Skip to main content

Showing 1–15 of 15 results for author: Corradini, D

.
  1. Mining REST APIs for Potential Mass Assignment Vulnerabilities

    Authors: Arash Mazidi, Davide Corradini, Mohammad Ghafari

    Abstract: REST APIs have a pivotal role in accessing protected resources. Despite the availability of security testing tools, mass assignment vulnerabilities are common in REST APIs, leading to unauthorized manipulation of sensitive data. We propose a lightweight approach to mine the REST API specifications and identify operations and attributes that are prone to mass assignment. We conducted a preliminary… ▽ More

    Submitted 4 May, 2024; v1 submitted 2 May, 2024; originally announced May 2024.

    Comments: EASE 2024

  2. arXiv:2301.01261  [pdf, ps, other

    cs.CR cs.SE

    Automated Black-box Testing of Mass Assignment Vulnerabilities in RESTful APIs

    Authors: Davide Corradini, Michele Pasqua, Mariano Ceccato

    Abstract: Mass assignment is one of the most prominent vulnerabilities in RESTful APIs. This vulnerability originates from a misconfiguration in common web frameworks, such that naming convention and automatic binding can be exploited by an attacker to craft malicious requests writing confidential resources and (massively) overriding data, that should be read-only and/or confidential. In this paper, we adop… ▽ More

    Submitted 3 January, 2023; originally announced January 2023.

    Comments: To be published in the proceedings of the 45th IEEE/ACM International Conference on Software Engineering (ICSE 2023)

  3. arXiv:2108.08209  [pdf, other

    cs.SE

    Restats: A Test Coverage Tool for RESTful APIs

    Authors: Davide Corradini, Amedeo Zampieri, Michele Pasqua, Mariano Ceccato

    Abstract: Test coverage is a standard measure used to evaluate the completeness of a test suite. Coverage is typically computed on source code, by assessing the extent of source code entities (e.g., statements, data dependencies, control dependencies) that are exercised when running test cases. When considering REST APIs, an alternative perspective to assess test suite completeness is with respect to the se… ▽ More

    Submitted 18 August, 2021; originally announced August 2021.

  4. arXiv:2108.08196  [pdf, other

    cs.SE

    Empirical Comparison of Black-box Test Case Generation Tools for RESTful APIs

    Authors: Davide Corradini, Amedeo Zampieri, Michele Pasqua, Mariano Ceccato

    Abstract: In literature, we can find research tools to automatically generate test cases for RESTful APIs, addressing the specificity of this particular programming domain. However, no direct comparison of these tools is available to guide developers in deciding which tool best fits their REST API project. In this paper, we present the results of an empirical comparison of automated black-box test case gene… ▽ More

    Submitted 18 August, 2021; originally announced August 2021.

  5. arXiv:2002.01785  [pdf, other

    cs.SE

    A Framework for In-Vivo Testing of Mobile Applications

    Authors: Mariano Ceccato, Davide Corradini, Luca Gazzola, Fitsum Meshesha Kifetew, Leonardo Mariani, Matteo Orrù, Paolo Tonella

    Abstract: The ecosystem in which mobile applications run is highly heterogeneous and configurable. All layers upon which mobile apps are built offer wide possibilities of variations, from the device and the hardware, to the operating system and middleware, up to the user preferences and settings. Testing all possible configurations exhaustively, before releasing the app, is unaffordable. As a consequence, t… ▽ More

    Submitted 5 February, 2020; originally announced February 2020.

    Comments: Research paper accepted to ICST'20, 10+1 pages

  6. arXiv:1512.08369  [pdf, other

    physics.chem-ph cond-mat.mtrl-sci physics.comp-ph

    Insight into the Li$_2$CO$_3$-K$_2$CO$_3$ eutectic mixture from classical molecular dynamics: thermodynamics, structure and dynamics

    Authors: Dario Corradini, François-Xavier Coudert, Rodolphe Vuilleumier

    Abstract: In this work, we use molecular dynamics simulations to study the thermodynamics, structure and dynamics of the Li$_2$CO$_3$-K$_2$CO$_3$ (62:38 mol%) eutectic mixture. We present a new classical non-polarizable force field for this molten salt mixture, optimized using experimental and first principles molecular dynamics simulations as reference data. This simple force field allows efficient molecul… ▽ More

    Submitted 16 March, 2016; v1 submitted 28 December, 2015; originally announced December 2015.

    Journal ref: J. Chem. Phys., 2016, 144 (10), 104507

  7. arXiv:1403.5525  [pdf, other

    cond-mat.mtrl-sci

    Tuning the Electronic Structure of Anatase Through Fluorination

    Authors: Dario Corradini, Damien Dambournet, Mathieu Salanne

    Abstract: A highly fluorinated anatase lattice has been recently reported, providing a new class of materials whose general chemical formula is $\rm Ti_{1- \mathit x}\square_{\mathit x}X_{4\mathit x}O_{2- 4\mathit x}$ (X$^-$ = F$^-$ or OH$^-$). To characterise the complex structural features of the material and the different F environments, we here apply a computational screening procedure. After deriving a… ▽ More

    Submitted 26 May, 2015; v1 submitted 21 March, 2014; originally announced March 2014.

    Comments: 13 pages, 5 figures, 5 supplementary figures, 2 supplementary tables. Updated version. Accepted for publication in Scientific Reports

    Journal ref: Scientific Reports 5, 11553 (2015)

  8. arXiv:1402.4237  [pdf, other

    cond-mat.mtrl-sci physics.chem-ph

    Prediction of the thermophysical properties of molten salt fast reactor fuel from first-principles

    Authors: A. E. Gheribi, D. Corradini, L. Dewan, P. Chartrand, C. Simon, P. A. Madden, M. Salanne

    Abstract: Molten fluorides are known to show favorable thermophysical properties which make them good candidate coolants for nuclear fission reactors. Here we investigate the special case of mixtures of lithium fluoride and thorium fluoride, which act both as coolant and fuel in the molten salt fast reactor concept. By using ab initio parameterized polarizable force fields, we show that it is possible to ca… ▽ More

    Submitted 18 February, 2014; originally announced February 2014.

    Comments: 6 pages, 4 figures

    Journal ref: Mol. Phys., 112, 1305-1312, 2014

  9. arXiv:1402.4191  [pdf, other

    cond-mat.mtrl-sci physics.chem-ph

    Effect of dispersion interactions on the properties of LiF in condensed phases

    Authors: Dario Corradini, Dario Marrocchelli, Paul A. Madden, Mathieu Salanne

    Abstract: Classical molecular dynamics simulations are performed on LiF in the framework of the polarizable ion model. The overlap-repulsion and polarization terms of the interaction potential are derived on a purely non empirical, first-principles basis. For the dispersion, three cases are considered: a first one in which the dispersion parameters are set to zero and two others in which they are included,… ▽ More

    Submitted 17 February, 2014; originally announced February 2014.

    Comments: 8 pages, 5 figures

    Journal ref: J. Phys.: Condens. Matter, 26, 244103, 2014

  10. Fragile to strong crossover coupled to liquid-liquid transition in hydrophobic solutions

    Authors: D. Corradini, P. Gallo, S. V. Buldyrev, H. E. Stanley

    Abstract: Using discrete molecular dynamics simulations we study the relation between the thermodynamic and diffusive behaviors of a primitive model of aqueous solutions of hydrophobic solutes consisting of hard spheres in the Jagla particles solvent, close to the liquid-liquid critical point of the solvent. We find that the fragile-to-strong dynamic transition in the diffusive behavior is always coupled to… ▽ More

    Submitted 7 May, 2012; v1 submitted 30 March, 2012; originally announced April 2012.

    Comments: 6 pages, 4 figures. Accepted for publication on Physical Review E

  11. arXiv:1101.5311  [pdf, ps, other

    cond-mat.soft

    Structural Properties of High and Low Density Water in a Supercooled Aqueous Solution of Salt

    Authors: D. Corradini, M. Rovere, P. Gallo

    Abstract: We consider and compare the structural properties of bulk TIP4P water and of a sodium chloride aqueous solution in TIP4P water with concentration c = 0.67 mol/kg, in the metastable supercooled region. In a previous paper [D. Corradini, M. Rovere and P. Gallo, J. Chem. Phys. 132, 134508 (2010)] we found in both systems the presence of a liquid-liquid critical point (LLCP). The LLCP is believed to b… ▽ More

    Submitted 27 January, 2011; originally announced January 2011.

    Comments: 10 pages, 10 figures, 2 tables. Accepted for publication on J. Phys. Chem B

    Journal ref: J. Phys. Chem. B 115(6), 1461-1468 (2011)

  12. Effect of hydrophobic solutes on the liquid-liquid critical point

    Authors: Dario Corradini, Sergey V. Buldyrev, Paola Gallo, H. Eugene Stanley

    Abstract: Jagla ramp particles, interacting through a ramp potential with two characteristic length scales, are known to show in their bulk phase thermodynamic and dynamic anomalies, similar to what is found in water. Jagla particles also exhibit a line of phase transitions separating a low density liquid phase and a high density liquid phase, terminating in a liquid-liquid critical point in a region of the… ▽ More

    Submitted 21 June, 2010; originally announced June 2010.

    Comments: 8 pages, 7 figures, 1 table. In press (Phys. Rev. E)

  13. arXiv:1003.5199  [pdf, ps, other

    cond-mat.soft

    A route to explain water anomalies from results on an aqueous solution of salt

    Authors: D. Corradini, M. Rovere, P. Gallo

    Abstract: In this paper we investigate the possibility to detect the hypothesized liquid-liquid critical point of water in supercooled aqueous solutions of salts. Molecular dynamics computer simulations are conducted on bulk TIP4P water and on an aqueous solution of sodium chloride in TIP4P water, with concentration c = 0.67 mol/kg. The liquid-liquid critical point is found both in the bulk and in the solu… ▽ More

    Submitted 26 March, 2010; originally announced March 2010.

    Comments: 5 pages, 6 figures. Accepted for publication on the Journal of Chemical Physics (2010).

    Journal ref: J. Chem. Phys. 132, 134508 (2010)

  14. arXiv:0903.3914  [pdf, ps, other

    cond-mat.soft

    Effect of concentration on the thermodynamics of sodium chloride aqueous solutions in the supercooled regime

    Authors: D. Corradini, P. Gallo, M. Rovere

    Abstract: Molecular Dynamics simulations are performed on two sodium chloride solutions in TIP4P water with concentrations c=1.36 mol/kg and c=2.10 mol/kg upon supercooling. The isotherms and isochoresplanes are calculated. The temperature of maximum density line and the limit of mechanical stability line are obtained from the analysis of the thermodynamic planes. The comparison of the results shows that… ▽ More

    Submitted 23 March, 2009; originally announced March 2009.

    Comments: 8 pages, 10 figures, 1 table. To be published on J. Chem. Phys

    Journal ref: J. Chem. Phys. 130, 154511 (2009)

  15. arXiv:0805.2565  [pdf, ps, other

    cond-mat.soft

    Thermodynamic behaviour and structural properties of an aqueous sodium chloride solution upon supercooling

    Authors: D. Corradini, P. Gallo, M. Rovere

    Abstract: We present the results of a molecular dynamics simulation study of thermodynamic and structural properties upon supercooling of a low concentration sodium chloride solution in TIP4P water and the comparison with the corresponding bulk quantities. We study the isotherms and the isochores for both the aqueous solution and bulk water. The comparison of the phase diagrams shows that thermodynamic pr… ▽ More

    Submitted 16 May, 2008; originally announced May 2008.

    Comments: 10 pages, 13 figures, 2 tables. To be published in J. Chem. Phys

    Journal ref: J. Chem. Phys. 128, 244508 (2008)