Failure-Directed Program Trimming (Extended Version)

This paper describes a new program simplification technique called program trimming that aims to improve the scalability and precision of safety checking tools. Given a program \({\mathcal P}\), program trimming generates a new program \({\mathcal P}'\) such that \({\mathcal P}\) and \({\mathca...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:arXiv.org 2017-06
Hauptverfasser: Ferles, Kostas, Wüstholz, Valentin, Christakis, Maria, Dillig, Isil
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:This paper describes a new program simplification technique called program trimming that aims to improve the scalability and precision of safety checking tools. Given a program \({\mathcal P}\), program trimming generates a new program \({\mathcal P}'\) such that \({\mathcal P}\) and \({\mathcal P}'\) are equi-safe (i.e., \({\mathcal P}'\) has a bug if and only if \({\mathcal P}\) has a bug), but \({\mathcal P}'\) has fewer execution paths than \({\mathcal P}\). Since many program analyzers are sensitive to the number of execution paths, program trimming has the potential to improve the effectiveness of safety checking tools. In addition to introducing the concept of program trimming, this paper also presents a lightweight static analysis that can be used as a pre-processing step to remove program paths while retaining equi-safety. We have implemented the proposed technique in a tool called Trimmer and evaluate it in the context of two program analysis techniques, namely abstract interpretation and dynamic symbolic execution. Our experiments show that program trimming significantly improves the effectiveness of both techniques.
ISSN:2331-8422