-
1
-
-
0034292031
-
The use of proof in diversity arguments
-
Oct
-
B. Littlewood, "The use of proof in diversity arguments," IEEE Transactions on Software Engineering, vol. 26, no. 10, pp. 1022-1023, Oct. 2000.
-
(2000)
IEEE Transactions on Software Engineering
, vol.26
, Issue.10
, pp. 1022-1023
-
-
Littlewood, B.1
-
3
-
-
77749234922
-
-
System Design and Analysis, Federal Aviation Administration, Jun. 21, 1988, advisory Circular 25.1309-1A.
-
System Design and Analysis, Federal Aviation Administration, Jun. 21, 1988, advisory Circular 25.1309-1A.
-
-
-
-
5
-
-
84976723958
-
Validation of ultrahigh dependability for software-based systems
-
Nov
-
B. Littlewood and L. Strigini, "Validation of ultrahigh dependability for software-based systems," Communications of the ACM, pp. 69-80, Nov. 1993.
-
(1993)
Communications of the ACM
, pp. 69-80
-
-
Littlewood, B.1
Strigini, L.2
-
6
-
-
0027306938
-
The infeasibility of experimental quantification of life-critical software reliability
-
Jan
-
R. W. Butler and G. B. Finelli, "The infeasibility of experimental quantification of life-critical software reliability," IEEE Transactions on Software Engineering, vol. 19, no. 1, pp. 3-12, Jan. 1993.
-
(1993)
IEEE Transactions on Software Engineering
, vol.19
, Issue.1
, pp. 3-12
-
-
Butler, R.W.1
Finelli, G.B.2
-
7
-
-
0029404105
-
Reliability estimation from appropriate testing of plant protection software
-
Nov
-
J. May, G. Hughes, and A. D. Lunn, "Reliability estimation from appropriate testing of plant protection software," IEE/BCS Software Engineering Journal, vol. 10, no. 6, pp. 206-218, Nov. 1995.
-
(1995)
IEE/BCS Software Engineering Journal
, vol.10
, Issue.6
, pp. 206-218
-
-
May, J.1
Hughes, G.2
Lunn, A.D.3
-
8
-
-
0026189275
-
An experimental evaluation of software redundancy as a strategy for improving reliability
-
Jul
-
D. E. Eckhardt, A. K. Caglayan, J. C. Knight, L. D. Lee, D. F. McAllister, M. A. Vouk, and J. P. J. Kelly, "An experimental evaluation of software redundancy as a strategy for improving reliability," IEEE Transactions on Software Engineering, vol. 17, no. 7, pp. 692-702, Jul. 1991.
-
(1991)
IEEE Transactions on Software Engineering
, vol.17
, Issue.7
, pp. 692-702
-
-
Eckhardt, D.E.1
Caglayan, A.K.2
Knight, J.C.3
Lee, L.D.4
McAllister, D.F.5
Vouk, M.A.6
Kelly, J.P.J.7
-
9
-
-
0022581573
-
An experimental evaluation of the assumption of independence in multiversion programming
-
Jan
-
J. C. Knight and N. G. Leveson, "An experimental evaluation of the assumption of independence in multiversion programming," IEEE Transactions on Software Engineering, vol. SE-12, no. 1, pp. 96-109, Jan. 1986.
-
(1986)
IEEE Transactions on Software Engineering
, vol.SE-12
, Issue.1
, pp. 96-109
-
-
Knight, J.C.1
Leveson, N.G.2
-
10
-
-
0022232712
-
A theoretical basis for the analysis of multiversion software subject to coincident errors
-
Dec
-
D. E. Eckhardt, Jr. and L. D. Lee, "A theoretical basis for the analysis of multiversion software subject to coincident errors," IEEE Transactions on Software Engineering, vol. SE-11, no. 12, pp. 1511-1517, Dec. 1985.
