Web Agents Should Adopt the Plan-Then-Execute Paradigm
Fuente:
arXiv
Saved in:
| Main Authors: | Piet, Julien, Chow, Annabella, Hou, Yiwei, Lyu, Muxi, Venuto, Sylvie, Zhu, Jinhao, Popa, Raluca Ada, Wagner, David |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Semantic-Aware Parsing for Security Logs
by: Piet, Julien, et al.
Published: (2025)
by: Piet, Julien, et al.
Published: (2025)
ColorGo: Directed Concolic Execution
by: Li, Jia, et al.
Published: (2025)
by: Li, Jia, et al.
Published: (2025)
SeeWasm: An Efficient and Fully-Functional Symbolic Execution Engine for WebAssembly Binaries
by: He, Ningyu, et al.
Published: (2024)
by: He, Ningyu, et al.
Published: (2024)
Opal: Private Memory for Personal AI
by: Kaviani, Darya, et al.
Published: (2026)
by: Kaviani, Darya, et al.
Published: (2026)
Why Johnny Adopts Identity-Based Software Signing: A Usability Case Study of Sigstore
by: Kalu, Kelechi G., et al.
Published: (2025)
by: Kalu, Kelechi G., et al.
Published: (2025)
LLM Agents for Automated Web Vulnerability Reproduction: Are We There Yet?
by: Liu, Bin, et al.
Published: (2025)
by: Liu, Bin, et al.
Published: (2025)
What You Trust Is Insecure: Demystifying How Developers (Mis)Use Trusted Execution Environments in Practice
by: Niu, Yuqing, et al.
Published: (2025)
by: Niu, Yuqing, et al.
Published: (2025)
MiniScope: A Least Privilege Framework for Authorizing Tool Calling Agents
by: Zhu, Jinhao, et al.
Published: (2025)
by: Zhu, Jinhao, et al.
Published: (2025)
FuzzAgent: Multi-Agent System for Evolutionary Library Fuzzing
by: Lyu, Yunlong, et al.
Published: (2026)
by: Lyu, Yunlong, et al.
Published: (2026)
JailbreaksOverTime: Detecting Jailbreak Attacks Under Distribution Shift
by: Piet, Julien, et al.
Published: (2025)
by: Piet, Julien, et al.
Published: (2025)
RiskTagger: An LLM-based Agent for Automatic Annotation of Web3 Crypto Money Laundering Behaviors
by: Lin, Dan, et al.
Published: (2025)
by: Lin, Dan, et al.
Published: (2025)
AgentGuard: A Multi-Agent Framework for Robust Package Confusion Detection via Hybrid Search and Metadata-Content Fusion
by: Li, Yu, et al.
Published: (2026)
by: Li, Yu, et al.
Published: (2026)
SseRex: Practical Symbolic Execution of Solana Smart Contracts
by: Cloosters, Tobias, et al.
Published: (2026)
by: Cloosters, Tobias, et al.
Published: (2026)
Servicifying zk-SNARKs Execution for Verifiable Off-chain Computations
by: Domenech, Alvaro Alonso, et al.
Published: (2024)
by: Domenech, Alvaro Alonso, et al.
Published: (2024)
Guiding Symbolic Execution with Static Analysis and LLMs for Vulnerability Discovery
by: Shafiuzzaman, Md, et al.
Published: (2026)
by: Shafiuzzaman, Md, et al.
Published: (2026)
Fine-grained Data Access Control for Collaborative Process Execution on Blockchain
by: Marangone, Edoardo, et al.
Published: (2022)
by: Marangone, Edoardo, et al.
Published: (2022)
Execution-State-Aware LLM Reasoning for Automated Proof-of-Vulnerability Generation
by: Li, Haoyu, et al.
Published: (2026)
by: Li, Haoyu, et al.
Published: (2026)
Fakeium: A Dynamic Execution Environment for JavaScript Program Analysis
by: Moreno, José Miguel, et al.
Published: (2024)
by: Moreno, José Miguel, et al.
Published: (2024)
An Empirical Study on Remote Code Execution in Machine Learning Model Hosting Ecosystems
by: Siddiq, Mohammed Latif, et al.
Published: (2026)
by: Siddiq, Mohammed Latif, et al.
Published: (2026)
Finding Missing Input Validation in TEEs via LLM-Assisted Symbolic Execution
by: Ma, Chengyan, et al.
Published: (2026)
by: Ma, Chengyan, et al.
Published: (2026)
Parser-Free Querying of Security Logs
by: Luo, Evan, et al.
