<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Beltrán Aceves</title>
    <description>The latest articles on DEV Community by Beltrán Aceves (@beltran).</description>
    <link>https://dev.to/beltran</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F787483%2Fbb52a77f-180e-4edf-9102-28d6f0603d2a.png</url>
      <title>DEV Community: Beltrán Aceves</title>
      <link>https://dev.to/beltran</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/beltran"/>
    <language>en</language>
    <item>
      <title>Getting Started with Jalangi 2</title>
      <dc:creator>Beltrán Aceves</dc:creator>
      <pubDate>Thu, 10 Nov 2022 00:26:22 +0000</pubDate>
      <link>https://dev.to/beltran/getting-started-with-jalangi-2-1a3j</link>
      <guid>https://dev.to/beltran/getting-started-with-jalangi-2-1a3j</guid>
      <description>&lt;h2&gt;
  
  
  What is Jalangi ?
&lt;/h2&gt;

&lt;p&gt;A dynamic analysis framework for both front-end and back-end JavaScript. It allows you to monitor every operation of a JavaScript program, write your own program analyses and tools like linters, style checkers, caching optimization, etc.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://media.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fedxpbfhdyblmwgjqspq5.png" class="article-body-image-wrapper"&gt;&lt;img src="https://media.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fedxpbfhdyblmwgjqspq5.png" alt="Authors portrait photos"&gt;&lt;/a&gt;It was created by &lt;a href="https://people.eecs.berkeley.edu/~ksen/?rnd=1668034504513" rel="noopener noreferrer"&gt;Koushik Sen&lt;/a&gt; and &lt;a href="https://jacksongl.github.io/" rel="noopener noreferrer"&gt;Liang Gong&lt;/a&gt; at Berkeley in 2013, supported by Samsung Research America, who wanted to remedy the lack of Tooling other popular languages like C++ or Java enjoyed [1].&lt;/p&gt;

&lt;h3&gt;
  
  
  Requirements
&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Node v12 (v18 seems to be working well for me)&lt;/li&gt;
&lt;li&gt;Python 2.7 or higher and less than 3.0, but it's only needed for testing&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  Installation
&lt;/h2&gt;

&lt;p&gt;Either download from npm:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;npm &lt;span class="nb"&gt;install &lt;/span&gt;jalangi2
&lt;span class="nb"&gt;cd &lt;/span&gt;node_modules/jalangi2
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;Or clone the repository:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;git clone https://github.com/Samsung/jalangi2
&lt;span class="nb"&gt;cd &lt;/span&gt;jalangi2
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;To check if everything works, run a sample analysis with the following (note you must be in &lt;code&gt;jalangi2/&lt;/code&gt; directory):&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;node src/js/commands/jalangi.js &lt;span class="nt"&gt;--inlineSource&lt;/span&gt; &lt;span class="nt"&gt;--analysis&lt;/span&gt; src/js/sample_analyses/dlint/CheckNaN.js src/js/sample_analyses/dlint/Utils.js 
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;If everything went well this will have generated:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;
&lt;code&gt;Utils_jalangi_.js&lt;/code&gt; with the instrumented code&lt;/li&gt;
&lt;li&gt;
&lt;code&gt;Utils_jalangi_.json&lt;/code&gt; with the analysis result.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;
  
  
  How it works
&lt;/h2&gt;

&lt;p&gt;It instruments JavaScriptsource code to provide a layer of abstraction and a simple API, which makes it much easier to implement heavy-weight analysis techniques. &lt;/p&gt;

&lt;p&gt;The API lets you hook up function callbacks before and after almost every event or operation within your code.&lt;/p&gt;

&lt;h3&gt;
  
  
  Our own analysis
&lt;/h3&gt;

