0 (0) 172.25 (-24.26) 41 (-67) 289 (+26) 0.38 (+0.05) 0.00 (+0.00)
1.8 list_importer 114 (+14) 0 (0) 3.07 (+0.23) 1 (0) 47 (+28) 0.38 (+0.05) 0.00 (+0.00)
1.9 list_packages 114 (+14) 0 (0) 355.85 (-166.73) 89 (-201) 834 (-95) 0.38 (+0.05) 0.00 (+0.00)
1.10 list_packages_paginated 114 (+14) 0 (0) 330.67 (-70.01) 98 (+40) 562 (-27) 0.38 (+0.05) 0.00 (+0.00)
1.11 search_purls 119 (+14) 0 (0) 1820.08 (-3944.53) 603 (-2438) 5299 (-1110) 0.40 (+0.05) 0.00 (+0.00)
1.12 search_exact_purl 119 (+19) 0 (0) 9.82 (+1.71) 2 (0) 63 (+7) 0.40 (+0.06) 0.00 (+0.00)
1.13 list_products 119 (+19) 0 (0) 11.81 (+2.59) 2 (0) 67 (+15) 0.40 (+0.06) 0.00 (+0.00)
1.14 list_sboms 119 (+19) 0 (0) 1287.13 (+11.11) 600 (-22) 1989 (+110) 0.40 (+0.06) 0.00 (+0.00)
1.15 list_sboms_paginated 119 (+19) 0 (0) 2869.38 (+1313.97) 499 (+6) 8072 (+4730) 0.40 (+0.06) 0.00 (+0.00)
1.16 get_analysis_status 118 (+18) 0 (0) 5.64 (+0.34) 1 (0) 52 (+1) 0.39 (+0.06) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 118 (+18) 0 (0) 125.61 (+13.72) 33 (+2) 309 (+15) 0.39 (+0.06) 0.00 (+0.00)
1.18 get_purl_gc 118 (+18) 0 (0) 1.48 (+0.17) 1 (0) 5 (-1) 0.39 (+0.06) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 118 (+18) 0 (0) 1302.23 (+511.19) 213 (+76) 3495 (+1718) 0.39 (+0.06) 0.00 (+0.00)
1.20 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 117 (+17) 0 (0) 60.57 (-5.23) 10 (+1) 193 (-2) 0.39 (+0.06) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 117 (+17) 0 (0) 907.24 (+115.37) 283 (-65) 1422 (+330) 0.39 (+0.06) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 117 (+17) 0 (0) 710.66 (+218.70) 222 (+22) 1100 (+258) 0.39 (+0.06) 0.00 (+0.00)
1.23 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 117 (+17) 0 (0) 1036.09 (+227.94) 250 (-161) 1564 (+366) 0.39 (+0.06) 0.00 (+0.00)
Aggregated 2,800 (+395) 0 (0) 539.32 (-100.29) 1 (0) 8072 (+1663) 9.33 (+1.32) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 116 (+16) 12788.53 (-2169.69) 6428 (-1350) 20698 (+4281) 0.39 (+0.05) 23.20 (+3.20)
Aggregated 5 (0) 116 (+16) 12788.53 (-2169.69) 6428 (-1350) 20698 (+4281) 0.39 (+0.05) 23.20 (+3.20)

User Metrics

Errors

# Error
118 (+18) 403 Forbidden: get_purl_gc