Published: (2026)
by: Luo, Evan, et al.
Published: (2026)
MCP-SandboxScan: WASM-based Secure Execution and Runtime Analysis for MCP Tools
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
ZTaint-Havoc: From Havoc Mode to Zero-Execution Fuzzing-Driven Taint Inference
by: Xie, Yuchong, et al.
Published: (2025)
by: Xie, Yuchong, et al.
Published: (2025)
Software Supply Chain Security of Web3
by: Monperrus, Martin
Published: (2025)
by: Monperrus, Martin
Published: (2025)
A Survey of Web Application Security Tutorials
by: Chembakottu, Bhagya, et al.
Published: (2026)
by: Chembakottu, Bhagya, et al.
Published: (2026)
Synergistic Directed Execution and LLM-Driven Analysis for Zero-Day AI-Generated Malware Detection
by: Edwards, George, et al.
Published: (2026)
by: Edwards, George, et al.
Published: (2026)
SmartPoC: Generating Executable and Validated PoCs for Smart Contract Bug Reports
by: Chen, Longfei, et al.
Published: (2025)
by: Chen, Longfei, et al.
Published: (2025)
Fuzzing Frameworks for Server-side Web Applications: A Survey
by: Dharmaadi, I Putu Arya, et al.
Published: (2024)
by: Dharmaadi, I Putu Arya, et al.
Published: (2024)
Vital: Vulnerability-Oriented Symbolic Execution via Type-Unsafe Pointer-Guided Monte Carlo Tree Search
by: Tu, Haoxin, et al.
Published: (2024)
by: Tu, Haoxin, et al.
Published: (2024)
BACFuzz: Exposing the Silence on Broken Access Control Vulnerabilities in Web Applications
by: Dharmaadi, I Putu Arya, et al.
Published: (2025)
by: Dharmaadi, I Putu Arya, et al.
Published: (2025)
Automated Testing of Broken Authentication Vulnerabilities in Web APIs with AuthREST
by: Corradini, Davide, et al.
Published: (2025)
by: Corradini, Davide, et al.
Published: (2025)
TPSQLi: Test Prioritization for SQL Injection Vulnerability Detection in Web Applications
by: Yang, Guan-Yan, et al.
Published: (2025)
by: Yang, Guan-Yan, et al.
Published: (2025)
Building Call Graph of WebAssembly Programs via Abstract Semantics
by: Paccamiccio, Mattia, et al.
Published: (2024)
by: Paccamiccio, Mattia, et al.
Published: (2024)
Static Semantics Reconstruction for Enhancing JavaScript-WebAssembly Multilingual Malware Detection
by: Xia, Yifan, et al.
Published: (2023)
by: Xia, Yifan, et al.
Published: (2023)
SoK: Web3 RegTech for Cryptocurrency VASP AML/CFT Compliance
by: Mao, Qian'ang, et al.
Published: (2025)
by: Mao, Qian'ang, et al.
Published: (2025)
Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web
by: Swierzy, Ben, et al.
Published: (2025)
by: Swierzy, Ben, et al.
Published: (2025)
LuaTaint: A Static Analysis System for Web Configuration Interface Vulnerability of Internet of Things Devices
by: Xiang, Jiahui, et al.
Published: (2024)
by: Xiang, Jiahui, et al.
Published: (2024)
Unlocking User-oriented Pages: Intention-driven Black-box Scanner for Real-world Web Applications
by: Wang, Weizhe, et al.
Published: (2025)
by: Wang, Weizhe, et al.
Published: (2025)
Prompt Fuzzing for Fuzz Driver Generation
by: Lyu, Yunlong, et al.
Published: (2023)
by: Lyu, Yunlong, et al.
Published: (2023)
SkillProbe: Security Auditing for Emerging Agent Skill Marketplaces via Multi-Agent Collaboration
by: Guo, Zihan, et al.
Published: (2026)
by: Guo, Zihan, et al.
Published: (2026)
Similar Items
-
Semantic-Aware Parsing for Security Logs
by: Piet, Julien, et al.
Published: (2025) -
ColorGo: Directed Concolic Execution
by: Li, Jia, et al.
Published: (2025) -
SeeWasm: An Efficient and Fully-Functional Symbolic Execution Engine for WebAssembly Binaries
by: He, Ningyu, et al.
Published: (2024) -
Opal: Private Memory for Personal AI
by: Kaviani, Darya, et al.
Published: (2026) -
Why Johnny Adopts Identity-Based Software Signing: A Usability Case Study of Sigstore
by: Kalu, Kelechi G., et al.
Published: (2025)