-
1
-
-
36448976990
-
-
Air Force Safety Agency (2000). Air Force System Safety Handbook. Available at http://www.system-safety.org/Documents/AF_System-Safety-HNDBK.pdf. Last retrieved on November, 15, 2009.
-
(2000)
Air Force System Safety Handbook
-
-
-
2
-
-
47749109617
-
ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects
-
Akerlund, O., P. Bieber, E. Böede, et al. (2006). ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects. In Proc. European Congress on Embedded Real Time Software (ERTS 2006).
-
(2006)
Proc. European Congress on Embedded Real Time Software (ERTS 2006)
-
-
Akerlund, O.1
Bieber, P.2
Böede, E.3
-
3
-
-
0000175192
-
Safety-critical systems, formal methods and standards
-
Bowen, J.P. and V. Stavridou (1992). Safety-critical systems, formal methods and standards. BCS/IEE Software Engineering Journal 8(4), 189–209.
-
(1992)
BCS/IEE Software Engineering Journal
, vol.8
, Issue.4
, pp. 189-209
-
-
Bowen, J.P.1
Stavridou, V.2
-
4
-
-
38149006221
-
Symbolic fault tree analysis for reactive systems
-
Berlin: Springer
-
Bozzano, M., A. Cimatti, and F. Tapparo (2007). Symbolic fault tree analysis for reactive systems. In Proc. 5th International Symposium on Automated Technology for Verification and Analysis (ATVA 2007), Volume 4762 of LNCS, pp. 162–176. Berlin: Springer.
-
(2007)
Proc. 5th International Symposium on Automated Technology for Verification and Analysis
, vol.4762
, pp. 162-176
-
-
Bozzano, M.1
Cimatti, A.2
Tapparo, F.3
-
6
-
-
20044368093
-
ESACS: An integrated methodology for design and safety analysis of complex systems
-
Leiden, The Netherlands: Balkema
-
Bozzano, M., A. Villafiorita, and O. Åkerlund et al. (2003). ESACS: An integrated methodology for design and safety analysis of complex systems. In Proc. European Safety and Reliability Conference (ESREL 2003), pp. 237–245. Leiden, The Netherlands: Balkema.
-
(2003)
Proc. European Safety and Reliability Conference (ESREL 2003)
, pp. 237-245
-
-
Bozzano, M.1
Villafiorita, A.2
Åkerlund, O.3
-
11
-
-
65749098082
-
Embedded software: Facts, figures, and future
-
Ebert, C. and C. Jones (2009). Embedded software: Facts, figures, and future. Computer 42(04), 42–52.
-
(2009)
Computer
, vol.42
, Issue.4
, pp. 42-52
-
-
Ebert, C.1
Jones, C.2
-
13
-
-
84882934448
-
A short history of system safety
-
Ericson II C.A. (2006). A short history of system safety. Journal of System Safety (eEdition) 42(3).
-
(2006)
Journal of System Safety
, vol.42
, Issue.3
-
-
Ericson, C.A.1
-
14
-
-
0039748663
-
Towards integrated safety analysis and design
-
Fenelon, P., J.A. McDermid, M. Nicolson, and D. Pumfrey (1994). Towards integrated safety analysis and design. SIGAPP Applied Computing Review 2(1), 21–32.
-
(1994)
SIGAPP Applied Computing Review
, vol.2
, Issue.1
, pp. 21-32
-
-
Fenelon, P.1
McDermid, J.A.2
Nicolson, M.3
Pumfrey, D.4
-
15
-
-
0035393057
-
Crouching dragon, hidden software: Software in DoD weapon systems
-
Ferguson, J. (2001). Crouching dragon, hidden software: Software in DoD weapon systems. IEEE Software 18(4), 105–107.
-
(2001)
IEEE Software
, vol.18
, Issue.4
, pp. 105-107
-
-
Ferguson, J.1
-
17
-
-
85134995680
-
-
History of the Elevator (Last retrieved on November 15, 2009). The History of the Elevator. Available at http://inventors.about.com/library/inventors/blelevator.htm.
-
(2009)
The History of the Elevator
-
-
-
18
-
-
33746265011
-
A proposal for model-based safety analysis
-
Washington, D.C.: IEEE Computer Society
-
Joshi, A., S. Miller, M. Whalen, and M. Heimdahl (2005). A proposal for model-based safety analysis. In Proc. 24th Digital Avionics Systems Conference (DASC 2005). Washington, D.C.: IEEE Computer Society.
-
(2005)
Proc. 24th Digital Avionics Systems Conference (DASC 2005)
-
-
Joshi, A.1
Miller, S.2
Whalen, M.3
Heimdahl, M.4
-
20
-
-
0005070779
-
Architectural blueprints—the “4+1” view model of software architecture
-
Kruchten, P. (1995). Architectural blueprints—the “4+1” view model of software architecture. IEEE Software 12(6), 44–50.
-
(1995)
IEEE Software
, vol.12
, Issue.6
, pp. 44-50
-
-
Kruchten, P.1
-
21
-
-
84947240651
-
Fly-by-wire systems for military high performance aircraft
-
M. Schiebe and S. Pferrer (Eds.), Dordrecht, The Netherlands. Kluwer Academic
-
Langer, D., J. Rauch, and M. Rössler (1992). Fly-by-wire systems for military high performance aircraft. In M. Schiebe and S. Pferrer (Eds.), Real-Time Systems Engineering and Applications, pp. 369–395. Dordrecht, The Netherlands. Kluwer Academic.
-
(1992)
Real-Time Systems Engineering and Applications
, pp. 369-395
-
-
Langer, D.1
Rauch, J.2
-
23
-
-
0003533985
-
-
Washington, D.C.: IEEE Computer Society, and New York: McGraw-Hill
-
Lyu, M.R. (Ed.) (1996). Handbook of Software Reliability Engineering. Washington, D.C.: IEEE Computer Society, and New York: McGraw-Hill.
-
(1996)
Handbook of Software Reliability Engineering
-
-
Lyu, M.R.1
-
24
-
-
0035880307
-
Recalls and safety alerts involving pacemakers and implantable cardioverter-defibrillator generators
-
Maisel, W., M. Sweeney, W. Stevenson, K. Ellison, and L. Epstein (2001). Recalls and safety alerts involving pacemakers and implantable cardioverter-defibrillator generators. Journal of the American Medical Association 286(7), 793–799.
-
(2001)
Journal of the American Medical Association
, vol.286
, Issue.7
, pp. 793-799
-
-
Maisel, W.1
Sweeney, M.2
Stevenson, W.3
Ellison, K.4
Epstein, L.5
-
25
-
-
0000793139
-
Cramming more components onto integrated circuits
-
Moore, G.E. (1965). Cramming more components onto integrated circuits. Electronics 38(8), 114–117.
-
(1965)
Electronics
, vol.38
, Issue.8
, pp. 114-117
-
-
Moore, G.E.1
-
26
-
-
85134929673
-
-
NASA (Last retrieved on November, 15, 2009). F-8 digital fly-by-wire aircraft. Available at http://www.nasa.gov/centers/dryden/news/FactSheets/FS-024-DFRC.html.
-
(2009)
F-8 Digital Fly-By-Wire Aircraft
-
-
-
27
-
-
85134985970
-
Practical Reliability Engineering
-
New York: Wiley. Quantitative Software Management, Inc.
-
O’Connor, P.D. (2003). Practical Reliability Engineering (4th ed.). New York: Wiley. Quantitative Software Management, Inc. (Last retrieved on November 15, 2009). Function Point Languages table. Available at http://www.qsm.com/?q=resources/function-point-languages-table/index.html.
-
(2003)
Function Point Languages Table
-
-
O’Connor, P.D.1
-
30
-
-
85134924811
-
Behring Center
-
Smithsonian National Museum of American History, Behring Center (Last retrieved on November 15, 2009). Three Mile Island: The Inside Story. Available at http://americanhistory.si.edu/TMI/.
-
(2009)
Three Mile Island: The inside Story
-
-
-
33
-
-
79959325008
-
-
U.S. Nuclear Regulatory Commission (Last retrieved on November 15, 2009). Backgrounder on the Three Mile Island Accident. Available at http://www.nrc.gov/readingrm/doc-collections/fact-sheets/3mile-isle.html.
-
(2009)
Backgrounder on the Three Mile Island Accident
-
-
-
34
-
-
85134920340
-
World Nuclear Industry Handbook
-
Kenf, Surrey, England: Business Press International
-
Various Authors (2007). World Nuclear Industry Handbook. Kenf, United Kingdom: Nuclear Engineering International. Surrey, England: Business Press International.
-
(2007)
United Kingdom: Nuclear Engineering International
-
-
-
35
-
-
85134933066
-
-
Various Authors (Last retrieved on November, 15, 2009). Aircraft Flight Control System: Available at http://en.wikipedia.org/wiki/Aircraft_flight_control_systems.
-
(2009)
Aircraft Flight Control System
-
-
-
38
-
-
77951726044
-
-
World Nuclear Association (Last retrieved on November 15, 2009). Nuclear Power Reactors. Available at http://www.world-nuclear.org/info/inf32.html.
-
(2009)
Nuclear Power Reactors
-
-
-
40
-
-
85134897822
-
-
FSAP (Last retrieved on November 15, 2009). The FSAP/NuSMV-SA Platform. Available at https://es.fbk.eu/tools/FSAP.
-
(2009)
The Fsap/Nusmv-Sa Platform
-
-
-
41
-
-
85134981711
-
-
Gonyeau, J. (2009). Chernobyl Event. Available at http://www.nucleartourist.com/. Last retrieved on November 15, 2009.
-
(2009)
Chernobyl Event
-
-
Gonyeau, J.1
-
42
-
-
85134937137
-
-
Griffin, S. (2009). Internet Pioneers. Available at http://www.ibiblio.org/pioneers/index.html. Last retrieved on November 15, 2009.
-
(2009)
Internet Pioneers
-
-
Griffin, S.1
-
45
-
-
37249090610
-
Voting structures for cascaded triple modular redundant modules
-
Lee, S., J.-il Jung, and I. Lee (2007). Voting structures for cascaded triple modular redundant modules. IEICE Electronics Express 4(21), 657.
-
(2007)
IEICE Electronics Express
, vol.4
, Issue.21
, pp. 657
-
-
Lee, S.1
Jung, J.-I.2
Lee, I.3
-
46
-
-
37249038760
-
Staggered voting for TMR shift register chains in poly-Si TFT-LCDs
-
Lee, S. and I. Lee (2001). Staggered voting for TMR shift register chains in poly-Si TFT-LCDs. Journal of Information Display 2(2), 22–26.
-
(2001)
Journal of Information Display
, vol.2
, Issue.2
, pp. 22-26
-
-
Lee, S.1
Lee, I.2
-
54
-
-
84977085189
-
-
Various Authors (2009a). Chernobyl disaster. Available at http://en.wikipedia.org/w/index.php?title=Chernobyl_disaster. Last retrieved on November 15, 2009.
-
(2009)
Chernobyl Disaster
-
-
-
55
-
-
78149387408
-
-
Various Authors (2009b). The history of the internet. Available at http://en.wikipedia.org/wiki/History_of_the_Internet. Last retrieved on November 15, 2009.
-
(2009)
The History of the Internet
-
-
-
56
-
-
0003133883
-
Probabilistic logics and the synthesis of reliable organisms from unreliable components
-
In C.E. Shannon and J. McCarthy (Eds.), Princeton, NJ: Princeton University Press
-
Von Neumann, J. (1956). Probabilistic logics and the synthesis of reliable organisms from unreliable components. In C.E. Shannon and J. McCarthy (Eds.), Automata Studies, Number 34, pp. 43–98. Princeton, NJ: Princeton University Press.
-
(1956)
Automata Studies
, vol.34
, pp. 43-98
-
-
von Neumann, J.1
-
57
-
-
85134931878
-
The reliability and safety assessment of protection systems by the use of dynamic event trees
-
Proc. XVIII Annual Meeting Spanish Nuclear Society
-
Cojazzi, G., J.M. Izquierdo, E. Melèndez, and M.S. Perea (1992). The reliability and safety assessment of protection systems by the use of dynamic event trees. The DYLAM-TRETA package. In Proc. XVIII Annual Meeting Spanish Nuclear Society.
-
(1992)
The DYLAM-TRETA Package
-
-
Cojazzi, G.1
Izquierdo, J.M.2
Melèndez, E.3
Perea, M.S.4
-
58
-
-
0026925395
-
Dynamic fault-tree models for fault-tolerant computer systems
-
Dugan, J., S. Bavuso, and M. Boyd (1992). Dynamic fault-tree models for fault-tolerant computer systems. IEEE Transactions on Reliability 41(3), 363–377.
-
(1992)
IEEE Transactions on Reliability
, vol.41
, Issue.3
, pp. 363-377
-
-
Dugan, J.1
Bavuso, S.2
Boyd, M.3
-
60
-
-
84992414199
-
Combining various solution techniques for dynamic fault tree analysis of computer systems
-
Washington, D.C.: IEEE Computer Society
-
Manian, R., J. Dugan, D. Coppit, and K. Sullivan (1998). Combining various solution techniques for dynamic fault tree analysis of computer systems. In Proc. 3rd IEEE International Symposium on High-Assurance Systems Engineering (HASE ’98), pp. 21–28. Washington, D.C.: IEEE Computer Society.
-
(1998)
Proc. 3Rd IEEE International Symposium on High-Assurance Systems Engineering (HASE ’98)
, pp. 21-28
-
-
Manian, R.1
Dugan, J.2
Coppit, D.3
Sullivan, K.4
-
62
-
-
8344227046
-
Guidelines and Methods for Conducting the Safety Assessment Process on Civil Airborne Systems and Equipment
-
SAE (1996). Guidelines and Methods for Conducting the Safety Assessment Process on Civil Airborne Systems and Equipment. Technical Report ARP4761, Society of Automotive Engineers.
-
(1996)
Technical Report ARP4761, Society of Automotive Engineers
-
-
-
63
-
-
0032597677
-
The Galileo fault tree analysis tool
-
Washington, D.C.: IEEE Computer Society
-
Sullivan, K.J., J.B. Dugan, and D. Coppit (1999). The Galileo fault tree analysis tool. In Proc. Symposium on Fault-Tolerant Computing (FTCS 1999), pp. 232–235. Washington, D.C.: IEEE Computer Society.
-
(1999)
Proc. Symposium on Fault-Tolerant Computing (FTCS 1999)
, pp. 232-235
-
-
Sullivan, K.J.1
Dugan, J.B.2
Coppit, D.3
-
64
-
-
85134898565
-
Defence Standard 00-56. Safety Management Requirements for Defence Systems
-
U.K. Ministry of Defence
-
U.K. Ministry of Defence (2007). Defence Standard 00-56. Safety Management Requirements for Defence Systems. Part I: Requirements. II. Guidance on Establishing a Means of Complying with Part 1. U.K. Ministry of Defence.
-
(2007)
Guidance on Establishing a Means of Complying with Part 1
-
-
-
65
-
-
9444250310
-
Fault Tree Handbook with Aerospace Applications
-
Vesely, W., M. Stamatelatos, J. Dugan, J. Fragola, J. Minarick III, and J. Railsback (2002). Fault Tree Handbook with Aerospace Applications. Technical report, NASA.
-
(2002)
Technical Report, NASA
-
-
Vesely, W.1
Stamatelatos, M.2
Dugan, J.3
Fragola, J.4
Minarick, J.5
Railsback, J.6
-
67
-
-
38349042923
-
-
AIA, GAMA, and FAA Aircraft Certification Service (2004). The FAA and Industry Guide to Product Certification. Available at http://www.faa.gov/aircraft/air_cert/design_approvals/media/CPI_guide_II.pdf. Last retrieved on November 15, 2009.
-
(2004)
The FAA and Industry Guide to Product Certification
-
-
-
68
-
-
85134916941
-
-
AIRBUS (Last retrieved on November 15, 2009). A380 Family. Available at http://www.airbus.com/en/aircraftfamilies/a380/.
-
(2009)
A380 Family
-
-
-
69
-
-
0002925854
-
Measuring application development productivity
-
Indianapolis, IN: IBM Press
-
Albrecht, A.J. (1979). Measuring application development productivity. In Proc. IBM Application Development Symposium, pp. 83–92. Indianapolis, IN: IBM Press.
-
(1979)
Proc. IBM Application Development Symposium
, pp. 83-92
-
-
Albrecht, A.J.1
-
72
-
-
84889553404
-
-
Bell Canada (1994). The Trillium Model. Available at http://www2.umassd.edu/swpi/BellCanada/trillium-html/trillium.html. Last retrieved on November 15, 2009.
-
(1994)
The Trillium Model
-
-
-
74
-
-
0024012763
-
A spiral model of software development and enhancement
-
Boehm, B.W. (1988). A spiral model of software development and enhancement. IEEE Computer 21(5), 61–72.
-
(1988)
IEEE Computer
, vol.21
, Issue.5
, pp. 61-72
-
-
Boehm, B.W.1
-
75
-
-
0003567818
-
-
Upper Saddle River, NJ: Prentice Hall
-
Boehm, B.W., E. Horowitz, R. Madachy, D. Reifer, B.K. Clark, B. Steece, W.A. Brown, S. Chulani, and C. Abts (2000). Software Cost Estimation with Cocomo II (with CD-ROM). Upper Saddle River, NJ: Prentice Hall.
-
(2000)
Software Cost Estimation with Cocomo II (With CD-ROM)
-
-
Boehm, B.W.1
Horowitz, E.2
Madachy, R.3
Reifer, D.4
Clark, B.K.5
Steece, B.6
Brown, W.A.7
Chulani, S.8
Abts, C.9
-
78
-
-
33750955454
-
An experimental evaluation on reliability features of n-version programming
-
Washington, D.C.: IEEE Computer Society
-
Cai, X., M.R. Lyu, and M.A. Vouk (2005). An experimental evaluation on reliability features of n-version programming. In Proc. 16th IEEE International Symposium on Software Reliability Engineering (ISSRE’05), pp. 161–170. Washington, D.C.: IEEE Computer Society.
-
(2005)
Proc. 16th IEEE International Symposium on Software Reliability Engineering (ISSRE’05)
, pp. 161-170
-
-
Cai, X.1
Lyu, M.R.2
Vouk, M.A.3
-
80
-
-
0028513196
-
Model checking and abstraction
-
Clarke, E.M., O. Grumberg, and D.E. Long (1994). Model checking and abstraction. ACM Transactions on Programming Languages and Systems (TOPLAS) 16(5), 1512–1542.
-
(1994)
ACM Transactions on Programming Languages and Systems (TOPLAS)
, vol.16
, Issue.5
, pp. 1512-1542
-
-
Clarke, E.M.1
Grumberg, O.2
Long, D.E.3
-
81
-
-
0011790817
-
Capability Maturity Model Integration
-
Pittsburgh, PA: Software Engineering Institute
-
CMMI Product Team (2009). Capability Maturity Model Integration. Technical Report CMU/SEI-2006-TR-008. Pittsburgh, PA: Software Engineering Institute.
-
(2009)
Technical Report CMU/SEI-2006-TR-008
-
-
-
82
-
-
0003682013
-
-
COCOMO II (2000). COCOMO II Model Definition Manual. Available at http://csse.usc.edu/csse/research/COCOMOII/cocomo2000.0/CII_modelman2000.0.pdf. Last retrieved on November 15, 2009.
-
(2000)
COCOMO II Model Definition Manual
-
-
-
84
-
-
85134994947
-
-
Dassault Systemes (Last retrieved on November 15, 2009). Catia - Virtual Design for Product Excellence. Available at http://www.3ds.com/products/catia/welcome/.
-
(2009)
Catia - Virtual Design for Product Excellence
-
-
-
85
-
-
77953220742
-
-
Technical Report CMU/SEI-2007-TN-006, Pittsburgh, PA: Software Engineering Institute
-
Defence Materiel Organisation, Australian Department of Defence (2007). +SAFE, V1.2: A Safety Extension to CMMI-DEV, V1.2. Technical Report CMU/SEI-2007-TN-006, Pittsburgh, PA: Software Engineering Institute.
-
(2007)
A Safety Extension to CMMI-DEV
, vol.V1
, Issue.2
-
-
-
86
-
-
85134897722
-
Military Standard—System Safety Program Requirements
-
Department of Defense (1993). Military Standard—System Safety Program Requirements. Technical Report MIL-STD-882C, Department of Defense.
-
(1993)
Technical Report MIL-STD-882C, Department of Defense
-
-
-
87
-
-
85134919884
-
Department of Defense Handbook—Work Breakdown Structure
-
Department of Defense (1998). Department of Defense Handbook—Work Breakdown Structure. Technical Report MIL-HDBK-881, Department of Defense.
-
(1998)
Technical Report MIL-HDBK-881, Department of Defense
-
-
-
88
-
-
85134965937
-
Department of Defence, Standard Practice for System Safety
-
Department of Defense (2000). Department of Defence, Standard Practice for System Safety. Technical Report MIL-STD-882D, Department of Defense.
-
(2000)
Technical Report MIL-STD-882D, Department of Defense
-
-
-
90
-
-
77958490741
-
-
Dvorak, D.L., Editor (2009). Nasa study on flight software complexity. Available at http://oceexternal.nasa.gov/OCE_LIB/pdf/1021608main_FSWC_Final_Report.pdf. Last retrieved on November 15, 2009.
-
(2009)
Nasa Study on Flight Software Complexity
-
-
Dvorak, D.L.1
-
91
-
-
85134906601
-
-
Embry-Riddle Aeronautical University (Last retrieved on November 15, 2009). FAA National Wildlife Strike Database. Available at http://wildlife.pr.erau.edu/database/mapping_us_select.php.
-
(2009)
FAA National Wildlife Strike Database
-
-
-
93
-
-
33644512478
-
-
FAA (Federal Aviation Administration) (2000). FAA System Safety Handbook. Available at http://www.faa.gov/library/manuals/aviation/risk_management/ss_handbook/. Last retrieved on November 15, 2009.
-
(2000)
FAA System Safety Handbook
-
-
-
94
-
-
84945120633
-
-
Order 8110.4C, U.S. Deparment of Transportation
-
FAA (Federal Aviation Administration) (2007). Type Certification. Order 8110.4C, U.S. Deparment of Transportation.
-
(2007)
Type Certification
-
-
-
95
-
-
85134911797
-
-
FAA (Federal Aviation Administration) (Last retrieved on November 15, 2009). Airport Wildlife Hazard Mitigation Home Page. Available at http://wildlife-mitigation.tc.faa.gov/public_html/index.html.
-
(2009)
Airport Wildlife Hazard Mitigation Home Page
-
-
-
97
-
-
0031385378
-
Theories of abstraction
-
Giunchiglia, F., A. Villafiorita, and T. Walsh (1999). Theories of abstraction. AI Communications 10(3-4), 167–176.
-
(1999)
AI Communications
, vol.10
, Issue.3-4
, pp. 167-176
-
-
Giunchiglia, F.1
Villafiorita, A.2
Walsh, T.3
-
99
-
-
22544445562
-
Understanding conflict in geographically distributed teams: The moderating effects of shared identity, shared context, and spontaneous communication
-
Hinds, P.J. and M. Mortensen (2005). Understanding conflict in geographically distributed teams: The moderating effects of shared identity, shared context, and spontaneous communication. Organization Science, 16(3), 290–307.
-
(2005)
Organization Science
, vol.16
, Issue.3
, pp. 290-307
-
-
Hinds, P.J.1
Mortensen, M.2
-
100
-
-
77954748213
-
-
INCOSE (Last retrieved on November 15, 2009). Requirements Management Tools Survey. Available at http://www.incose.org/ProductsPubs/Products/rmsurvey.aspx.
-
(2009)
Requirements Management Tools Survey
-
-
-
101
-
-
85134899778
-
Information Technology—Software Process Assessment
-
ISO/IEC 15504 (1998). ISO/IEC 15504 : Information Technology—Software Process Assessment—part 7: Guide for Use in Process Improvement.
-
(1998)
Guide for Use in Process Improvement
-
-
-
104
-
-
0022581573
-
An experimental evaluation of the assumption of independence in multiversion programming
-
Knight, J.C. and N.G. Leveson (1986). An experimental evaluation of the assumption of independence in multiversion programming. IEEE Transactions on Software Engineering, 12(1), 96–109.
-
(1986)
IEEE Transactions on Software Engineering
, vol.12
, Issue.1
, pp. 96-109
-
-
Knight, J.C.1
Leveson, N.G.2
-
106
-
-
0003489536
-
-
New York: Blackwell
-
Kuvaja, P., J. Simila, L. Krzanik, A. Bicego, G. Koch, and S. Saukonen (1994). Software Process Assessment and Improvement: the BOOTSTRAP approach. New York: Blackwell.
-
(1994)
Software Process Assessment and Improvement: The BOOTSTRAP Approach
-
-
Kuvaja, P.1
Simila, J.2
Krzanik, L.3
Bicego, A.4
Koch, G.5
Saukonen, S.6
-
107
-
-
0030709925
-
An analysis of the Ariane 5 flight 501 failure—a system engineering perspective
-
Washington, D.C.: IEEE Computer Society
-
Lann, G.L. (1997). An analysis of the Ariane 5 flight 501 failure—a system engineering perspective. In Proc. IEEE International Conference and Workshop on Engineering of Computer-Based Systems, pp. 339–346. Washington, D.C.: IEEE Computer Society.
-
(1997)
Proc. IEEE International Conference and Workshop on Engineering of Computer-Based Systems
, pp. 339-346
-
-
Lann, G.L.1
-
108
-
-
84945713135
-
Applying “design by contract
-
Meyer, B. (1992). Applying “design by contract.” Computer 25, 40–51.
-
(1992)
Computer
, vol.25
, pp. 40-51
-
-
Meyer, B.1
-
110
-
-
77955443913
-
-
Miller, A. (2008). Distributed Agile Development at Microsoft Patterns & Practices. Available at http://download.microsoft.com/download/4/4/a/44a2cebd-63fb-4379-898d-9cf24822c6cc/distributed_agile_development_at_microsoft_patterns_and_practices.pdf. Last retrieved on November 15, 2009.
-
(2008)
Distributed Agile Development at Microsoft Patterns & Practices
-
-
Miller, A.1
-
111
-
-
85134989939
-
A380 hit by new production problems
-
MRY/Reuters (2006). A380 hit by new production problems. Spiegel Online International . Last retrieved on November 15, 2009.
-
(2006)
Spiegel Online International
-
-
-
114
-
-
0003980056
-
-
Technical Report NASA/SP-2007-6105, Rev1, NASA
-
NASA (2007). NASA Systems Engineering Handbook. Technical Report NASA/SP-2007-6105, Rev1, NASA.
-
(2007)
NASA Systems Engineering Handbook
-
-
-
115
-
-
85134910965
-
-
NEi Software Inc. (Last retrieved on November 15, 2009). NEi Software Automotive Case Study. Available at http://www.nenastran.com/newnoran/chPDF/CASE_Chassis_Design.pdf.
-
(2009)
Nei Software Automotive Case Study
-
-
-
117
-
-
33749654993
-
-
Washington, DC: Stationery Office Books
-
Office of Government Commerce (2005). Managing Successful Projects with PRINCE2 (5th revised ed.). Washington, DC: Stationery Office Books.
-
(2005)
Managing Successful Projects with PRINCE2
-
-
-
118
-
-
0003783281
-
Normal Accidents: Living with High-Risk Technologies
-
Updated by Princeton, NJ: Princeton University Press
-
Perrow, C. (1984). Normal Accidents: Living with High-Risk Technologies. Basic Books. Updated by Princeton, NJ: Princeton University Press, 1999.
-
(1984)
Basic Books
-
-
Perrow, C.1
-
120
-
-
58049139009
-
-
Newtown Square, PA: Project Management Institute
-
Project Management Institute (2004). A Guide to the Project Management Body of Knowledge (PMBOK ® Guide) (3rd ed.). Newtown Square, PA: Project Management Institute.
-
(2004)
A Guide to the Project Management Body of Knowledge
-
-
-
121
-
-
1842592072
-
Common cause failure data collection and analysis for safetyrelated components of TRIGA SSR-14MW Pitesti, Romania
-
Radu, G. and D. Mladin (2003). Common cause failure data collection and analysis for safetyrelated components of TRIGA SSR-14MW Pitesti, Romania. In Proc. International Conference Nuclear Energy for New Europe 2003.
-
(2003)
Proc. International Conference Nuclear Energy for New Europe 2003
-
-
Radu, G.1
Mladin, D.2
-
122
-
-
0004026606
-
-
Paris, France: European Space Agency
-
Report by the Inquiry Board (1996). Ariane 5 Flight 501 Failure. Paris, France: European Space Agency.
-
(1996)
Ariane 5 Flight 501 Failure
-
-
-
124
-
-
0002514396
-
Managing the development of large software systems
-
IEEE Computer Society. Reprinted in Proc. 9th International Conference on Software Engineering, Toronto, Ontario, Canada: ACM Press, 1989, pp. 328–338
-
Royce, W.W. (1970). Managing the development of large software systems. In Proc. Western Electronic Show and Convention (WESCON 1970), pp. 1–9. IEEE Computer Society. Reprinted in Proc. 9th International Conference on Software Engineering, Toronto, Ontario, Canada: ACM Press, 1989, pp. 328–338.
-
(1970)
Proc. Western Electronic Show and Convention (WESCON 1970)
, pp. 1-9
-
-
Royce, W.W.1
-
125
-
-
0011964572
-
Certification Considerations for Highly-Integrated or Complex Aircraft Systems
-
Warrendale, PA: Society of Automotive Engineers
-
SAE (1996a). Certification Considerations for Highly-Integrated or Complex Aircraft Systems. Technical Report ARP4754. Warrendale, PA: Society of Automotive Engineers.
-
(1996)
Technical Report ARP4754
-
-
-
126
-
-
0013177364
-
Guidelines and Methods for Conducting the Safety Assessment Process on Civil Airborne Systems and Equipment
-
Warrendale, PA: Society of Automotive Engineers
-
SAE (1996b). Guidelines and Methods for Conducting the Safety Assessment Process on Civil Airborne Systems and Equipment. Technical Report ARP4761. Warrendale, PA: Society of Automotive Engineers.
-
(1996)
Technical Report ARP4761
-
-
-
128
-
-
85134896142
-
Software Engineering
-
University of Southern California (1994), Los Angeles, CA: University of Southern California
-
Sommerville, I. (2007). Software Engineering (8th ed.). Reading, MA: Addison-Wesley. University of Southern California (1994). USC COCOMO Reference Manual. Los Angeles, CA: University of Southern California.
-
(2007)
USC COCOMO Reference Manual
-
-
Sommerville, I.1
-
129
-
-
85134973235
-
-
University of Southern California (2000). USC COCOMO II 2000 Software Reference Manual. Available at http://csse.usc.edu/csse/research/COCOMOII/cocomo2000.0/CII_manual2000.0.pdf. Last retrieved on November 15, 2009.
-
(2000)
USC COCOMO II 2000 Software Reference Manual
-
-
-
131
-
-
85134924791
-
-
Various Authors (Last retrieved on November 15, 2009a). List of GUI Testing Tools. Available at http://en.wikipedia.org/wiki/List_of_GUI_testing_tools.
-
(2009)
List of GUI Testing Tools
-
-
-
132
-
-
77957738643
-
-
Various Authors (Last retrieved on November 15, 2009b). Revision Control. Available at http://en.wikipedia.org/wiki/Revision_control.
-
(2009)
Revision Control
-
-
-
133
-
-
34548840634
-
Designing safe, reliable systems using scade
-
Abdulla, P.A., J. Deneux, G. Stålmarck, H. Ågren, and O. Åkerlund (2004). Designing safe, reliable systems using scade. In T. Margaria, B. Steffen, A. Philippou, and M. Reitenspieß (Eds.), Proc. 1st International Symposium on Leveraging Applications of Formal Methods (ISoLA 2004), Volume 4313 of LNCS, pp. 111–118. Springer.
-
(2004)
Proc. 1st International Symposium on Leveraging Applications of Formal Methods
, vol.4313
, pp. 111-118
-
-
Abdulla, P.A.1
Deneux, J.2
Stålmarck, G.3
Ågren, H.4
Åkerlund, O.5
-
135
-
-
85030852176
-
The B-method
-
Abrial, J.-R., M. Lee, D.S. Neilson, P. Scharbach, and I.H. Sorensen (1991). The B-method. In S. Prehn and W. Toetenel (Eds.), Proc. 4th International Symposium of VDM Europe (VDM’91), Volume 552 of LNCS, pp. 398–405. Springer.
-
(1991)
Proc. 4th International Symposium of VDM Europe
, vol.552
, pp. 398-405
-
-
Abrial, J.-R.1
Lee, M.2
Neilson, D.S.3
Scharbach, P.4
Sorensen, I.H.5
-
136
-
-
85134897255
-
-
Accellera (Last retrieved on November 15, 2009). Accellera. http://www.accellera.org.
-
(2009)
Accellera
-
-
-
138
-
-
47749109617
-
ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects
-
Akerlund, O., P. Bieber, and E. Böede et al. (2006). ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects. In Proc. European Congress on Embedded Real Time Software (ERTS 2006).
-
(2006)
Proc. European Congress on Embedded Real Time Software
-
-
Akerlund, O.1
Bieber, P.2
Böede, E.3
-
139
-
-
0029637354
-
The algorithmic analysis of hybrid systems
-
Alur, R., C. Courcoubetis, N. Halbwachs, et al. (1995). The algorithmic analysis of hybrid systems. Theoretical Compututer Science 1, 3–34.
-
(1995)
Theoretical Compututer Science
, vol.1
, pp. 3-34
-
-
Alur, R.1
Courcoubetis, C.2
Halbwachs, N.3
-
140
-
-
33747356808
-
Automatic symbolic verification of embedded systems
-
Alur, R., T.A. Henzinger, and P.-H. Ho (1996). Automatic symbolic verification of embedded systems. IEEE Transactions on Software Engineering 22(3), 181–201.
-
(1996)
IEEE Transactions on Software Engineering
, vol.22
, Issue.3
, pp. 181-201
-
-
Alur, R.1
Henzinger, T.A.2
Ho, P.-H.3
-
141
-
-
17944367389
-
A brief history of process algebra
-
Baeten, J.C.M. (2005). A brief history of process algebra. Theoretical Computer Science 335(2-3), 131–146.
-
(2005)
Theoretical Computer Science
, vol.335
, Issue.2-3
, pp. 131-146
-
-
Baeten, J.C.M.1
-
143
-
-
35048871556
-
SLAM and Static Driver Verifier: Technology transfer of formal methods inside microsoft
-
Berlin: Springer
-
Ball, T., B. Cook, V. Levin, and S.K. Rajamani (2004). SLAM and Static Driver Verifier: technology transfer of formal methods inside microsoft. In E.A. Boiten, J. Derrick, and G. Smith (Eds.), Proc. 4th International Conference on Integrated Formal Methods (IFM 2004), Volume 2999 of LNCS, pp. 1–20. Berlin: Springer.
-
(2004)
Proc. 4Th International Conference on Integrated Formal Methods (IFM 2004)
, vol.2999
, pp. 1-20
-
-
Ball, T.1
Cook, B.2
Levin, V.3
Rajamani, S.K.4
-
144
-
-
33751002351
-
Retrenchment, and the generation of fault trees for static, dynamic and cyclic systems
-
Banach, R. and M. Bozzano (2006). Retrenchment, and the generation of fault trees for static, dynamic and cyclic systems. In J.G´orski (Ed.), Proc. 25th International Conference on Computer Safety, Reliability, and Security (SAFECOMP 2006), Volume 4166 of LNCS, pp. 127–141. Springer.
-
(2006)
Proc. 25th International Conference on Computer Safety, Reliability, and Security (SAFECOMP 2006)
, vol.4166
, pp. 127-141
-
-
Banach, R.1
Bozzano, M.2
-
145
-
-
26444507199
-
Retrenching the purse: Finite sequence numbers, and the tower pattern
-
Banach, R., M. Poppleton, C. Jeske, and S. Stepney (2005). Retrenching the purse: finite sequence numbers, and the tower pattern. In J. Fitzgerald, I. Hayes, and A. Tarlecki (Eds.), Proc. International Symposium of Formal Methods Europe (FM 2005), Volume 3582 of LNCS, pp. 382–398. Springer.
-
(2005)
Proc. International Symposium of Formal Methods Europe (FM 2005)
, vol.3582
, pp. 382-398
-
-
Banach, R.1
Poppleton, M.2
Jeske, C.3
Stepney, S.4
-
146
-
-
0042023007
-
Formal methods: Use and relevance for the development of safety-critical systems
-
Barroca, L.M. and J.A. McDermid (1992). Formal methods: Use and relevance for the development of safety-critical systems. Computer Journal 35(6), 579–599.
-
(1992)
Computer Journal
, vol.35
, Issue.6
, pp. 579-599
-
-
Barroca, L.M.1
McDermid, J.A.2
-
149
-
-
0021291978
-
Process algebra for synchronous communication
-
Bergstra, J. and J. Klop (1984). Process algebra for synchronous communication. Information and Control 60(1-3), 109–137.
-
(1984)
Information and Control
, vol.60
, Issue.1-3
, pp. 109-137
-
-
Bergstra, J.1
Klop, J.2
-
150
-
-
84937570074
-
Combination of fault tree analysis and model checking for safety assessment of complex system
-
Berlin: Springer
-
Bieber, P., C. Castel, and C. Seguin (2002). Combination of fault tree analysis and model checking for safety assessment of complex system. In F. Grandoni and P. Thèvenod-Fosse (Eds.), Proc. 4th European Dependable Computing Conference (EDCC-4), Volume 2485 of LNCS, pp. 19–31. Berlin: Springer.
-
(2002)
Proc. 4th European Dependable Computing Conference (EDCC-4)
, vol.2485
, pp. 19-31
-
-
Bieber, P.1
Castel, C.2
Seguin, C.3
-
151
-
-
84944319371
-
Symbolic model checking without bdds
-
In R. Cleaveland (Ed.), Berlin: Springer
-
Biere, A., A. Cimatti, E.M. Clarke, and Y. Zhu (1999). Symbolic model checking without bdds. In R. Cleaveland (Ed.), Proc. 5th International Conference on Tools and Algorithms for Construction and Analysis of Systems (TACAS’99), Volume 1579 of LNCS, pp. 193–207. Berlin: Springer.
-
(1999)
Proc. 5th International Conference on Tools and Algorithms for Construction and Analysis of Systems
, vol.1579
, pp. 193-207
-
-
Biere, A.1
Cimatti, A.2
Clarke, E.M.3
Zhu, Y.4
-
152
-
-
0029346301
-
Seven more myths of formal methods
-
Bowen, J.P. and M.G. Hinchey (1995). Seven more myths of formal methods. IEEE Software 12(4), 34–41.
-
(1995)
IEEE Software
, vol.12
, Issue.4
, pp. 34-41
-
-
Bowen, J.P.1
Hinchey, M.G.2
-
153
-
-
0000175192
-
Safety-critical systems, formal methods and standards
-
Bowen, J.P. and V. Stavridou (1992). Safety-critical systems, formal methods and standards. BCS/IEE Software Engineering Journal 8(4), 189–209.
-
(1992)
BCS/IEE Software Engineering Journal
, vol.8
, Issue.4
, pp. 189-209
-
-
Bowen, J.P.1
Stavridou, V.2
-
154
-
-
38149006221
-
Symbolic fault tree analysis for reactive systems
-
Berlin: Springer
-
Bozzano, M., A. Cimatti, and F. Tapparo (2007). Symbolic fault tree analysis for reactive systems. In Proc. 5th International Symposium on Automated Technology for Verification and Analysis (ATVA 2007), Volume 4762 of LNCS, pp. 162–176. Berlin: Springer.
-
(2007)
Proc. 5th International Symposium on Automated Technology for Verification and Analysis
, vol.4762
, pp. 162-176
-
-
Bozzano, M.1
Cimatti, A.2
Tapparo, F.3
-
155
-
-
33750993028
-
Integrating fault tree analysis with event ordering information
-
Leiden, The Netherlands: Balkema Publisher
-
Bozzano, M. and A. Villafiorita (2003). Integrating fault tree analysis with event ordering information. In Proc. European Safety and Reliability Conference (ESREL 2003), pp. 247–254. Leiden, The Netherlands: Balkema Publisher.
-
(2003)
Proc. European Safety and Reliability Conference (ESREL 2003)
, pp. 247-254
-
-
Bozzano, M.1
Villafiorita, A.2
-
157
-
-
20044368093
-
ESACS: An integrated methodology for design and safety analysis of complex systems
-
Leiden, The Netherlands: Balkema Publisher
-
Bozzano, M., A. Villafiorita, and O. Åkerlund et al. (2003). ESACS: An integrated methodology for design and safety analysis of complex systems. In Proc. European Safety and Reliability Conference (ESREL 2003), pp. 237–245. Leiden, The Netherlands: Balkema Publisher.
-
(2003)
Proc. European Safety and Reliability Conference (ESREL 2003)
, pp. 237-245
-
-
Bozzano, M.1
Villafiorita, A.2
Åkerlund, O.3
-
158
-
-
0026913667
-
Symbolic boolean manipulation with ordered binary decision diagrams
-
Bryant, R.E. (1992). Symbolic boolean manipulation with ordered binary decision diagrams. ACM Computing Surveys 24(3), 293–318.
-
(1992)
ACM Computing Surveys
, vol.24
, Issue.3
, pp. 293-318
-
-
Bryant, R.E.1
-
159
-
-
0028413136
-
Symbolic model checking for sequential circuit verification
-
Burch, J.R., E.M. Clarke, D. Long, K.L. McMillan, and D.L. Dill (1994). Symbolic model checking for sequential circuit verification. IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems 13(4), 401–424.
-
(1994)
IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems
, vol.13
, Issue.4
, pp. 401-424
-
-
Burch, J.R.1
Clarke, E.M.2
Long, D.3
McMillan, K.L.4
Dill, D.L.5
-
160
-
-
35048900689
-
Symbolic model checking: 1020 states and beyond
-
Burch, J.R., E.M. Clarke, K.L. McMillan, D.L. Dill, and L.J. Hwang (1992). Symbolic model checking: 1020 states and beyond. Information and Computation 98(2), 142–170.
-
(1992)
Information and Computation
, vol.98
, Issue.2
, pp. 142-170
-
-
Burch, J.R.1
Clarke, E.M.2
McMillan, K.L.3
Dill, D.L.4
Hwang, L.J.5
-
162
-
-
0026285434
-
A calculus of duration
-
Chaochen, Z., C.A.R. Hoare, and A.P. Ravn (1991). A calculus of duration. Information Processing Letters 40(5), 269–276.
-
(1991)
Information Processing Letters
, vol.40
, Issue.5
, pp. 269-276
-
-
Chaochen, Z.1
Hoare, C.A.R.2
Ravn, A.P.3
-
163
-
-
84896869660
-
NuSMV: A new symbolic model checker
-
Cimatti, A., E.M. Clarke, F. Giunchiglia, and M. Roveri (2000). NuSMV: A new symbolic model checker. Software Tools for Technology Transfer 2(4), 410–425.
-
(2000)
Software Tools for Technology Transfer
, vol.2
, Issue.4
, pp. 410-425
-
-
Cimatti, A.1
Clarke, E.M.2
Giunchiglia, F.3
Roveri, M.4
-
164
-
-
84937557946
-
NuSMV2: An opensource tool for symbolic model checking
-
E. Brinksma and K. Larsen (Eds.), Berlin: Springer
-
Cimatti, A., E.M. Clarke, and E. Giunchiglia et al. (2002). NuSMV2: An opensource tool for symbolic model checking. In E. Brinksma and K. Larsen (Eds.), Proc. 14th International Conference on Computer Aided Verification (CAV’02), Volume 2404 of LNCS, pp. 359–364. Berlin: Springer.
-
(2002)
Proc. 14th International Conference on Computer Aided Verification
, vol.2404
, pp. 359-364
-
-
Cimatti, A.1
Clarke, E.M.2
Giunchiglia, E.3
-
165
-
-
0002367651
-
Synthesis of synchronization skeletons for branching time temporal logic
-
D. Kozen (Ed.), Berlin: Springer
-
Clarke, E.M. and E.A. Emerson (1981). Synthesis of synchronization skeletons for branching time temporal logic. In D. Kozen (Ed.), Proc. Workshop on Logic of Programs, Volume 131 of LNCS, pp. 52–71. Berlin: Springer.
-
(1981)
Proc. Workshop on Logic of Programs
, vol.131
, pp. 52-71
-
-
Clarke, E.M.1
Emerson, E.A.2
-
166
-
-
0022706656
-
Automatic verification of finite-state concurrent systems using temporal logic specifications
-
Clarke, E.M., E.A. Emerson, and A. Sistla (1986). Automatic verification of finite-state concurrent systems using temporal logic specifications. ACM TOPLAS 8(2), 244–263.
-
(1986)
ACM TOPLAS
, vol.8
, Issue.2
, pp. 244-263
-
-
Clarke, E.M.1
Emerson, E.A.2
Sistla, A.3
-
167
-
-
84957376398
-
Verifying the SRT division algorithm using theorem proving techniques
-
In R. Alur and T.A. Henzinger (Eds.), Berlin: Springer
-
Clarke, E.M., S.M. German, and X. Zhao (1996). Verifying the SRT division algorithm using theorem proving techniques. In R. Alur and T.A. Henzinger (Eds.), Proc. 8th International Conference on Computer Aided Verification(CAV’96), Volume 1102 of LNCS, pp. 111–122. Berlin: Springer.
-
(1996)
Proc. 8th International Conference on Computer Aided Verification
, vol.1102
, pp. 111-122
-
-
Clarke, E.M.1
German, S.M.2
Zhao, X.3
-
168
-
-
0027734857
-
Verification of the FUTUREBUS+ cache coherence protocol
-
Amsterdam: Elsevier
-
Clarke, E.M., O. Grumberg, H. Hiraishi, S.K. Jha, D. Long, K.L. McMillan, and L. Ness (1993). Verification of the FUTUREBUS+ cache coherence protocol. In Proc. International Symposium on Computer Hardware Description Languages and their Applications (CHDL-93). Amsterdam: Elsevier.
-
(1993)
Proc. International Symposium on Computer Hardware Description Languages and Their Applications
-
-
Clarke, E.M.1
Grumberg, O.2
Hiraishi, H.3
Jha, S.K.4
Long, D.5
McMillan, K.L.6
Ness, L.7
-
169
-
-
4243189286
-
Counterexample-guided abstraction refinement for symbolic model checking
-
Clarke, E.M., O. Grumberg, S. Jha, Y. Lua, and H. Veith (2003). Counterexample-guided abstraction refinement for symbolic model checking. Journal of the ACM 50(5), 752–794.
-
(2003)
Journal of the ACM
, vol.50
, Issue.5
, pp. 752-794
-
-
Clarke, E.M.1
Grumberg, O.2
Jha, S.3
Lua, Y.4
Veith, H.5
-
171
-
-
0000289556
-
Formal methods: State of the art and future directions
-
Clarke, E.M. and J.M. Wing (1996). Formal methods: State of the art and future directions. ACM Computing Surveys 28, 626–643.
-
(1996)
ACM Computing Surveys
, vol.28
, pp. 626-643
-
-
Clarke, E.M.1
Wing, J.M.2
-
172
-
-
38149012481
-
-
Coq (Last retrieved on November 15, 2009). The Coq proof assistant. http://coq.inria.fr.
-
(2009)
The Coq Proof Assistant
-
-
-
174
-
-
0010118464
-
Implementing safety critical systems: The VIPER microprocessor
-
Dordrecht, The Netherlands: Kluwer Academic
-
Cullyer, W. (1988). Implementing safety critical systems: The VIPER microprocessor. In Proc. VLSI Specification, Verification and Synthesis, pp. 1–26. Dordrecht, The Netherlands: Kluwer Academic.
-
(1988)
Proc. VLSI Specification, Verification and Synthesis
, pp. 1-26
-
-
Cullyer, W.1
-
176
-
-
0029488677
-
Two examples of verification of multirate timed automata with KRONOS
-
Washington, D.C.: IEEE Computer Society
-
Daws, C. and S. Yovine (1995). Two examples of verification of multirate timed automata with KRONOS. In Proc. 16th IEEE Real-Time Systems Symposium, pp. 66–75. Washington, D.C.: IEEE Computer Society.
-
(1995)
Proc. 16th IEEE Real-Time Systems Symposium
, pp. 66-75
-
-
Daws, C.1
Yovine, S.2
-
177
-
-
0036301137
-
Formal verification of human-automation interaction
-
Degani, A. and M. Heymann (2002). Formal verification of human-automation interaction. Human Factors 44(1), 28–43.
-
(2002)
Human Factors
, vol.44
, Issue.1
, pp. 28-43
-
-
Degani, A.1
Heymann, M.2
-
180
-
-
0001801746
-
Protocol verification as a hardware design aid
-
Washington, D.C.: IEEE Computer Society
-
Dill, D.L., A.J. Drexler, A.J. Hu, and C.H. Yang (1992). Protocol verification as a hardware design aid. In Proc. IEEE 1992 International Conference on Computer Design, VLSI in Computers and Processors, pp. 522–525. Washington, D.C.: IEEE Computer Society.
-
(1992)
Proc. IEEE 1992 International Conference on Computer Design, VLSI in Computers and Processors
, pp. 522-525
-
-
Dill, D.L.1
Drexler, A.J.2
Hu, A.J.3
Yang, C.H.4
-
181
-
-
0026925395
-
Dynamic fault-tree models for fault-tolerant computer systems
-
Dugan, J., S. Bavuso, and M. Boyd (1992). Dynamic fault-tree models for fault-tolerant computer systems. IEEE Transactions on Reliability 41(3), 363–77.
-
(1992)
IEEE Transactions on Reliability
, vol.41
, Issue.3
, pp. 363-377
-
-
Dugan, J.1
Bavuso, S.2
Boyd, M.3
-
182
-
-
43349099019
-
-
E (Last retrieved on November 15, 2009). The E Equational Theorem Prover. http://www4.informatik.tu-muenchen.de/schulz/WORK/eprover.html.
-
(2009)
The E Equational Theorem Prover
-
-
-
184
-
-
0001449325
-
Temporal and modal logic
-
In J. van Leeuwen (Ed.), Amsterdam: Elsevier Science
-
Emerson, E.A. (1990). Temporal and modal logic. In J. van Leeuwen (Ed.), Handbook of Theoretical Computer Science, Volume B, pp. 995–1072. Amsterdam: Elsevier Science.
-
(1990)
Handbook of Theoretical Computer Science
, vol.B
, pp. 995-1072
-
-
Emerson, E.A.1
-
185
-
-
85134972761
-
-
ESACS (Last retrieved on November 15, 2009). The ESACS Project. http://www.esacs.org.
-
(2009)
The ESACS Project
-
-
-
186
-
-
85134897822
-
-
FSAP (Last retrieved on November 15, 2009). The FSAP/NuSMV-SA platform. https://es.fbk.eu/tools/FSAP.
-
(2009)
The Fsap/Nusmv-Sa Platform
-
-
-
187
-
-
0022188648
-
Principles of OBJ2
-
New York: ACM
-
Futatsugi, K., J. Goguen, J.-P. Jouannaud, and J. Meseguer (1985). Principles of OBJ2. In Proc. 12th ACM SIGACT-SIGPLAN Symposium on Principles of Programming Languages (POPL’85), pp. 52–66. New York: ACM.
-
(1985)
Proc. 12th ACM SIGACT-SIGPLAN Symposium on Principles of Programming Languages (POPL’85)
, pp. 52-66
-
-
Futatsugi, K.1
Goguen, J.2
Jouannaud, J.-P.3
Meseguer, J.4
-
189
-
-
82055171234
-
An experience with theLOTOSformal description technique on the flight warning computer of the Airbus A330/340 aircrafts
-
Berlin: Springer
-
Garavel, H. and R. Hautbois (1993). An experience with the LOTOS formal description technique on the flight warning computer of the Airbus A330/340 aircrafts. In 1st AMAST International Workshop on Real-Time Systems. Berlin: Springer.
-
(1993)
In 1st amastinternational Workshop on Real-Time Systems
-
-
Garavel, H.1
Hautbois, R.2
-
190
-
-
85032209792
-
An introduction to OBJ 3
-
Berlin: Springer
-
Goguen, J., C. Kirchner, H. Kirchner, A. Megrelis, J. Meseguer, and T. Winkler (1988). An introduction to OBJ 3. In Proc. 1st International Workshop on Conditional Term Rewriting Systems, Volume 308 of LNCS, pp. 258–263. Berlin: Springer.
-
(1988)
Proc. 1st International Workshop on Conditional Term Rewriting Systems
, vol.308
, pp. 258-263
-
-
Goguen, J.1
Kirchner, C.2
Kirchner, H.3
Megrelis, A.4
Meseguer, J.5
Winkler, T.6
-
194
-
-
0003714504
-
-
Springer. Written with S.J. Garland, K.D. Jones, A. Modet, and J.M. Wing. New York: Springer- Verlag
-
Guttag, J.V. and J.J. Horning (1993). Larch: Languages and Tools for Formal Specification. Springer. Written with S.J. Garland, K.D. Jones, A. Modet, and J.M. Wing. New York: Springer- Verlag.
-
(1993)
Larch: Languages and Tools for Formal Specification
-
-
Guttag, J.V.1
Horning, J.J.2
-
195
-
-
0025489197
-
Seven myths of formal methods
-
Hall, A. (1990). Seven myths of formal methods. IEEE Software 7(5), 11–19.
-
(1990)
IEEE Software
, vol.7
, Issue.5
, pp. 11-19
-
-
Hall, A.1
-
196
-
-
0030106817
-
Using formal methods to develop an ATC information system
-
Hall, A. (1996). Using formal methods to develop an ATC information system. IEEE Software 13(2), 66–76.
-
(1996)
IEEE Software
, vol.13
, Issue.2
, pp. 66-76
-
-
Hall, A.1
-
197
-
-
0023365727
-
Statecharts: A visual formalism for complex systems
-
Harel, D. (1987). Statecharts: A visual formalism for complex systems. Science of Computer Programming 8, 231–274.
-
(1987)
Science of Computer Programming
, vol.8
, pp. 231-274
-
-
Harel, D.1
-
198
-
-
4544221419
-
Completeness and consistency in hierarchical state-based requirements
-
Heimdahl, M. and N.G. Leveson (1996). Completeness and consistency in hierarchical state-based requirements. IEEE Transactions on Software Engineering 22(6), 363–377.
