Points-to analysis of IEC 61131-3 programs: Implementation and application

Research output: Chapter in Book/Report/Conference proceedingConference proceedingspeer-review

Abstract

A call graph of a program represents the information which executable program element calls which other executable program elements. Based on the call graph, points-to sets can be computed, which represent the memory locations a reference variable can possibly point to. Call graph and points-to sets provide important information for static program analysis. This is especially true for PLC programs which heavily use pointer variables. However, due to the complexity of the algorithms, call graph and points-to analysis methods are not widely available in static analysis. In this paper, we present an approach for call graph and points-to analysis of IEC 61131-3 programs. We present the algorithm for computing call graph and points-to sets and its implementation in a tool environment, show several different application scenarios, and present first results from industrial application.
Original languageEnglish
Title of host publicationEmerging Technologies & Factory Automation (ETFA), 2013 IEEE 18th Conference on
PublisherIEEE
Pages1-8
Number of pages9
ISBN (Print)978-1-4799-0862-2
Publication statusPublished - Sept 2013

Fields of science

  • 102 Computer Sciences
  • 102009 Computer simulation
  • 102011 Formal languages
  • 102013 Human-computer interaction
  • 102029 Practical computer science
  • 102022 Software development
  • 102024 Usability research

JKU Focus areas

  • Computation in Informatics and Mathematics
  • Engineering and Natural Sciences (in general)

Cite this