{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T13:07:39Z","timestamp":1784120859813,"version":"3.55.0"},"publisher-location":"Cham","reference-count":17,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031877599","type":"print"},{"value":"9783031877605","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-87760-5_6","type":"book-chapter","created":{"date-parts":[[2025,7,26]],"date-time":"2025-07-26T09:48:34Z","timestamp":1753523314000},"page":"70-83","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["CodeFlowGen: A Generator of\u00a0Synthetic Source Code with\u00a0Scalable Control Flow Paths for\u00a0Evaluating Static Analysis Tools"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0006-9668-0822","authenticated-orcid":false,"given":"R\u0103zvan-Mihai","family":"Bolundu\u1e6d","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2431-4253","authenticated-orcid":false,"given":"Adrian-Viorel","family":"Cole\u015fa","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9008-1462","authenticated-orcid":false,"given":"Radu-Marian","family":"Portase","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,7,27]]},"reference":[{"key":"6_CR1","doi-asserted-by":"publisher","first-page":"55824","DOI":"10.1109\/ACCESS.2024.3389955","volume":"12","author":"M Alqaradaghi","year":"2024","unstructured":"Alqaradaghi, M., Kozsik, T.: Comprehensive evaluation of static analysis tools for their performance in finding vulnerabilities in Java code. IEEE Access 12, 55824\u201355842 (2024). https:\/\/doi.org\/10.1109\/ACCESS.2024.3389955","journal-title":"IEEE Access"},{"key":"6_CR2","doi-asserted-by":"publisher","unstructured":"Arusoaie, A., Ciob\u00e2ca, S., Craciun, V., Gavrilut, D., Lucanu, D.: A comparison of open-source static analysis tools for vulnerability detection in c\/c++ code. In: 2017 19th International Symposium on Symbolic and Numeric Algorithms for Scientific Computing (SYNASC), pp. 161\u2013168 (2017). https:\/\/doi.org\/10.1109\/SYNASC.2017.00035","DOI":"10.1109\/SYNASC.2017.00035"},{"key":"6_CR3","doi-asserted-by":"publisher","unstructured":"Baldoni, R., Coppa, E., D\u2019elia, D.C., Demetrescu, C., Finocchi, I.: A survey of symbolic execution techniques. ACM Comput. Surv. 51(3) (2018). https:\/\/doi.org\/10.1145\/3182657","DOI":"10.1145\/3182657"},{"key":"6_CR4","unstructured":"Bolundu\u1e6d, R.M.: CFG-generator (2024). https:\/\/github.com\/razvan171514\/cfg-codegen. Accessed 29 Sept 2024"},{"key":"6_CR5","doi-asserted-by":"crossref","unstructured":"Bolundu\u1e6d, R.M., Cole\u1e63a, A., Portase, R.M.: A path sensitive and scalable approach for mapping the capabilities required for Linux Kernel defined system calls using static analysis techniques. In: 2024 IEEE International Conference on Communication Problem-Solving (ICCP), October 2024","DOI":"10.1109\/ICCP63557.2024.10793015"},{"key":"6_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"351","DOI":"10.1007\/978-3-540-78800-3_27","volume-title":"Tools and Algorithms for the Construction and Analysis of Systems","author":"P Boonstoppel","year":"2008","unstructured":"Boonstoppel, P., Cadar, C., Engler, D.: RWset: attacking path explosion in constraint-based test generation. In: Ramakrishnan, C.R., Rehof, J. (eds.) TACAS 2008. LNCS, vol. 4963, pp. 351\u2013366. Springer, Heidelberg (2008). https:\/\/doi.org\/10.1007\/978-3-540-78800-3_27"},{"key":"6_CR7","doi-asserted-by":"publisher","unstructured":"Delaitre, A., Stivalet, B., Fong, E., Okun, V.: Evaluating bug finders \u2013 test and measurement of static code analyzers. In: 2015 IEEE\/ACM 1st International Workshop on Complex Faults and Failures in Large Software Systems (COUFLESS), pp. 14\u201320 (2015). https:\/\/doi.org\/10.1109\/COUFLESS.2015.10","DOI":"10.1109\/COUFLESS.2015.10"},{"key":"6_CR8","doi-asserted-by":"publisher","unstructured":"Hasan, M.M., Ghavamnia, S., Polychronakis, M.: Decap: deprivileging programs by reducing their capabilities. In: Proceedings of the 25th International Symposium on Research in Attacks, Intrusions and Defenses, RAID \u201922, pp. 395\u2013408. Association for Computing Machinery, New York (2022). https:\/\/doi.org\/10.1145\/3545948.3545978","DOI":"10.1145\/3545948.3545978"},{"issue":"3","key":"6_CR9","doi-asserted-by":"publisher","first-page":"405","DOI":"10.1002\/spe.2290","volume":"46","author":"I Hussain","year":"2016","unstructured":"Hussain, I., et al.: RUGRAT: evaluating program analysis and testing tools and compilers with large generated random benchmark applications. Softw. Pract. Exp. 46(3), 405\u2013431 (2016). https:\/\/doi.org\/10.1002\/spe.2290","journal-title":"Softw. Pract. Exp."