-
(1985)
IEEE Transactions on Software Engineering
, vol.SE-11
, Issue.12
, pp. 1511-1517
-
-
Eckhardt Jr., D.E.1
Lee, L.D.2
-
11
-
-
0024884032
-
Conceptual modeling of coincident failures in multiversion software
-
Dec
-
B. Littlewood and D. R. Miller, "Conceptual modeling of coincident failures in multiversion software," IEEE Transactions on Software Engineering, vol. 15, no. 12, pp. 1596-1614, Dec. 1989.
-
(1989)
IEEE Transactions on Software Engineering
, vol.15
, Issue.12
, pp. 1596-1614
-
-
Littlewood, B.1
Miller, D.R.2
-
13
-
-
77749265883
-
-
Aerospace Recommended Practice (ARP) 4754: Certification Considerations for Highly-Integrated or Complex Aircraft Systems, Society of Automotive Engineers, Nov. 1996, also issued as EUROCAE ED-79.
-
Aerospace Recommended Practice (ARP) 4754: Certification Considerations for Highly-Integrated or Complex Aircraft Systems, Society of Automotive Engineers, Nov. 1996, also issued as EUROCAE ED-79.
-
-
-
-
14
-
-
0010645437
-
-
Requirements and Technical Concepts for Aviation, Washington, DC, Dec, this document is known as EUROCAE ED-12B in Europe
-
DO-178B: Software Considerations in Airborne Systems and Equipment Certification, Requirements and Technical Concepts for Aviation, Washington, DC, Dec. 1992, this document is known as EUROCAE ED-12B in Europe.
-
(1992)
DO-178B: Software Considerations in Airborne Systems and Equipment Certification
-
-
-
16
-
-
2642533873
-
Alternative representations of epistemic uncertainty
-
W. L. Oberkampf and J. C. Helton, "Alternative representations of epistemic uncertainty," Reliability Engineering and System Safety, vol. 85, no. 1-3, pp. 1-10, 2004.
-
(2004)
Reliability Engineering and System Safety
, vol.85
, Issue.1-3
, pp. 1-10
-
-
Oberkampf, W.L.1
Helton, J.C.2
-
17
-
-
85016966585
-
-
Wiley
-
A. O'Hagan, C. E. Buck, A. Daneshkhah, J. R. Eiser, P. H. Garthwaite, D. J. Jenkinson, J. E. Oakley, and T. Rakow, Uncertain Judgements: Eliciting Experts' Probabilities. Wiley, 2006.
-
(2006)
Uncertain Judgements: Eliciting Experts' Probabilities
-
-
O'Hagan, A.1
Buck, C.E.2
Daneshkhah, A.3
Eiser, J.R.4
Garthwaite, P.H.5
Jenkinson, D.J.6
Oakley, J.E.7
Rakow, T.8
-
18
-
-
77749284492
-
-
2006th ed, UK Health and Safety Executive, Bootle, UK, available at
-
Safety Assessment Principles for Nuclear Facilities, 2006th ed., UK Health and Safety Executive, Bootle, UK, available at http://www.hse.gov.uk/ nuclear/saps/saps2006.pdf.
-
Safety Assessment Principles for Nuclear Facilities
-
-
-
19
-
-
77749231835
-
-
Licensing of Safety Critical Software for Nuclear Reactors: Common Position of Seven European Nuclear Regulators and Authorised Technical Support Organizations, AVN Belgium, BfS Germany, CSN Spain, ISTec Germany, NII United Kingdom, SKI Sweden, STUK Finland, 2007, available at http://www.bfs.de/de/kerntechnik/sicherheit/Licensing safety critical software.pdf.
-
Licensing of Safety Critical Software for Nuclear Reactors: Common Position of Seven European Nuclear Regulators and Authorised Technical Support Organizations, AVN Belgium, BfS Germany, CSN Spain, ISTec Germany, NII United Kingdom, SKI Sweden, STUK Finland, 2007, available at http://www.bfs.de/de/kerntechnik/sicherheit/Licensing safety critical software.pdf.
-
-
-
-
20
-
-
77749284493
-
-
Air Traffic Services Safety Requirements, CAP 670, Safety Regulation Group, UK Civil Aviation Authority, Jun. 2008, see Part B, Section 3, Systems Engineering SW01: Regulatory Objectives for Software Safety Assurance in ATS Equipment; Available at http://www.caa.co.uk/docs/33/cap670.pdf.
-
Air Traffic Services Safety Requirements, CAP 670, Safety Regulation Group, UK Civil Aviation Authority, Jun. 2008, see Part B, Section 3, Systems Engineering SW01: Regulatory Objectives for Software Safety Assurance in ATS Equipment; Available at http://www.caa.co.uk/docs/33/cap670.pdf.
-
-
-
-
22
-
-
84996545324
-
-
Rail Safety and Standards Board, London, UK, available from
-
Engineering Safety Management (The Yellow Book), Volumes 1 and 2, Fundamentals and Guidance, Issue 4, Rail Safety and Standards Board, London, UK, 2007, available from http://www.yellowbook-rail.org.uk/site/the-yellow- book/the-yellow-book.html.
-
(2007)
Engineering Safety Management (The Yellow Book), Volumes 1 and 2, Fundamentals and Guidance, Issue 4
-
-
-
23
-
-
0004300242
-
-
UK, available at
-
Health and Safety at Work etc. Act, UK Health and Safety Executive, 1974, available at http://www.hse.gov.uk/legislation/hswa.htm;
-
(1974)
Health and Safety at Work etc. Act
-
-
-
24
-
-
77749284496
-
-
guidance suite at http://www.hse.gov.uk/risk/theory/alarp.htm.
-
guidance suite at http://www.hse.gov.uk/risk/theory/alarp.htm.
-
-
-
-
25
-
-
77958467741
-
-
J. Rushby, A safety-case approach for certifying adaptive systems, in AIAA Infotech@Aerospace Conference. Seattle WA: American Institute of Aeronautics and Astronautics, Apr. 2009, aIAA paper 2009-1992; available at http://www.csl.sri.com/users/rushby/abstracts/aiaa09.
-
J. Rushby, "A safety-case approach for certifying adaptive systems," in AIAA Infotech@Aerospace Conference. Seattle WA: American Institute of Aeronautics and Astronautics, Apr. 2009, aIAA paper 2009-1992; available at http://www.csl.sri.com/users/rushby/abstracts/aiaa09.
-
-
-
-
26
-
-
57049157146
-
-
- , Runtime certification, in Eighth Workshop on Runtime Verification: RV08, ser. Lecture Notes in Computer Science, M. Leucker, Ed., 5289. Budapest, Hungary: Springer-Verlag, Apr. 2008, pp. 21-35.
-
- , "Runtime certification," in Eighth Workshop on Runtime Verification: RV08, ser. Lecture Notes in Computer Science, M. Leucker, Ed., vol. 5289. Budapest, Hungary: Springer-Verlag, Apr. 2008, pp. 21-35.
-
-
-
-
27
-
-
34547229860
-
-
- , Harnessing disruptive innovation in formal verification, in Fourth International Conference on Software Engineering and Formal Methods (SEFM), D. V. Hung and P. Pandya, Eds. Pune, India: IEEE Computer Society, Sep. 2006, pp. 21-28.
-
- , "Harnessing disruptive innovation in formal verification," in Fourth International Conference on Software Engineering and Formal Methods (SEFM), D. V. Hung and P. Pandya, Eds. Pune, India: IEEE Computer Society, Sep. 2006, pp. 21-28.
-
-
-
-
28
-
-
0036466927
-
Using model checking to help discover mode confusions and other automation surprises
-
Feb, available at
-
- , "Using model checking to help discover mode confusions and other automation surprises," Reliability Engineering and System Safety, vol. 75, no. 2, pp. 167-177, Feb. 2002, available at http://www.csl.sri. com/users/rushby/abstracts/ress02.
