A Survey of Symbolic Execution Techniques


Baldoni Roberto1,Coppa Emilio1ORCID,D’elia Daniele Cono1,Demetrescu Camil1,Finocchi Irene2


1. Sapienza University of Rome, Italy

2. Sapienza University of Rome, Rome, Italy


Many security and software testing applications require checking whether certain properties of a program hold for any possible usage scenario. For instance, a tool for identifying software vulnerabilities may need to rule out the existence of any backdoor to bypass a program’s authentication. One approach would be to test the program using different, possibly random inputs. As the backdoor may only be hit for very specific program workloads, automated exploration of the space of possible inputs is of the essence. Symbolic execution provides an elegant solution to the problem, by systematically exploring many possible execution paths at the same time without necessarily requiring concrete inputs. Rather than taking on fully specified input values, the technique abstractly represents them as symbols, resorting to constraint solvers to construct actual instances that would cause property violations. Symbolic execution has been incubated in dozens of tools developed over the past four decades, leading to major practical breakthroughs in a number of prominent software reliability applications. The goal of this survey is to provide an overview of the main ideas, challenges, and solutions developed in the area, distilling them for a broad audience.


CINI (Consorzio Interuniversitario Nazionale Informatica) National Laboratory of Cyber Security

Italian Presidency of the Council of Ministers


Association for Computing Machinery (ACM)


General Computer Science,Theoretical Computer Science

Cited by 327 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Marco: A Stochastic Asynchronous Concolic Explorer;Proceedings of the 46th IEEE/ACM International Conference on Software Engineering;2024-02-06

2. HyperPUT: generating synthetic faulty programs to challenge bug-finding tools;Empirical Software Engineering;2024-01-15

3. Vulnerability discovery based on source code patch commit mining: a systematic literature review;International Journal of Information Security;2024-01-06

4. Random Testing and Evolutionary Testing for Fuzzing GraphQL APIs;ACM Transactions on the Web;2024-01-05

5. URadar: Discovering Unrestricted File Upload Vulnerabilities via Adaptive Dynamic Testing;IEEE Transactions on Information Forensics and Security;2024








Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3