본문 바로가기
  • Home

A Study on Blockchain-Based API and WAAP Level Assignment Using Lifecycle as a Value Assessment Model

  • Journal of Software Assessment and Valuation
  • Abbr : JSAV
  • 2024, 20(4), pp.331-342
  • Publisher : Korea Software Assessment and Valuation Society
  • Research Area : Engineering > Computer Science
  • Received : October 25, 2024
  • Accepted : December 20, 2024
  • Published : December 31, 2024

Minchul Kim 1

1Pentasecurity, Inc.

Accredited

ABSTRACT

In this paper, we propose a novel framework for the lifecycle management and value assessment of APIs and Web Application and API Protection (WAAP) using blockchain technology. By integrating blockchain, the framework ensures transparency, security, and traceability, enabling a robust value assessment model based on the interactions and updates logged throughout the lifecycle of APIs and WAAP. The proposed system also introduces a recursive verification process, enhancing security by continuously monitoring API and WAAP integrity. This recursive approach facilitates the verification and recovery processes by utilizing identical mechanisms, ensuring seamless API validation and WAAP restoration when vulnerabilities are detected. The research is motivated by the increasing reliance on APIs in modern application ecosystems and the limitations of traditional API gateways in addressing complex lifecycle and security challenges. Existing approaches often fail to provide the transparency and traceability required for robust security management. Our framework addresses these gaps by employing blockchain to maintain immutable records of API interactions, leveraging cryptographic hashing for integrity verification, and ensuring that only validated APIs meet operational standards. This approach not only enhances security but also establishes a foundation for systematic lifecycle management and value assessment.

Citation status

* References for papers published after 2023 are currently being built.