Image from Google Jackets

Symbolic Execution and Quantitative Reasoning : Applications to Software Safety and Security / by Corina S. Păsăreanu

By: Păsăreanu, Corina S., autor
Material type: materialTypeLabelE-bookSeries: (Synthesis Lectures on Software Engineering, 2328-3327).Publisher: Cham : Springer International Publishing, 2020Edition: 1st edition 2020.Description: 1 recurso en línea (IX, 65 páginas).ISBN: 9783031025518.Subject: Distribución (Teoría de probabilidades) | Ingeniería del software | Seguridad informáticaOnline resources: Acceso a este recurso digital (usuarios Universidad Europea de Madrid)Digital Resources
Contents:
Acknowledgments -- Introduction -- Symbolic Execution: The Basics -- Symbolic Complexity Analysis -- Probabilistic Reasoning -- Side-Channel Analysis -- Conclusion and Directions for the Future -- Bibliography -- Author's Biography.
Summary: This book reviews recent advances in symbolic execution and its probabilistic variant and discusses how they can be used to ensure the safety and security of software systems. Symbolic execution is a systematic program analysis technique which explores multiple program behaviors all at once by collecting and solving symbolic constraints collected from the branching conditions in the program. The obtained solutions can be used as test inputs that execute feasible program paths. Symbolic execution has found many applications in various domains, such as security, smartphone applications, operating systems, databases, and more recently deep neural networks, uncovering subtle errors and unknown vulnerabilities. We review here the technique has also been extended to reason about algorithmic complexity and resource consumption. Furthermore, symbolic execution has been recently extended with probabilistic reasoning, allowing one to reason about quantitative properties of software systems. The approach computes the conditions to reach target program events of interest and uses model counting to quantify the fraction of the input domain satisfying these conditions thus computing the probability of event occurrence. This probabilistic information can be used for example to compute the reliability of an aircraft controller under different wind conditions (modeled probabilistically) or to quantify the leakage of sensitive data in a software system, using information theory metrics such as Shannon entropy. This book is intended for students and software engineers who are interested in advanced techniques for testing and verifying software systems.
Tags from this library: No tags from this library for this title. Log in to add tags.
Star ratings
    Average rating: 0.0 (0 votes)
Holdings
Item type Current library Collection Call number Status Date due Barcode Item holds
LIBRO-E NO PRÉSTAMO LIBRO-E NO PRÉSTAMO Madrid Digital Acceso Electrónico (UEM) Ciencias e Ingeniería QA76.758 2020 EB (Browse shelf(Opens below)) Acceso electrónico eBook.01112784
Total holds: 0

Acknowledgments -- Introduction -- Symbolic Execution: The Basics -- Symbolic Complexity Analysis -- Probabilistic Reasoning -- Side-Channel Analysis -- Conclusion and Directions for the Future -- Bibliography -- Author's Biography.

This book reviews recent advances in symbolic execution and its probabilistic variant and discusses how they can be used to ensure the safety and security of software systems. Symbolic execution is a systematic program analysis technique which explores multiple program behaviors all at once by collecting and solving symbolic constraints collected from the branching conditions in the program. The obtained solutions can be used as test inputs that execute feasible program paths. Symbolic execution has found many applications in various domains, such as security, smartphone applications, operating systems, databases, and more recently deep neural networks, uncovering subtle errors and unknown vulnerabilities. We review here the technique has also been extended to reason about algorithmic complexity and resource consumption. Furthermore, symbolic execution has been recently extended with probabilistic reasoning, allowing one to reason about quantitative properties of software systems. The approach computes the conditions to reach target program events of interest and uses model counting to quantify the fraction of the input domain satisfying these conditions thus computing the probability of event occurrence. This probabilistic information can be used for example to compute the reliability of an aircraft controller under different wind conditions (modeled probabilistically) or to quantify the leakage of sensitive data in a software system, using information theory metrics such as Shannon entropy. This book is intended for students and software engineers who are interested in advanced techniques for testing and verifying software systems.

There are no comments on this title.

to post a comment.
Share