ArXivCSExplorer
☆☆Bookmarks🏆RSSHow to UseFAQ
Built with and by Teycir Ben Soltane•
How to Use•FAQ•GitHub•arXiv.org•
Share:

20 results for “Understanding of REST APIs”

CS papers only

Hybrid search: Keyword + semantic, ranked by combined score.ⓘ

Want pure semantic search? Try claim verification →

cs.CRRecentApr 21, 2026

API Security Based on Automatic OpenAPI Mapping

Yarin Levi, Ran Dubin

The paper introduces Map Reduce Graph (MRG), an unsupervised method that automatically models and secures HTTP REST APIs by learning their structure from real-world traffic, achieving high accuracy an…

View →
cs.SEcs.CRRecentApr 1, 2026

Enhancing REST API Fuzzing with Access Policy Violation Checks and Injection Attacks

Omur Sahin, Man Zhang, Andrea Arcuri

The paper enhances REST API fuzzing by introducing novel automated oracles that detect access policy violations and execute traditional injection attacks, successfully identifying security flaws in mu…

View →
cs.CRcs.SERecentMay 29, 2026

R+R: Reassessing Java Security API Misuse in Current LLMs: A Replication on JCA and JSSE APIs with External Security Knowledge

Tianhe Lu, Eric Spero, Sakuna Harinda Jayasundara, Robert Biddle +1 more

This paper replicates and extends a study on Java security API misuse in LLMs, finding that while newer models improve performance, the misuse risk persists and is significantly mitigated by external…

View →
cs.SEcs.AIRecentMay 27, 2026

Multi-Agent LLM-based Metamorphic Testing for REST APIs

Shehroz Khan, Abdullah Mughees, Gaadha Sudheerbabu, Tanwir Ahmad +1 more

The paper introduces ARMeta, an LLM-based multi-agent system that automates metamorphic testing for REST APIs documented with OpenAPI, demonstrating its ability to find complementary bugs compared to…

View →
cs.SEEmpiricalRecentJul 27, 2026

RESTOR: Automated Test Oracle Generation for RESTful APIs via Reinforcement Learning

Xun Zhou, Zhen Dong, Mingyu Ren, Qiang Li +5 more

A framework called Restor is presented, which generates executable test assertions from a single observed request-response pair in a black-box REST API setting using a fine-tuned Large Language Model.

View →
cs.SEcs.AIcs.CLEmpiricalRecentJul 26, 2026

Where Is the Cost of Third-Party API Routers in Agentic Software Development?

Donghao Fu, Jingxin Li, Xue Jiang, Yihong Dong

This paper conducts an empirical study on the effects of router-side injection in coding agents and evaluates the effectiveness of existing client-side safeguards.

View →
cs.CRRecentMay 26, 2026

The Fault in Our Drafts: Vulnerabilities in RPKI Specification and Software

Oliver Jacobsen, Tobias Kirsch, Haya Schulmann, Niklas Vogel +1 more

This paper analyzes RPKI specifications, demonstrating that vague or conflicting requirements in dozens of RFCs cause systemic vulnerabilities in real-world implementations, leading to 61 undocumented…

View →
cs.PLcs.SETheoreticalRecentJul 17, 2026

A Modular Framework for Stack-Heap and Value Abstractions (Extended Version)

Giacomo Boldini, Luca Negrini, Luca Olivieri, Pietro Ferrara

The paper proposes a generic memory framework for advanced static program analysis, supporting various memory behaviors from different programming languages using Abstract Interpretation theory.

View →
cs.CRcs.DBRecentApr 8, 2026

Interpreting the Error of Differentially Private Median Queries through Randomization Intervals

Thomas Humphries, Tim Li, Shufan Zhang, Karl Knopf +1 more

The paper introduces PostRI, a novel method that allows for computing a Randomization Interval (RI) for differentially private median queries after the median has already been estimated, significantly…

View →
cs.CRcs.MMeess.IVRecentMay 21, 2026

PEMark: Watermarking API Responses Based on Proxy Gateways and Position Encoding

Yifei Zhou, Xianjun Gu, Xinyu Dai, Ming Liu +1 more

PEMark proposes a novel, non-invasive watermarking scheme that embeds traceability information into API responses by exploiting the permutation redundancy of key-value pair ordering, requiring no modi…

View →
cs.NIEmpiricalRecentJul 23, 2026

MSSI: Middleware for Unified Semantic and Syntactic Interoperability in IoT

Sanku Kumar Roy, Sudip Misra, Narendra Singh Raghuwanshi

A middleware solution is proposed for unified semantic and syntactic interoperability in IoT publisher-subscriber framework, using syntax translation and semantic interoperability through a multilayer…

View →
cs.CRcs.AIRecentJun 4, 2026

Will the Agent Recuse Itself? Measuring LLM-Agent Compliance with In-Band Access-Deny Signals

Thamilvendhan Munirathinam

The paper proposes and tests a novel, non-security 'Recuse Signal'—an in-band signal—to allow operators to tell autonomous LLM agents to voluntarily withdraw access, demonstrating that compliant agent…

View →
cs.CRcs.NIRecentMay 6, 2026

Securing the Web with HSTS-Enforced

Aaron van Diepen, Adrian Zapletal, Fernando Kuipers

The paper proposes HSTS-Enforced, a new web security model that flips the default connection from HTTP to HTTPS, eliminating TLS stripping attacks while allowing sites to opt out if they genuinely req…

View →
cs.LGcs.NIEmpiricalRecentJun 28, 2026

Deciphering Region-Level Signatures from Latency Measurements in LEO Satellite Internet

Xiang Shi, Yifei Zhang, Peng Hu

This paper proposes a hierarchical analytical framework to characterize region-level latency differences in Low-Earth orbit satellite Internet using Starlink RTT measurements.

View →
cs.CRcs.AIcs.IRRecentMay 6, 2026

Securing the Agent: Vendor-Neutral, Multitenant Enterprise Retrieval and Tool Use

Francisco Javier Arceo, Varsha Prasad Narsing

The paper proposes a layered, server-side isolation architecture to secure Retrieval-Augmented Generation (RAG) and agentic AI systems in multitenant enterprise environments, ensuring that retrieval a…

View →
cs.CRcs.AIcs.CYRecentApr 13, 2026

Hardening x402: PII-Safe Agentic Payments via Pre-Execution Metadata Filtering

Vladimir Stantchev

The paper introduces presidio-hardened-x402, an open-source middleware that intercepts x402 payment requests to detect and redact PII and enforce spending policies before on-chain settlement.

View →
cs.CRRecentApr 24, 2026

Information-Theoretic Authenticated PIR: From PIR-RV To APIR

Pengzhen Ke, Yuxuan Qin, Liang Feng Zhang

The paper proposes a novel, unconditionally secure information-theoretic Authenticated Private Information Retrieval (itAPIR) scheme that upgrades existing, less secure itPIR-RV schemes without overhe…

View →
cs.CRcs.AIRecentApr 2, 2026

APEX: Agent Payment Execution with Policy for Autonomous Agent API Access

Mohd Safwan Uddin, Mohammed Mouzam, Mohammed Imran, Syed Badar Uddin Faizan

APEX is a research system that adapts HTTP 402-style payment gating for autonomous agents, enabling programmatic spend governance using real-world fiat payment workflows like UPI.

View →