Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-11-29 02:19:2025-11-29 02:19:2700:00:070 → 7
Maintaining25-11-29 02:19:2725-11-29 02:24:2700:05:007
Decreasing25-11-29 02:24:2725-11-29 02:24:4300:00:160 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 38 (0) 0 1031.08 (+99.05) 68 (-16) 3630 (-1817) 0.13 (+0.00) 0.00 (+0.00)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 32.00 (+26.50) 2 (0) 165 (+149) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 17.80 (-23.90) 1 (0) 62 (-106) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory_by_doc_id 10 (0) 0 15.50 (-6.50) 5 (+2) 53 (-4) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (0) 0 250.53 (-14.87) 187 (+142) 373 (-57) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_status 15 (0) 0 12.13 (-1.53) 2 (+1) 53 (-5) 0.05 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 736.20 (-41.10) 222 (+54) 1665 (+482) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 1231.80 (-575.80) 113 (-290) 2604 (-3803) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 56931.54 (-2963.46) 45656 (-9500) 65604 (+126) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (0) 0 9769.90 (+856.80) 7513 (+1013) 13377 (+1350) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory 10 (0) 0 1095.60 (+130.60) 344 (0) 1604 (+336) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 15 (0) 0 15368.00 (+674.00) 10361 (+34) 22476 (+3508) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 10 (0) 0 498.70 (-40.00) 164 (-34) 719 (+14) 0.03 (+0.00) 0.00 (+0.00)
GET list_importer 11 (0) 0 3.27 (-5.91) 1 (0) 6 (-45) 0.04 (+0.00) 0.00 (+0.00)
GET list_organizations 10 (0) 0 16.40 (-4.30) 2 (0) 52 (-19) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages 11 (0) 0 419.45 (-122.00) 170 (-17) 659 (-452) 0.04 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 11 (0) 0 377.00 (+44.55) 119 (-46) 669 (+145) 0.04 (+0.00) 0.00 (+0.00)
GET list_products 15 (0) 0 10.53 (+0.73) 4 (-1) 19 (+4) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms 15 (0) 0 1346.07 (-5.73) 609 (-270) 2671 (-609) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 15 (0) 0 1327.60 (-1653.00) 281 (-395) 2555 (-3630) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 11 (+1) 0 333.09 (-70.61) 91 (-29) 515 (-52) 0.04 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 11 (0) 0 198.18 (-24.91) 34 (-48) 284 (-23) 0.04 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (0) 0 65.60 (-25.30) 11 (+2) 162 (-28) 0.03 (+0.00) 0.00 (+0.00)
GET search_advisory 10 (0) 0 1651.10 (+443.20) 158 (-163) 2580 (-30) 0.03 (+0.00) 0.00 (+0.00)
GET search_exact_purl 15 (0) 0 28.80 (-8.80) 3 (-3) 71 (+8) 0.05 (+0.00) 0.00 (+0.00)
GET search_licenses 1 (-1) 0 79921.00 (+2924.50) 79921 (+15690) 79921 (-9841) 0.00 (-0.00) 0.00 (+0.00)
GET search_purls 15 (0) 0 19093.53 (-5881.47) 12215 (-3519) 26941 (-2138) 0.05 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 186605.00 (+51097.00) 186605 (+51097) 186605 (+51097) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 47996.00 (-10940.00) 47996 (-10940) 47996 (-10940) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 87.40 (-36.30) 7 (-8) 181 (-7) 0.03 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 650.70 (+77.30) 192 (+79) 1414 (+182) 0.03 (+0.00) 0.00 (+0.00)
Aggregated 366 (0) 20 5324.37 (-477.03) 1 (0) 186605 (+51097) 1.22 (+0.00) 0.07 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 800 (+100) 1,000 (+200) 1,000 (0) 1,000 (0) 2,000 (0) 2,000 (0) 3,630 (-1,370) 3,630 (-1,370)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 6 (+3) 6 (+1) 14 (+8) 53 (+47) 64 (+56) 165 (+149) 165 (+149) 165 (+149)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 4 (+1) 7 (-8) 8 (-9) 44 (-49) 47 (-63) 62 (-106) 62 (-106) 62 (-106)
GET get_advisory_by_doc_id 10 (0) 14 (+2) 14 (+2) 15 (-38) 21 (-32) 53 (-4) 53 (-4) 53 (-4)
GET get_analysis_latest_cpe 230 (-100) 230 (-100) 290 (-40) 300 (-30) 310 (-80) 310 (-80) 370 (-60) 370 (-60)
