Lune

POPL2024Top-tier venue

On-the-Fly Static Analysis via Dynamic Bidirected Dyck Reachability

Shankaranarayanan Krishna, Aniket Lal, Andreas Pavlogiannis, Omkar Tuppe

2024Year
7Citations
2Top-tier citations

Abstract

Dyck reachability is a principled, graph-based formulation of a plethora of static analyses. Bidirected graphs are used for capturing dataflow through mutable heap data, and are usual formalisms of demand-driven points-to and alias analyses. The best (offline) algorithm runs in ๐‘‚ (๐‘š + ๐‘› โ€ข ๐›ผ (๐‘›)) time, where ๐‘› is the number of nodes and ๐‘š is the number of edges in the flow graph, which becomes ๐‘‚ (๐‘› 2 ) in the worst case.

In the everyday practice of program analysis, the analyzed code is subject to continuous change, with source code being added and removed. On-the-fly static analysis under such continuous updates gives rise to dynamic Dyck reachability, where reachability queries run on a dynamically changing graph, following program updates. Naturally, executing the offline algorithm in this online setting is inadequate, as the time required to process a single update is prohibitively large.

In this work we develop a novel dynamic algorithm for bidirected Dyck reachability that has ๐‘‚ (๐‘› โ€ข ๐›ผ (๐‘›)) worst-case performance per update, thus beating the ๐‘‚ (๐‘› 2 ) bound, and is also optimal in certain settings. We also implement our algorithm and evaluate its performance on on-the-fly data-dependence and alias analyses, and compare it with two best known alternatives, namely (i) the optimal offline algorithm, and (ii) a fully dynamic Datalog solver. Our experiments show that our dynamic algorithm is consistently, and by far, the top performing algorithm, exhibiting speedups in the order of 1000X. The running time of each update is almost always unnoticeable to the human eye, making it ideal for the on-the-fly analysis setting.

CCS Concepts: โ€ข Software and its engineering โ†’ Software verification and validation; โ€ข Theory of computation โ†’ Theory and algorithms for application domains; Program analysis.

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

Cited by top-tier papers2

Ask how each one uses it

Builds on10

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines