2019
DOI: 10.3390/fi11030056
|View full text |Cite
|
Sign up to set email alerts
|

On the Need for a General REST-Security Framework

Abstract: Contemporary software is inherently distributed. The principles guiding the design of such software have been mainly manifested by the service-oriented architecture (SOA) concept. In a SOA, applications are orchestrated by software services generally operated by distinct entities. Due to the latter fact, service security has been of importance in such systems ever since. A dominant protocol for implementing SOA-based systems is SOAP, which comes with a well-elaborated security framework. As an alternative to S… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
3
1

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(1 citation statement)
references
References 43 publications
0
1
0
Order By: Relevance
“…Additionally, IoT solutions consider UPnP for automatic discovering IoT devices connected to a network [33], but this service can become a vulnerability since an attacker can get important information using the UPnP's service discovery protocol [32]. Iacono et al [34] mention that API-keys share the same drawbacks as HTTP basic authentication. The API-key is transferred to the server in plain-text.…”
Section: Introductionmentioning
confidence: 99%
“…Additionally, IoT solutions consider UPnP for automatic discovering IoT devices connected to a network [33], but this service can become a vulnerability since an attacker can get important information using the UPnP's service discovery protocol [32]. Iacono et al [34] mention that API-keys share the same drawbacks as HTTP basic authentication. The API-key is transferred to the server in plain-text.…”
Section: Introductionmentioning
confidence: 99%