GET get_analysis_status 6 (0) 6 (-4) 8 (-6) 13 (-2) 48 (-8) 48 (-8) 53 (-5) 53 (-5)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 600 (-100) 600 (-200) 900 (-100) 900 (-100) 1,665 (+665) 1,665 (+665) 1,665 (+665) 1,665 (+665)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (0) 1,000 (0) 2,000 (0) 2,000 (-1,000) 2,000 (-3,000) 2,000 (-3,000) 2,604 (-3,396) 2,604 (-3,396)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 58,000 (-3,000) 58,000 (-4,000) 62,000 (-2,000) 65,000 (+1,000) 65,604 (+1,604) 65,604 (+1,604) 65,604 (+604) 65,604 (+604)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 9,000 (+1,000) 9,000 (0) 10,000 (+1,000) 12,000 (+1,000) 13,000 (+1,000) 13,000 (+1,000) 13,000 (+1,000) 13,000 (+1,000)
GET list_advisory 1,000 (0) 1,000 (0) 1,000 (0) 1,604 (+604) 1,604 (+604) 1,604 (+604) 1,604 (+604) 1,604 (+604)
GET list_advisory_labels 14,000 (0) 14,000 (-1,000) 19,000 (+2,000) 20,000 (+2,000) 22,000 (+3,032) 22,000 (+3,032) 22,000 (+3,032) 22,000 (+3,032)
GET list_advisory_paginated 480 (-120) 600 (0) 600 (0) 700 (+100) 700 (+100) 700 (0) 700 (0) 700 (0)
GET list_importer 3 (0) 4 (-1) 4 (-4) 4 (-7) 4 (-8) 4 (-8) 6 (-45) 6 (-45)
GET list_organizations 4 (-2) 4 (-11) 5 (-11) 41 (+7) 48 (-4) 52 (-19) 52 (-19) 52 (-19)
GET list_packages 420 (-60) 470 (-20) 490 (0) 500 (-200) 600 (-200) 600 (-200) 659 (-341) 659 (-341)
GET list_packages_paginated 410 (+40) 420 (+40) 430 (+30) 460 (+30) 460 (-40) 460 (-40) 669 (+169) 669 (+169)
GET list_products 11 (+2) 11 (+2) 13 (0) 13 (0) 15 (+1) 15 (+1) 19 (+4) 19 (+4)
GET list_sboms 900 (-100) 1,000 (0) 2,000 (+1,000) 2,000 (+1,000) 2,671 (+671) 2,671 (+671) 2,671 (-329) 2,671 (-329)
GET list_sboms_paginated 1,000 (-1,000) 1,000 (-2,000) 1,000 (-3,000) 2,000 (-2,000) 2,000 (-4,000) 2,000 (-4,000) 2,555 (-3,445) 2,555 (-3,445)
GET list_vulnerabilities 380 (-90) 420 (-50) 420 (-80) 460 (-40) 500 (0) 500 (-67) 500 (-67) 500 (-67)
GET list_vulnerabilities_paginated 190 (-10) 190 (-50) 280 (+40) 280 (-20) 280 (-27) 280 (-27) 280 (-27) 280 (-27)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 48 (-13) 52 (-13) 63 (-7) 64 (-116) 120 (-60) 160 (-30) 160 (-30) 160 (-30)
GET search_advisory 2,000 (+1,200) 2,000 (+1,200) 2,000 (+1,100) 2,000 (-610) 2,000 (-610) 2,580 (-30) 2,580 (-30) 2,580 (-30)
GET search_exact_purl 10 (-31) 13 (-28) 68 (+5) 68 (+5) 70 (+7) 70 (+7) 71 (+8) 71 (+8)
GET search_licenses 79,921 (+15,690) 79,921 (+15,690) 79,921 (+15,690) 79,921 (-9,841) 79,921 (-9,841) 79,921 (-9,841) 79,921 (-9,841) 79,921 (-9,841)
GET search_purls 19,000 (-7,000) 20,000 (-6,000) 26,000 (-3,000) 26,941 (-2,059) 26,941 (-2,059) 26,941 (-2,059) 26,941 (-2,059) 26,941 (-2,059)
GET search_purls_by_license 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097) 186,605 (+51,097)
GET search_sboms_by_license 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940) 47,996 (-10,940)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 110 (-10) 110 (-20) 120 (-40) 130 (-58) 130 (-58) 180 (-8) 180 (-8) 180 (-8)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 320 (-40) 800 (+430) 800 (-100) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
Aggregated 410 (-10) 600 (-100) 1,000 (0) 2,000 (-1,000) 13,000 (-4,000) 27,000 (-28,000) 66,000 (+2,000) 186,605 (+51,097)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 38 [200]
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory_by_doc_id 10 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 [200]
GET list_advisory 10 [200]
GET list_advisory_labels 15 [200]
GET list_advisory_paginated 10 [200]
GET list_importer 11 [200]
GET list_organizations 10 [200]
GET list_packages 11 [200]
GET list_packages_paginated 11 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 11 [200]
GET list_vulnerabilities_paginated 11 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 [200]
GET search_advisory 10 [200]
GET search_exact_purl 15 [200]
GET search_licenses 1 [200]
GET search_purls 15 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 [200]
Aggregated 346 [200], 20 [404]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 10 (0) 0 (0) 13.50 (-0.50) 8 (0) 18 (-2) 0.03 (+0.00) 0.00 (+0.00)
1.1 list_organizations 10 (0) 0 (0) 16.50 (-4.30) 2 (0) 52 (-19) 0.03 (+0.00) 0.00 (+0.00)
