Journal ArticleDOI
Model checking programs
Willem Visser,Klaus Havelund,Guillaume Brat,Seungjoon Park +3 more
- Vol. 10, Iss: 2, pp 203-232
TLDR
A verification and testing environment for Java, called Java PathFinder (JPF), which integrates model checking, program analysis and testing, and uses state compression to handle big states and partial order and symmetry reduction, slicing, abstraction, and runtime analysis techniques to reduce the state space.Abstract:
The majority of the work carried out in the formal methods community throughout the last three decades has (for good reasons) been devoted to special languages designed to make it easier to experiment with mechanized formal methods such as theorem provers and model checkers. In this paper, we give arguments for why we believe it is time for the formal methods community to shift some of its attention towards the analysis of programs written in modern programming languages. In keeping with this philosophy, we have developed a verification and testing environment for Java, called Java PathFinder (JPF), which integrates model checking, program analysis and testing. Part of this work has consisted of building a new Java Virtual Machine that interprets Java bytecode. JPF uses state compression to handle large states, and partial order reduction, slicing, abstraction and run-time analysis techniques to reduce the state space. JPF has been applied to a real-time avionics operating system developed at Honeywell, illustrating an intricate error, and to a model of a spacecraft controller, illustrating the combination of abstraction, run-time analysis and slicing with model checking.read more
Citations
More filters
Book ChapterDOI
Model-checking in-lined reference monitors
Meera Sridhar,Kevin W. Hamlen +1 more
TL;DR: A technique for elegantly expressing In-lined Reference Monitor certification as model-checking is presented and implemented and is demonstrated through the enforcement and certification of a URL anti-redirection policy for ActionScript web applets.
Proceedings ArticleDOI
Mixed symbolic representations for model checking software programs
TL;DR: The proposed techniques are extremely competitive in handling sequential models of non-trivial sizes, and also compare favorably to popular Boolean-level model checking algorithms based on BDDs and SAT.
Proceedings ArticleDOI
SymCrash: selective recording for reproducing crashes
Yu Cao,Hongyu Zhang,Sun Ding +2 more
TL;DR: A dynamic symbolic execution method called SymCon is proposed, which addresses the limitation of conventional symbolic execution by selecting functions that are hard to be resolved by a constraint solver and using their concrete runtime values to replace the symbols.
Journal ArticleDOI
Finding Trends in Software Research
TL;DR: In this paper, the authors explore the structure of research papers in software engineering and use topic modeling to mine 10 topics that represent much of the structural structure of contemporary software engineering research papers.
Journal ArticleDOI
BLISS: Improved Symbolic Execution by Bounded Lazy Initialization with SAT Support
TL;DR: In this article, the authors present bounded lazy initialization with SAT support (BLISS), a novel technique that refines the search for valid structures during the symbolic execution process, using field bound refinement and satisfiability checks.
References
More filters
Journal ArticleDOI
Statecharts: A visual formalism for complex systems
TL;DR: It is intended to demonstrate here that statecharts counter many of the objections raised against conventional state diagrams, and thus appear to render specification by diagrams an attractive and plausible approach.
Book
The Unified Modeling Language User Guide
TL;DR: In The Unified Modeling Language User Guide, the original developers of the UML provide a tutorial to the core aspects of the language in a two-color format designed to facilitate learning.
Journal ArticleDOI
The model checker SPIN
TL;DR: An overview of the design and structure of the verifier, its theoretical foundation, and an overview of significant practical applications are given.
Book
The Z notation: a reference manual
TL;DR: Tutorial introduction background the Z language the mathematical tool-kit sequential systems syntax summary and how to use it to solve sequential systems problems.