},{"issue":"3","key":"6_CR10","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1016\/0096-0551(78)90009-7","volume":"3","author":"K Kennedy","year":"1978","unstructured":"Kennedy, K.: Use-definition chains with applications. Comput. Lang. 3(3), 163\u2013179 (1978). https:\/\/doi.org\/10.1016\/0096-0551(78)90009-7","journal-title":"Comput. Lang."},{"key":"6_CR11","doi-asserted-by":"publisher","unstructured":"Lipp, S., Banescu, S., Pretschner, A.: An empirical study on the effectiveness of static c code analyzers for vulnerability detection. In: Proceedings of the 31st ACM SIGSOFT International Symposium on Software Testing and Analysis, ISSTA 2022, pp. 544\u2013555. Association for Computing Machinery, New York (2022). https:\/\/doi.org\/10.1145\/3533767.3534380","DOI":"10.1145\/3533767.3534380"},{"issue":"3","key":"6_CR12","doi-asserted-by":"publisher","first-page":"1159","DOI":"10.1109\/TR.2018.2839339","volume":"67","author":"P Nunes","year":"2018","unstructured":"Nunes, P., Medeiros, I., Fonseca, J.C., Neves, N., Correia, M., Vieira, M.: Benchmarking static analysis tools for web security. IEEE Trans. Reliab. 67(3), 1159\u20131175 (2018). https:\/\/doi.org\/10.1109\/TR.2018.2839339","journal-title":"IEEE Trans. Reliab."},{"key":"6_CR13","unstructured":"OpenAI: ChatGPT (GPT-4) (2023). https:\/\/chat.openai.com\/. Accessed Sept 2024"},{"key":"6_CR14","unstructured":"Ryan, K., Sturton, C.: Countering the path explosion problem in the symbolic execution of hardware designs (2023). https:\/\/arxiv.org\/abs\/2304.05445"},{"key":"6_CR15","doi-asserted-by":"publisher","unstructured":"Shiraishi, S., Mohan, V., Marimuthu, H.: Test suites for benchmarks of static analysis tools. In: 2015 IEEE International Symposium on Software Reliability Engineering Workshops (ISSREW), pp. 12\u201315 (2015). https:\/\/doi.org\/10.1109\/ISSREW.2015.7392027","DOI":"10.1109\/ISSREW.2015.7392027"},{"key":"6_CR16","doi-asserted-by":"publisher","unstructured":"Sun, M., Song, Z., Ren, X., Wu, D., Zhang, K.: LiCA: a fine-grained and path-sensitive Linux capability analysis framework. In: Proceedings of the 25th International Symposium on Research in Attacks, Intrusions and Defenses, RAID 2022, pp. 364\u2013379. Association for Computing Machinery, New York (2022). https:\/\/doi.org\/10.1145\/3545948.3545966","DOI":"10.1145\/3545948.3545966"},{"key":"6_CR17","doi-asserted-by":"publisher","unstructured":"Xiao, X., Zhang, X.s., Li, X.d.: New approach to path explosion problem of symbolic execution. In: 2010 First International Conference on Pervasive Computing, Signal Processing and Applications, pp. 301\u2013304 (2010). https:\/\/doi.org\/10.1109\/PCSPA.2010.80","DOI":"10.1109\/PCSPA.2010.80"}],"container-title":["Lecture Notes in Computer Science","Innovative Security Solutions for Information Technology and Communications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-87760-5_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T12:43:54Z","timestamp":1784119434000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-87760-5_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783031877599","9783031877605"],"references-count":17,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-87760-5_6","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"27 July 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SecITC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information Technology and Communications Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Bucharest","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Romania","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 November 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"23 November 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"itc2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/secitc.eu\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}