-
(2002)
Reliability Engineering and System Safety
, vol.75
, Issue.2
, pp. 167-177
-
-
-
29
-
-
77749234918
-
-
National Transportation Safety Board, Washington, DC, Oct. 2007, available at
-
Safety Recommendations A-07-65 though -69, National Transportation Safety Board, Washington, DC, Oct. 2007, available at http://www.ntsb.gov/recs/ letters/2007/A07-65-69.pdf.
-
Safety Recommendations A-07-65 though -69
-
-
-
30
-
-
77749234916
-
-
National Transportation Safety Board, Washington, DC, Oct. 2007, available at
-
Safety Recommendation A-07-70 though -86, National Transportation Safety Board, Washington, DC, Oct. 2007, available at http://www.ntsb.gov/Recs/ letters/2007/A07-70-86.pdf.
-
Safety Recommendation A-07-70 though -86
-
-
-
31
-
-
77749231827
-
-
In-Flight Upset Event, 154 km West of Learmonth, WA, 7 October 2008, VH-QPA Airbus A330-303, Australian Transport Safety Bureau, Mar. 2009, reference number AO-2008-070 Interim Factual, available at http://www.atsb.gov. au/publications/investigation reports/2008/AAIR/pdf/AO2008070-interim.pdf.
-
In-Flight Upset Event, 154 km West of Learmonth, WA, 7 October 2008, VH-QPA Airbus A330-303, Australian Transport Safety Bureau, Mar. 2009, reference number AO-2008-070 Interim Factual, available at http://www.atsb.gov. au/publications/investigation reports/2008/AAIR/pdf/AO2008070-interim.pdf.
-
-
-
-
32
-
-
77749234913
-
-
In-Flight Upset Event, 240 km North-West of Perth, WA, Boeing Company 777-200, 9M-MRG, 1 August 2005, Australian Transport Safety Bureau, Mar. 2007, reference number Mar2007/DOTARS 50165, available at http://www.atsb.gov. au/publications/investigation reports/2005/AAIR/aair200503722.aspx.
-
In-Flight Upset Event, 240 km North-West of Perth, WA, Boeing Company 777-200, 9M-MRG, 1 August 2005, Australian Transport Safety Bureau, Mar. 2007, reference number Mar2007/DOTARS 50165, available at http://www.atsb.gov. au/publications/investigation reports/2005/AAIR/aair200503722.aspx.
-
-
-
-
33
-
-
77749231833
-
-
Report on the incident to Airbus A340-642, registration G-VATL enroute from Hong Kong to London Heathrow on 8 February 2005, UK Air Investigations Branch, 2007, available at http://www.aaib.gov.uk/publications/formal-reports/ 4-2007-g-vatl.cfm.
-
Report on the incident to Airbus A340-642, registration G-VATL enroute from Hong Kong to London Heathrow on 8 February 2005, UK Air Investigations Branch, 2007, available at http://www.aaib.gov.uk/publications/formal-reports/ 4-2007-g-vatl.cfm.
-
-
-
-
35
-
-
0031124371
-
-
M. Kaufmann and J. S. Moore, An industrial strength theorem prover for a logic based on Common Lisp, IEEE Transactions on Software Engineering, 23, no. 4, pp. 203-213, Apr. 1997, aCL2 home page: http://www.cs.utexas.edu/users/moore/acl2/.
-
M. Kaufmann and J. S. Moore, "An industrial strength theorem prover for a logic based on Common Lisp," IEEE Transactions on Software Engineering, vol. 23, no. 4, pp. 203-213, Apr. 1997, aCL2 home page: http://www.cs.utexas.edu/users/moore/acl2/.
-
-
-
-
36
-
-
0003712416
-
-
INRIA, Rocquencourt, France, Tech. Rep, Feb. 1995, coq home page
-
C. Cornes, J. Courant, J. Filliâtre, G. Huet, P. Manoury, C. Paulin-Mohring, C. Muñoz, C. Murthy, C. Parent, A. Saibi, and B. Werner, "The Coq proof assistant reference manual, version 5.10," INRIA, Rocquencourt, France, Tech. Rep., Feb. 1995, coq home page: http:///coq.inria. fr.
