Increasing Reliability of Programming Interfaces Based on Fuzz Testing

被引:0
|
作者
Khortiuk, Yaroslav [1 ]
Kondratenko, Galyna [1 ]
Sidenko, Ievgen [1 ]
Kondratenko, Yuriy [1 ]
机构
[1] Petro Mohyla Black Sea Natl Univ, Intelligent Informat Syst Dept, Mykolaiv, Ukraine
关键词
fuzzing; fuzz testing; automation; quality assurance; REST API;
D O I
10.1109/dessert50317.2020.9125060
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Over the last decade, there has been a significant growth in web applications for data processing and output, most of them working through the REST API to communicate with third-party applications. Tools for automatically testing web services through their REST API and verifying the reliability and security of these services are still in their infancy. The most sophisticated testing tools currently available for the REST API scan all API traffic in real-time and then analyze, modify, and reproduce it. Many of these tools were born as extensions of more established web site testing and crawling tools. As these REST API testing tools are all recent and not widely used, it is unknown at this time how effective they are in finding errors and how important they are for security. In this paper, using the latest researches in the field, several methods and approaches for fuzzing web interfaces are analyzed. Their comparative analysis of existing techniques allows to see the current state, performance, and appliance to real-world web application and widely used REST API architecture in general.
引用
收藏
页码:272 / 277
页数:6
相关论文
共 50 条
  • [21] Paul Butcher on Fuzz Testing
    Winston, Philip
    IEEE SOFTWARE, 2022, 39 (01) : 118 - 120
  • [22] Machine Learning-Based Fuzz Testing Techniques: A Survey
    Zhang, Ao
    Zhang, Yiying
    Xu, Yao
    Wang, Cong
    Li, Siwei
    IEEE ACCESS, 2024, 12 : 14437 - 14454
  • [23] Research on Network Protocol Vulnerability Discovery Based on Fuzz Testing
    Li, Mingxuan
    He, Ling
    Teng, YangXin
    Wang, Xu
    Zhang, Jianye
    Qing, Song
    PROCEEDINGS OF 2017 IEEE 2ND INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC), 2017, : 1354 - 1358
  • [24] Grammar-based fuzz testing for microprocessor RTL design
    Luo, Dan
    Li, Tun
    Chen, Liqian
    Zou, Hongji
    Shi, Mingchuan
    INTEGRATION-THE VLSI JOURNAL, 2022, 86 : 64 - 73
  • [25] DPFuzz: A fuzz testing tool based on the guidance of defect prediction
    Cui, Zhanqi
    Jin, Haochen
    Chen, Xiang
    Wang, Rongcun
    Liu, Xiulei
    SCIENCE OF COMPUTER PROGRAMMING, 2024, 238
  • [26] TECHNIQUE FOR INCREASING THE RELIABILITY OF RADIATION NONDESTRUCTIVE TESTING
    GOLOVANOV, VE
    GOLOVANOVA, SI
    RUSSIAN JOURNAL OF NONDESTRUCTIVE TESTING, 1995, 31 (01) : 74 - 77
  • [27] Fuzz Testing Process Visualization
    Lu, Han-Lin
    Zhuang, Ren-Jie
    Huang, Shih-Kun
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2023, 39 (05) : 1037 - 1059
  • [28] Design and Realization of IE Vulnerabilities Mining Based on Fuzz Testing
    Peng, Sheqiang
    Tian, Zeyi
    MATERIAL SCIENCE, CIVIL ENGINEERING AND ARCHITECTURE SCIENCE, MECHANICAL ENGINEERING AND MANUFACTURING TECHNOLOGY II, 2014, 651-653 : 2032 - 2035
  • [29] TXL-Fuzz: A Long Attention Mechanism-Based Fuzz Testing Model for Industrial IoT Protocols
    Chen, Liangyin
    Wang, Yihan
    Xiang, Xuanyi
    Jin, Dian
    Ren, Yi
    Zhang, Yunhai
    Pan, Zhiwen
    Chen, Yanru
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (23): : 38238 - 38245
  • [30] EBLT - Blueprints testing library using fuzz testing
    Paduraru, Ciprian
    Cristea, Rares
    Stefanescu, Alin
    SOFTWARE IMPACTS, 2024, 21