&lt;p&gt;You can find every interceptable operation in the &lt;a href="https://jacksongl.github.io/files/demo/jalangiff/docs/MyAnalysis.html" rel="noopener noreferrer"&gt;docs&lt;/a&gt;. We are going to start by hijacking console.log calls and modifying the output.&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;Create an analysis.js file
&lt;/li&gt;
&lt;/ul&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nf"&gt;function &lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;sandbox&lt;/span&gt;&lt;span class="p"&gt;)&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt;
    &lt;span class="nx"&gt;J$&lt;/span&gt;&lt;span class="p"&gt;.&lt;/span&gt;&lt;span class="nx"&gt;analysis&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt;
      &lt;span class="na"&gt;invokeFunPre&lt;/span&gt;&lt;span class="p"&gt;:&lt;/span&gt; &lt;span class="nf"&gt;function &lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;iid&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="nx"&gt;f&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="nx"&gt;base&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="nx"&gt;args&lt;/span&gt;&lt;span class="p"&gt;)&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt;
        &lt;span class="nx"&gt;args&lt;/span&gt;&lt;span class="p"&gt;[&lt;/span&gt;&lt;span class="mi"&gt;0&lt;/span&gt;&lt;span class="p"&gt;]&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="s2"&gt;You've been modyfied!&lt;/span&gt;&lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="p"&gt;;&lt;/span&gt;
        &lt;span class="k"&gt;if &lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;f&lt;/span&gt; &lt;span class="o"&gt;==&lt;/span&gt; &lt;span class="nx"&gt;console&lt;/span&gt;&lt;span class="p"&gt;.&lt;/span&gt;&lt;span class="nx"&gt;log&lt;/span&gt;&lt;span class="p"&gt;)&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt;
          &lt;span class="k"&gt;return&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt; &lt;span class="na"&gt;f&lt;/span&gt;&lt;span class="p"&gt;:&lt;/span&gt; &lt;span class="nx"&gt;f&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="na"&gt;base&lt;/span&gt;&lt;span class="p"&gt;:&lt;/span&gt; &lt;span class="nx"&gt;base&lt;/span&gt;&lt;span class="p"&gt;,&lt;/span&gt; &lt;span class="na"&gt;args&lt;/span&gt;&lt;span class="p"&gt;:&lt;/span&gt; &lt;span class="nx"&gt;args&lt;/span&gt; &lt;span class="p"&gt;};&lt;/span&gt;
        &lt;span class="p"&gt;}&lt;/span&gt;
      &lt;span class="p"&gt;}&lt;/span&gt;
    &lt;span class="p"&gt;};&lt;/span&gt;
  &lt;span class="p"&gt;})(&lt;/span&gt;&lt;span class="nx"&gt;J$&lt;/span&gt;&lt;span class="p"&gt;);&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;ul&gt;
&lt;li&gt;Create a sample.js file to be analyzed
&lt;/li&gt;
&lt;/ul&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="kd"&gt;function&lt;/span&gt; &lt;span class="nf"&gt;annoyingLogger&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;msg&lt;/span&gt;&lt;span class="p"&gt;)&lt;/span&gt; &lt;span class="p"&gt;{&lt;/span&gt;
    &lt;span class="nx"&gt;console&lt;/span&gt;&lt;span class="p"&gt;.&lt;/span&gt;&lt;span class="nf"&gt;log&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;msg&lt;/span&gt;&lt;span class="p"&gt;);&lt;/span&gt;
&lt;span class="p"&gt;}&lt;/span&gt;
&lt;span class="nf"&gt;annoyingLogger&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="s2"&gt;Hello World&lt;/span&gt;&lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="p"&gt;);&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;ul&gt;
&lt;li&gt;Go to the terminal and run:
&lt;/li&gt;
&lt;/ul&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;node src/js/commands/jalangi.js &lt;span class="nt"&gt;--inlineSource&lt;/span&gt; &lt;span class="nt"&gt;--analysis&lt;/span&gt; &amp;lt;analysis.js filepath&amp;gt; &amp;lt;sample.js filepath&amp;gt; 
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;And it should only output &lt;code&gt;You've been modyfied!&lt;/code&gt;&lt;/p&gt;

&lt;h3&gt;
  
  
  Tips and tricks
&lt;/h3&gt;

&lt;p&gt;You can chain analyses with:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;node src/js/commands/jalangi.js &lt;span class="nt"&gt;--inlineSource&lt;/span&gt; &lt;span class="nt"&gt;--analysis&lt;/span&gt; src/js/sample_analyses/ChainedAnalyses.js &lt;span class="nt"&gt;--analysis&lt;/span&gt; &amp;lt;analysis 1 filepath&amp;gt; &lt;span class="nt"&gt;--analysis&lt;/span&gt; &amp;lt;analysis 2 filepath&amp;gt; &amp;lt;target file&amp;gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;For code location include the &lt;code&gt;--inlineIID&lt;/code&gt; flag and use:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight javascript"&gt;&lt;code&gt;&lt;span class="kd"&gt;var&lt;/span&gt; &lt;span class="nx"&gt;iidToLocation&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="nx"&gt;sandbox&lt;/span&gt;&lt;span class="p"&gt;.&lt;/span&gt;&lt;span class="nx"&gt;iidToLocation&lt;/span&gt;&lt;span class="p"&gt;;&lt;/span&gt;
&lt;span class="kd"&gt;var&lt;/span&gt; &lt;span class="nx"&gt;codeLine&lt;/span&gt; &lt;span class="o"&gt;=&lt;/span&gt; &lt;span class="nf"&gt;iidToLocation&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nf"&gt;getGlobalIID&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="nx"&gt;iid&lt;/span&gt;&lt;span class="p"&gt;)).&lt;/span&gt;&lt;span class="nf"&gt;split&lt;/span&gt;&lt;span class="p"&gt;(&lt;/span&gt;&lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="s2"&gt;:&lt;/span&gt;&lt;span class="dl"&gt;"&lt;/span&gt;&lt;span class="p"&gt;)[&lt;/span&gt;&lt;span class="mi"&gt;2&lt;/span&gt;&lt;span class="p"&gt;];&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;If you want to learn about more involved analyses use their &lt;a href="https://jacksongl.github.io/files/demo/jalangiff/demo_integrated.htm" rel="noopener noreferrer"&gt;online sandbox&lt;/a&gt;.&lt;/p&gt;

&lt;h3&gt;
  
  
  References
&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Cover from slides by Prof. &lt;a href="https://software-lab.org/people/Michael_Pradel.html" rel="noopener noreferrer"&gt;Michael Pradel&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;[1]K. Sen, S. Kalasapur, T. Brutch, and S. Gibbs, &lt;a href="https://dl.acm.org/doi/10.1145/2491411.2491447" rel="noopener noreferrer"&gt;doi&lt;/a&gt;
&lt;/li&gt;
&lt;/ul&gt;

</description>
      <category>jalangi</category>
      <category>javascript</category>
      <category>tutorial</category>
      <category>computerscience</category>
    </item>
  </channel>
</rss>