-
The Coq proof assistant reference manual, version 5.10
-
-
Cornes, C.1
Courant, J.2
Filliâtre, J.3
Huet, G.4
Manoury, P.5
Paulin-Mohring, C.6
Muñoz, C.7
Murthy, C.8
Parent, C.9
Saibi, A.10
Werner, B.11
-
37
-
-
77749284497
-
-
M. J. C. Gordon and T. F. Melham, Eds., Introduction to HOL: A Theorem Proving Environment for Higher-Order Logic. Cambridge, UK: Cambridge University Press, 1993, hOL home page: http://www.cl.cam.ac.uk/Research/HVG/HOL/ .
-
M. J. C. Gordon and T. F. Melham, Eds., Introduction to HOL: A Theorem Proving Environment for Higher-Order Logic. Cambridge, UK: Cambridge University Press, 1993, hOL home page: http://www.cl.cam.ac.uk/Research/HVG/HOL/ .
-
-
-
-
38
-
-
77749284495
-
-
L. C. Paulson, Isabelle: A Generic Theorem Prover, ser. Lecture Notes in Computer Science. Springer-Verlag, 1994, 828, isabelle home page: http://www.cl.cam.ac.uk/research/hvg/Isabelle/.
-
L. C. Paulson, Isabelle: A Generic Theorem Prover, ser. Lecture Notes in Computer Science. Springer-Verlag, 1994, vol. 828, isabelle home page: http://www.cl.cam.ac.uk/research/hvg/Isabelle/.
-
-
-
-
39
-
-
0029251055
-
-
S. Owre, J. Rushby, N. Shankar, and F. von Henke, Formal verification for fault-tolerant architectures: Prolegomena to the design of PVS, IEEE Transactions on Software Engineering, 21, no. 2, pp. 107-125, Feb. 1995, pVS home page: http://pvs.csl.sri.com.
-
S. Owre, J. Rushby, N. Shankar, and F. von Henke, "Formal verification for fault-tolerant architectures: Prolegomena to the design of PVS," IEEE Transactions on Software Engineering, vol. 21, no. 2, pp. 107-125, Feb. 1995, pVS home page: http://pvs.csl.sri.com.
-
-
-
-
40
-
-
14744275497
-
-
Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep. SRI-CSL-01-01, Apr
-
S. Owre and N. Shankar, "Theory interpretations in PVS," Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep. SRI-CSL-01-01, Apr. 2001.
-
(2001)
Theory interpretations in PVS
-
-
Owre, S.1
Shankar, N.2
-
41
-
-
77749231834
-
-
M. Saaltink, Domain checking Z specifications, in LFM' 97: Fourth NASA Langley Formal Methods Workshop, ser. NASA Conference Publication 3356, C. M. Holloway and K. J. Hayhurst, Eds. Hampton, VA: NASA Langley Research Center, Sep. 1997, pp. 185-192, available at http://atb-www.larc.nasa.gov/Lfm97/proceedings/.
-
M. Saaltink, "Domain checking Z specifications," in LFM' 97: Fourth NASA Langley Formal Methods Workshop, ser. NASA Conference Publication 3356, C. M. Holloway and K. J. Hayhurst, Eds. Hampton, VA: NASA Langley Research Center, Sep. 1997, pp. 185-192, available at http://atb-www.larc.nasa.gov/Lfm97/proceedings/.
-
-
-
-
42
-
-
47249163871
-
-
Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep, Mar, available from
-
J. Crow, S. Owre, J. Rushby, N. Shankar, and D. Stringer-Calvert, "Evaluating, testing, and animating PVS specifications," Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep., Mar. 2001, available from http://www.csl.sri.com/users/rushby/abstracts/attachments.
