Skip to main content

Part of the book series: Lecture Notes in Electrical Engineering ((LNEE,volume 212))

  • 726 Accesses

Abstract

As one of the most dangerous and common software vulnerabilities, null dereference often leads to program crashes. In this chapter we propose a human computation method to detect null dereference in a “frog and bug” game. The purpose of the game is to utilize the rich distributed human resource to do the complex science work in a simple and pleasant way. Programs are transformed into visual puzzles first, and then the server collects information from the people playing the game. Finally the recorded metadata is translated back into the positions in the programs where null dereference may happen. The game has shown to be effective.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 169.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 219.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book
USD 219.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Dillig I, Dillig T, Aiken A (2007) Static error detection using semantic inconsistency inference. In: Proceedings of the 2007 ACM SIGPLAN conference on progress language design and implementation, pp 435–445

    Google Scholar 

  2. Hovemeyer D, Pugh W (2007) Finding more null pointer bugs, but not too many. In: Proceedings of 7th ACM SIGPLAN-SIGSOFT workshop on program analysis for software tools and engineering, pp 9–14

    Google Scholar 

  3. Hovemeyer D, Spacco J, Pugh W (2005) Evaluating and tuning a static analysis to find null pointer bugs. In: Proceedings of 6th ACM SIGPLAN-SIGSOFT workshop on program analysis for software tools and engineering, pp 13–19

    Google Scholar 

  4. Chandra S, Fink SJ, Sridharan M (2009) Snugglebug: a powerful approach to weakest preconditions. In PLDI’09: Proceedings ACM SIGPLAN conference on programming language design and implementation, pp 363–374

    Google Scholar 

  5. Nanda MG, Sinha S (2009) Accurate interprocedural null-dereference analysis for Java. In ICSE’09: Proceedings of the 2009 IEEE 31st international conference on software engineering, Washington, USA, pp 133–143

    Google Scholar 

  6. Kim Y, Lee J, Han H, Choe KM (2010) Filtering false alarms of buffer overflow analysis using smt solvers. Inf Softw Technol 52(2):210–219

    Article  Google Scholar 

  7. International games market data, consulting and publishing, http://www.newzoo.com

  8. Von Ahn L (2006) Games with a purpose. IEEE Comput Mag 39(6):96–98

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Jie Chen .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2013 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Chen, J. (2013). Detecting Null Dereference with a Game. In: Lu, W., Cai, G., Liu, W., Xing, W. (eds) Proceedings of the 2012 International Conference on Information Technology and Software Engineering. Lecture Notes in Electrical Engineering, vol 212. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-34531-9_1

Download citation

  • DOI: https://doi.org/10.1007/978-3-642-34531-9_1

  • Published:

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-642-34530-2

  • Online ISBN: 978-3-642-34531-9

  • eBook Packages: EngineeringEngineering (R0)

Publish with us

Policies and ethics