SpecWeaver: End-to-End HTTP API Specification Inference Across Multi-Layer Routing in Production Web Services
HTTP API specifications are essential for modern web development, yet existing tools fail in production environments due to multi-layer routing. Production deployments employ infrastructure-level and framework-level routing that apply sequential rewrite and dispatch rules, creating a gap between client-visible external paths and internal paths. To address this challenge, we present SpecWeaver, the first tool to automatically extract and unify heterogeneous configuration-defined routing rules with code-level handlers. Our approach combines routing component information gathering, iterative configuration discovery using LLMs, and routing extraction from diverse configuration files to construct a routing graph representation that captures end-to-end routing relationships. Evaluated on 10 production applications, SpecWeaver extracts 36,361 rewrite rules and 48,394 dispatch rules with 99.44%/100% precision, materializes 8,288 external API paths, contributes 5,116 previously undocumented APIs with 160 unauthenticated endpoints, helps an existing testing tool improve testing coverage by 328.6% compared to the baseline, and discovers 305 bugs.
Wed 8 JulDisplayed time zone: Eastern Time (US & Canada) change
10:30 - 12:30 | Requirement and SpecificationResearch Papers / Journal-First Paper at MB 2.430 Chair(s): Neil Ernst University of Victoria | ||
10:30 20mTalk | Automated Repair of Requirements for Cyber-Physical Systems in Simulink Requirements Tables Research Papers Aren Babikian University of Toronto, Alessio Di Sandro University of Toronto, Federico Formica McMaster University, Claudio Menghi University of Bergamo; McMaster University, Marsha Chechik University of Toronto Pre-print | ||
10:50 20mTalk | An empirical study on LLM-based classification of requirements-related provisions in food-safety regulations Journal-First Paper Shabnam Hassani University of Ottawa, Mehrdad Sabetzadeh University of Ottawa, Daniel Amyot University of Ottawa Pre-print | ||
11:10 20mTalk | Speculate: Generating REST API Specifications Using LLMs Research Papers Krishanu Singh IIT Delhi, Kushagra Karar IIT Delhi, Abhilash Jindal IIT Delhi, India, Guowei Yang University of Queensland | ||
11:30 20mTalk | Requirements Coverage-Guided Minimization for Natural Language Test Cases Journal-First Paper RONGQI PAN University of Ottawa, Feifei Niu Graz University of Technology, Lionel Briand University of Ottawa, Canada; Lero centre, University of Limerick, Ireland, Hanyang Hu Company A | ||
11:50 20mTalk | SpecWeaver: End-to-End HTTP API Specification Inference Across Multi-Layer Routing in Production Web Services Research Papers Wenbo Hu Institute of Information Engineering at Chinese Academy of Sciences, Jie Lu SKLP, Institute of Computing Technology, Chinese Academy of Sciences, Jingting Chen Institute of Information Engineering, Chinese Academy of Sciences, Feng Li Key Laboratory of Network Assessment Technology, Institute of Information Engineering, Chinese Academy of Sciences, China; School of CyberSpace Security at University of Chinese Academy of Sciences, China, Chenghang Shi SKLP, Institute of Computing Technology, CAS, Xiaonan Shi Institute of Information Engineering, Chinese Academy of Sciences and School of Cyber Security, University of Chinese Academy of Sciences, Jinchen Wang Institute of Information Engineering, Chinese Academy of Sciences and School of Cyber Security, University of Chinese Academy of Sciences, Wei Huo Institute of Information Engineering at Chinese Academy of Sciences | ||
12:10 20mTalk | CASCADE: Detecting Inconsistencies between Code and Documentation with Automatic Test Generation Research Papers Tobias Kiecker Humboldt-Universität zu Berlin, Jan Arne Sparka Humboldt-Universität zu Berlin, Martin Reuter Humboldt-Universität zu Berlin, Albert Ziegler XBow, Lars Grunske Humboldt-Universität zu Berlin Pre-print | ||