ICSE 2026
Sun 12 - Sat 18 April 2026 Rio de Janeiro, Brazil
Fri 17 Apr 2026 17:15 - 17:30 at Oceania I - Testing and Analysis 21 Chair(s): Seongmin Lee

Path-sensitive data dependence analysis is a powerful technique widely used in static vulnerability detection. One of the central challenges is how to resolve indirect data dependencies induced by pointer operations: the value loaded from a memory location may depend on different values stored before. Resolving indirect data dependencies in a path-sensitive manner significantly improves the analysis precision, but also induces high overhead that limits its scalability.

We observe that much of the computation effort in path-sensitive data dependence analysis is spent on performing strong updates during load-store matching: a stored value propagates to a load statement only if it is not overwritten by other values stored to the same memory location during the propagation. Answering this question path-sensitively is extremely challenging and often leads to a state explosion that precludes efficient static analysis.

To improve the efficiency for performing strong updates in path-sensitive data dependence analysis, our key insight is that the relation among multiple store statements could be determined in stages: most of the easy cases are handled efficiently by inferring a must-kill relation among the heap store statements, reserving the computationally expensive path-sensitive analysis for the rest. We design a tree-like data structure to encode both the control flow and alias information, which incrementally updates the relation during the analysis. Experiments have shown significant speed-ups and improved state coverage in static analysis through the algorithmic improvements of path-sensitive strong updates.

Fri 17 Apr

Displayed time zone: Brasilia, Distrito Federal, Brazil change

16:00 - 17:30
Testing and Analysis 21Research Track at Oceania I
Chair(s): Seongmin Lee UCLA
16:00
15m
Talk
Precise Static Identification of Ethereum Storage Variables
Research Track
Sifis Lagouvardos University of Athens, Yannis Bollanos Dedaub, Michael Debono Friendly Maltese Citizens, Neville Grech Dedaub Limited, Yannis Smaragdakis University of Athens
Pre-print
16:15
15m
Talk
D-BUNDLR: Destructing JavaScript Bundles for Effective Static Analysis
Research Track
Wenyuan Xu Aarhus University, Alexi Turcotte CISPA, Cristian-Alexandru Staicu CISPA Helmholtz Center for Information Security
16:30
15m
Talk
PTV: Scalable Version Detection of Web Libraries and its Security Application
Research Track
Xinyue Liu Chongqing University, Haipeng Cai University at Buffalo, SUNY, Lukasz Ziarek University at Buffalo
16:45
15m
Talk
Context-Free Grammar Inference for Complex Programming Languages in Black Box SettingsVirtual Attendance
Research Track
Feifei Li Tsinghua Shenzhen International Graduate School, Xiao Chen University of Newcastle, xiaoyu sun The Australian National University, Xi Xiao Tsinghua University, Shaohua Wang Central University of Finance and Economics, Yong Ding School of Computer Science & lnformation Security, Guilin University of Electronic Technology, Guilin, Gusngxi, China, Sheng Wen Swinburne University of Technology, Qingli Peng Cheng Laboratory
Pre-print Media Attached
17:00
15m
Talk
LoopSCC: Summarizing Complex Multi-branch Nested Loops via Periodic Oscillation IntervalVirtual Attendance
Research Track
Kai Zhu Institute of Information Engineering, Chinese Academy of Sciences; University of Chinese Academy of Sciences, Haofeng Li SKLP, Institute of Computing Technology, CAS, Kuihao Yan Institute of Information Engineering, Chinese Academy of Sciences, Rongqing Wang Institute of Information Engineering, Chinese Academy of Sciences, Jiaming Guo Institute of Information Engineering, Chinese Academy of Sciences, Haoran Yang Institute of Information Engineering, Chinese Academy of Sciences, Jie Lu Institute of Computing Technology, Chinese Academy of Sciences, Lei Yu Institute of Software, Chinese Academy of Sciences, University of Chinese Academy of Sciences, China, Xiaoqi Jia Institute of Information Engineering, Chinese Academy of Sciences, Chenkai Guo Nankai University, China, Haichao Du Institute of Information Engineering, Chinese Academy of Sciences, Qingjia Huang Institute of Information Engineering, Chinese Academy of Sciences, Yamin Xie Institute of Information Engineering,Chinese Academy of Science;University of Chinese Academy of Sciences, Jing Tang Institute of Information Engineering, Chinese Academy of Sciences
Media Attached File Attached
17:15
15m
Talk
Efficient Strong Updates For Path Sensitive Data Dependence AnalysisVirtual Attendance
Research Track
Yiyuan Guo The Hong Kong University of Science and Technology, Ant Group, Charles Zhang Hong Kong University of Science and Technology
DOI Pre-print Media Attached