1.2 list_advisory 10 (0) 0 (0) 1095.60 (+130.60) 344 (0) 1604 (+336) 0.03 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 10 (0) 0 (0) 498.90 (-39.80) 165 (-33) 719 (+14) 0.03 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 10 (0) 0 (0) 15.80 (-6.20) 5 (+2) 56 (-1) 0.03 (+0.00) 0.00 (+0.00)
1.5 search_advisory 10 (0) 0 (0) 1651.20 (+443.30) 159 (-162) 2580 (-30) 0.03 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 11 (+1) 0 (0) 333.18 (-70.52) 91 (-29) 515 (-52) 0.04 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 11 (0) 0 (0) 198.27 (-24.82) 34 (-48) 284 (-23) 0.04 (+0.00) 0.00 (+0.00)
1.8 list_importer 11 (0) 0 (0) 3.27 (-6.00) 1 (-1) 6 (-45) 0.04 (+0.00) 0.00 (+0.00)
1.9 list_packages 11 (0) 0 (0) 419.64 (-122.09) 170 (-17) 659 (-453) 0.04 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 11 (0) 0 (0) 377.00 (+44.55) 119 (-46) 669 (+145) 0.04 (+0.00) 0.00 (+0.00)
1.11 search_purls 15 (0) 0 (0) 19093.53 (-5881.53) 12215 (-3519) 26941 (-2138) 0.05 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 15 (0) 0 (0) 28.87 (-8.73) 3 (-3) 71 (+8) 0.05 (+0.00) 0.00 (+0.00)
1.13 list_products 15 (0) 0 (0) 10.73 (+0.87) 4 (-1) 19 (+4) 0.05 (+0.00) 0.00 (+0.00)
1.14 list_sboms 15 (0) 0 (0) 1346.13 (-5.67) 609 (-270) 2671 (-609) 0.05 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (0) 0 (0) 1327.60 (-1653.07) 281 (-395) 2555 (-3630) 0.05 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 15 (0) 0 (0) 12.40 (-1.27) 2 (+1) 53 (-5) 0.05 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (0) 0 (0) 250.53 (-15.00) 187 (+142) 373 (-57) 0.05 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 15 (0) 0 (0) 15368.00 (+673.93) 10361 (+34) 22476 (+3508) 0.05 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 (0) 1231.87 (-575.80) 113 (-290) 2604 (-3803) 0.05 (+0.00) 0.00 (+0.00)
1.20 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 (0) 56931.60 (-2963.40) 45656 (-9500) 65604 (+126) 0.05 (+0.00) 0.00 (+0.00)
1.21 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (0) 0 (0) 65.70 (-25.20) 11 (+2) 162 (-28) 0.03 (+0.00) 0.00 (+0.00)
1.22 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (0) 0 (0) 9769.90 (+856.80) 7513 (+1013) 13377 (+1350) 0.03 (+0.00) 0.00 (+0.00)
1.23 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 (0) 650.80 (+77.40) 192 (+79) 1414 (+182) 0.03 (+0.00) 0.00 (+0.00)
1.24 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 (0) 736.30 (-41.30) 222 (+54) 1665 (+482) 0.03 (+0.00) 0.00 (+0.00)
1.25 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 (0) 87.40 (-36.40) 7 (-8) 181 (-8) 0.03 (+0.00) 0.00 (+0.00)
1.26 download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 32.10 (+26.60) 2 (0) 165 (+149) 0.03 (+0.00) 0.00 (+0.00)
1.27 get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 17.90 (-23.90) 1 (0) 62 (-106) 0.03 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (-1) 0 (0) 0.00 (-7.00) 0 (-7) 0 (-7) 0.00 (-0.00) 0.00 (+0.00)
2.1 search_licenses 1 (-1) 0 (0) 79921.00 (+2924.50) 79921 (+15690) 79921 (-9841) 0.00 (-0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 47996.00 (-10940.00) 47996 (-10940) 47996 (-10940) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 186605.00 (+51097.00) 186605 (+51097) 186605 (+51097) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 37 (-1) 0 (0) 9.38 (-1.67) 6 (0) 22 (+3) 0.12 (-0.00) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 38 (0) 0 (0) 1031.24 (+98.84) 68 (-16) 3630 (-1818) 0.13 (+0.00) 0.00 (+0.00)
Aggregated 413 (-2) 0 (0) 4718.45 (-397.97) 1 (0) 186605 (+51097) 1.38 (-0.01) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 10 (0) 116861.60 (-1624.90) 105153 (-3012) 129821 (-1174) 0.03 (+0.00) 2.00 (+0.00)
RestAPIUserSlow 0 (-1) 0 (-1) 0.00 (-258686.00) 0 (-258686) 0 (-258686) 0.00 (-0.00) 0.00 (-1.00)
RestAPIUserDelete 1 (0) 37 (-1) 8029.24 (+123.03) 6595 (-119) 10606 (-1639) 0.12 (-0.00) 37.00 (-1.00)
Aggregated 6 (-1) 47 (-2) 31185.06 (-4406.51) 6595 (-119) 129821 (-128865) 0.16 (-0.01) 39.00 (-2.00)

User Metrics

Errors

# Error
10 (0) 404 Not Found: download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]
10 (0) 404 Not Found: get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]