search menu icon-carat-right cmu-wordmark

SCAIFE and ACR: Static Analysis Classification and Automated Code Repair

Presentation
Flynn and Klieber describe their research and concept for a combined system for static analysis classification and automated code repair.
Publisher

Software Engineering Institute

Abstract

Flynn and Klieber presented at the DoD National Nuclear Security Administration (NNSA) Software Assurance Community of Practice (SwA CoP) virtual meeting in September 2021. Flynn describes her FY21 research on methods to use static analysis classification for continuous integration (CI) software development systems and the SCAIFE prototype tool. Klieber describes his research on automated code repair (ACR) for memory safety and another project on decompilation for binary software assurance. They conclude by describing their concept for a combined system, proposing development of an integrated SCAIFE-ACR system to instantiate and test it.