20 results for “Understanding of REST APIs”
CS papers onlyHybrid search: Keyword + semantic, ranked by combined score.ⓘ
Want pure semantic search? Try claim verification →
The paper introduces Map Reduce Graph (MRG), an unsupervised method that automatically models and secures HTTP REST APIs by learning their structure from real-world traffic, achieving high accuracy an…
The paper enhances REST API fuzzing by introducing novel automated oracles that detect access policy violations and execute traditional injection attacks, successfully identifying security flaws in mu…
This paper replicates and extends a study on Java security API misuse in LLMs, finding that while newer models improve performance, the misuse risk persists and is significantly mitigated by external…
The paper introduces ARMeta, an LLM-based multi-agent system that automates metamorphic testing for REST APIs documented with OpenAPI, demonstrating its ability to find complementary bugs compared to…
Xun Zhou, Zhen Dong, Mingyu Ren, Qiang Li +5 more
A framework called Restor is presented, which generates executable test assertions from a single observed request-response pair in a black-box REST API setting using a fine-tuned Large Language Model.
This paper conducts an empirical study on the effects of router-side injection in coding agents and evaluates the effectiveness of existing client-side safeguards.
Oliver Jacobsen, Tobias Kirsch, Haya Schulmann, Niklas Vogel +1 more
This paper analyzes RPKI specifications, demonstrating that vague or conflicting requirements in dozens of RFCs cause systemic vulnerabilities in real-world implementations, leading to 61 undocumented…
The paper proposes a generic memory framework for advanced static program analysis, supporting various memory behaviors from different programming languages using Abstract Interpretation theory.
Thomas Humphries, Tim Li, Shufan Zhang, Karl Knopf +1 more
The paper introduces PostRI, a novel method that allows for computing a Randomization Interval (RI) for differentially private median queries after the median has already been estimated, significantly…
Yifei Zhou, Xianjun Gu, Xinyu Dai, Ming Liu +1 more
PEMark proposes a novel, non-invasive watermarking scheme that embeds traceability information into API responses by exploiting the permutation redundancy of key-value pair ordering, requiring no modi…
A middleware solution is proposed for unified semantic and syntactic interoperability in IoT publisher-subscriber framework, using syntax translation and semantic interoperability through a multilayer…
The paper proposes and tests a novel, non-security 'Recuse Signal'—an in-band signal—to allow operators to tell autonomous LLM agents to voluntarily withdraw access, demonstrating that compliant agent…
The paper proposes HSTS-Enforced, a new web security model that flips the default connection from HTTP to HTTPS, eliminating TLS stripping attacks while allowing sites to opt out if they genuinely req…
This paper proposes a hierarchical analytical framework to characterize region-level latency differences in Low-Earth orbit satellite Internet using Starlink RTT measurements.
The paper proposes a layered, server-side isolation architecture to secure Retrieval-Augmented Generation (RAG) and agentic AI systems in multitenant enterprise environments, ensuring that retrieval a…
The paper introduces presidio-hardened-x402, an open-source middleware that intercepts x402 payment requests to detect and redact PII and enforce spending policies before on-chain settlement.
The paper proposes a novel, unconditionally secure information-theoretic Authenticated Private Information Retrieval (itAPIR) scheme that upgrades existing, less secure itPIR-RV schemes without overhe…
APEX is a research system that adapts HTTP 402-style payment gating for autonomous agents, enabling programmatic spend governance using real-world fiat payment workflows like UPI.