-
(2001)
Evaluating, testing, and animating PVS specifications
-
-
Crow, J.1
Owre, S.2
Rushby, J.3
Shankar, N.4
Stringer-Calvert, D.5
-
43
-
-
33947105015
-
A note on inconsistent axioms in Rushby's Systematic formal verification for fault-tolerant time-triggered algorithms
-
May
-
L. Pike, "A note on inconsistent axioms in Rushby's "Systematic formal verification for fault-tolerant time-triggered algorithms"," IEEE Transactions on Software Engineering, vol. 32, no. 5, pp. 347-348, May 2006.
-
(2006)
IEEE Transactions on Software Engineering
, vol.32
, Issue.5
, pp. 347-348
-
-
Pike, L.1
-
44
-
-
37149003042
-
-
Computer Science Laboratory, SRI International, Menlo Park, CA, Technical Note, Sep, available at
-
G. Hamon, L. de Moura, and J. Rushby, "Automated test generation with SAL," Computer Science Laboratory, SRI International, Menlo Park, CA, Technical Note, Sep. 2005, available at http://www.csl.sri.com/users/rushby/ abstracts/sal-atg.
-
(2005)
Automated test generation with SAL
-
-
Hamon, G.1
de Moura, L.2
Rushby, J.3
-
47
-
-
35248882606
-
-
J. S. Moore, A grand challenge proposal for formal methods: A verified stack, in Formal Methods at the Crossroads: From Panacea to Foundational Support, ser. Lecture Notes in Computer Science, 2757. Lisbon, Portugal: Springer-Verlag, 2003, pp. 161-172, 10th Anniversary Colloquium of UNU/IIST the International Institute for Software Technology of The United Nations University.
-
J. S. Moore, "A grand challenge proposal for formal methods: A verified stack," in Formal Methods at the Crossroads: From Panacea to Foundational Support, ser. Lecture Notes in Computer Science, vol. 2757. Lisbon, Portugal: Springer-Verlag, 2003, pp. 161-172, 10th Anniversary Colloquium of UNU/IIST the International Institute for Software Technology of The United Nations University.
-
-
-
-
48
-
-
0009932281
-
Edinburgh LCF: A Mechanized Logic of Computation
-
Springer-Verlag
-
M. Gordon, R. Milner, and C. Wadsworth, Edinburgh LCF: A Mechanized Logic of Computation, ser. Lecture Notes in Computer Science. Springer-Verlag, 1979, vol. 78.
-
(1979)
ser. Lecture Notes in Computer Science
, vol.78
-
-
Gordon, M.1
Milner, R.2
Wadsworth, C.3
-
49
-
-
33749553558
-
-
J. Harrison, Towards self-verification of HOL Light, in Automated Reasoning, Third International Joint Conference, IJCAR 2006, Seattle, WA, USA, August 17-20, 2006, Proceedings, ser. Lecture Notes in Computer Science, U. Furbach and N. Shankar, Eds., 4130. Springer, 2006, pp. 177-191. [Online]. Available: http://dx.doi.org/10.1007/11814771-17
-
J. Harrison, "Towards self-verification of HOL Light," in Automated Reasoning, Third International Joint Conference, IJCAR 2006, Seattle, WA, USA, August 17-20, 2006, Proceedings, ser. Lecture Notes in Computer Science, U. Furbach and N. Shankar, Eds., vol. 4130. Springer, 2006, pp. 177-191. [Online]. Available: http://dx.doi.org/10.1007/11814771-17
-
-
-
-
50
-
-
56749155805
-
-
N. Shankar, Trust and automation in verification tools, in 6th International Symposium on Automated Technology for Verification and Analysis (ATVA), ser. Lecture Notes in Computer Science, S. S. Cha, J.-Y. Choi, M. Kim, I. Lee, and M. Viswanathan, Eds., 5311. Springer-Verlag, Oct. 2008, pp. 4-17.
-
N. Shankar, "Trust and automation in verification tools," in 6th International Symposium on Automated Technology for Verification and Analysis (ATVA), ser. Lecture Notes in Computer Science, S. S. Cha, J.-Y. Choi, M. Kim, I. Lee, and M. Viswanathan, Eds., vol. 5311. Springer-Verlag, Oct. 2008, pp. 4-17.
-
-
-
|