-
(1996)
IEEE Transactions on Software Engineering
, vol.22
, Issue.6
, pp. 363-377
-
-
Heimdahl, M.1
Leveson, N.G.2
-
199
-
-
26444560470
-
Incremental and complete bounded model checking for full PLTL
-
In K. Etessami and S.K. Rajamani (Eds.), Berlin: Springer
-
Heljanko, K., T. Junttila, and T. Latvala (2005). Incremental and complete bounded model checking for full PLTL. In K. Etessami and S.K. Rajamani (Eds.), Proc. 17th International Conference on Computer Aided Verification(CAV’05), Volume 3576 of LNCS, pp. 98–111. Berlin: Springer.
-
(2005)
Proc. 17Th International Conference on Computer Aided Verification
, vol.3576
, pp. 98-111
-
-
Heljanko, K.1
Junttila, T.2
Latvala, T.3
-
201
-
-
84945708698
-
An axiomatic basis of computer programming
-
Hoare, C.A.R. (1969). An axiomatic basis of computer programming. Communications of the ACM 12(10), 576–580.
-
(1969)
Communications of the ACM
, vol.12
, Issue.10
, pp. 576-580
-
-
Hoare, C.A.R.1
-
204
-
-
84956965964
-
CICS project report: Experiences and results from the use of Z in IBM
-
S. Prehn and W. Toetenel (Eds.), Berlin: Springer
-
Houston, I. and S. King (1991). CICS project report: Experiences and results from the use of Z in IBM. In S. Prehn and W. Toetenel (Eds.), Proc. 4th International Symposium of VDM Europe (VDM’91), Volume 552 of LNCS, pp. 588–596. Berlin: Springer.
-
(1991)
Proc. 4th International Symposium of VDM Europe (VDM’91)
, vol.552
, pp. 588-596
-
-
Houston, I.1
King, S.2
-
205
-
-
85134968011
-
-
IEEE 1850 (Last retrieved on November 15, 2009). IEEE 1850. http://www.eda.org/ieee-1850.
-
(2009)
IEEE 1850
-
-
-
206
-
-
85134908330
-
-
ISAAC (Last retrieved on November 15, 2009). The ISAAC Project. http://www.cert.fr/isaac.
-
(2009)
The ISAAC Project
-
-
-
208
-
-
85134929305
-
-
Toulouse, France: Cèpadu`es-Ed
-
Javaux, D. and E. Olivier (2000). Assessing and Understanding Pilots’ Knowledge of Mode Transitions on the A340-200/300. In K. Abbott, J.-J. Speyer, and G. Boy (Eds.), Proc.International Conference on Human-Computer Interaction in Aeronautics (HCI-Aero 2000), pp. 163–168. Toulouse, France: Cèpadu`es-Ed.
-
(2000)
Assessing and Understanding Pilots’ Knowledge of Mode Transitions on the A340-200/300Proc.International Conference on Human-Computer Interaction in Aeronautics (Hci-Aero 2000)
, pp. 163-168
-
-
Javaux, D.1
Olivier, E.2
-
210
-
-
33646134101
-
Model-based safety analysis of simulink models using SCADE design verifier
-
In R. Winther, B. Gran, and G. Dahll (Eds.), Berlin: Springer
-
Joshi, A. and M. Heimdahl (2005). Model-based safety analysis of simulink models using SCADE design verifier. In R. Winther, B. Gran, and G. Dahll (Eds.), Proc. 24th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2005), Volume 3688 of LNCS, pp. 122–135. Berlin: Springer.
-
(2005)
Proc. 24th International Conference on Computer Safety, Reliability and Security
, vol.3688
, pp. 122-135
-
-
Joshi, A.1
Heimdahl, M.2
-
211
-
-
33746265011
-
A proposal for model-based safety analysis
-
Washington, D.C.: IEEE Computer Society
-
Joshi, A., S. Miller, M. Whalen, and M. Heimdahl (2005). A proposal for model-based safety analysis. In Proc. 24th Digital Avionics Systems Conference (DASC 2005). Washington, D.C.: IEEE Computer Society.
-
(2005)
Proc. 24th Digital Avionics Systems Conference (DASC 2005)
-
-
Joshi, A.1
Miller, S.2
Whalen, M.3
Heimdahl, M.4
-
212
-
-
70350219116
-
Replacing testing with formal verification in Intel R _ CoreTM i7 processor execution engine validation
-
In A. Bouajjani and O. Maler (Eds.), Berlin: Springer
-
Kaivola, R., R. Ghughal, and N. Narasimhan et al. (2009). Replacing testing with formal verification in Intel R _ CoreTM i7 processor execution engine validation. In A. Bouajjani and O. Maler (Eds.), Proc. 21st International Conference on Computer Aided Verification (CAV’09), Volume 5643 of LNCS, pp. 414–429. Berlin: Springer.
-
(2009)
Proc. 21st International Conference on Computer Aided Verification (CAV’09)
, vol.5643
, pp. 414-429
-
-
Kaivola, R.1
Ghughal, R.2
Narasimhan, N.3
-
214
-
-
0002120015
-
Analysing software specifications for mode confusion potential
-
C.W. Johnson (Ed.)
-
Leveson, N.G., L. Pinnell, S. Sandys, S. Koga, and J. Reese (1997). Analysing software specifications for mode confusion potential. In C.W. Johnson (Ed.), Proc. Workshop on Human Error and System Development, pp. 132–146.
-
(1997)
Proc. Workshop on Human Error and System Development
, pp. 132-146
-
-
Leveson, N.G.1
Pinnell, L.2
Sandys, S.3
Koga, S.4
Reese, J.5
-
216
-
-
38149060047
-
Human error analysis based on a semantically defined cognitive pilot model
-
F. Saglietti and N. Oster (Eds.), Berlin: Springer
-
Lüdtke, A. and L. Pfeiffer (2007). Human error analysis based on a semantically defined cognitive pilot model. In F. Saglietti and N. Oster (Eds.), Proc. 26th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2007), Number 4680 in LNCS, pp. 134–147. Berlin: Springer.
-
(2007)
Proc. 26th International Conference on Computer Safety, Reliability and Security
, vol.4680
, pp. 134-147
-
-
Lüdtke, A.1
Pfeiffer, L.2
-
217
-
-
0041513356
-
Hybrid I/O automata
-
Lynch, N.A., R. Segala, and F.W. Vaandrager (2003). Hybrid I/O automata. Information and Computation 185(1), 105–157.
-
(2003)
Information and Computation
, vol.185
, Issue.1
, pp. 105-157
-
-
Lynch, N.A.1
Segala, R.2
Vaandrager, F.W.3
-
218
-
-
84992414199
-
Combining various solution techniques for dynamic fault tree analysis of computer systems
-
Washington, D.C.: IEEE Computer Society
-
Manian, R., J. Dugan, D. Coppit, and K. Sullivan (1998). Combining various solution techniques for dynamic fault tree analysis of computer systems. In Proc. 3rd IEEE InternationalSymposium on High-Assurance Systems Engineering (HASE ’98), pp. 21–28. Washington, D.C.: IEEE Computer Society.
-
(1998)
Proc. 3rd IEEE Internationalsymposium on High-Assurance Systems Engineering (HASE ’98)
, pp. 21-28
-
-
Manian, R.1
Dugan, J.2
Coppit, D.3
Sullivan, K.4
-
219
-
-
0003581143
-
-
Dordrecht, The Netherlands: Kluwer Academic
-
McMillan, K.L. (1993). Symbolic Model Checking. Dordrecht, The Netherlands: Kluwer Academic.
-
(1993)
Symbolic Model Checking
-
-
McMillan, K.L.1
-
220
-
-
0029214615
-
Formal verification of the AAMP5 microprocessor: A case study in the industrial use of formal methods
-
Washington, D.C.: IEEE Computer Society
-
Miller, S.P. and M. Srivas (1995). Formal verification of the AAMP5 microprocessor: A case study in the industrial use of formal methods. In Proc. Workshop on Industrial-Strength Formal Specification Techniques (WIFT’95), pp. 2–16. Washington, D.C.: IEEE Computer Society.
-
(1995)
Proc. Workshop on Industrial-Strength Formal Specification Techniques (WIFT’95)
, pp. 2-16
-
-
Miller, S.P.1
Srivas, M.2
-
223
-
-
0346334240
-
CASL—The Common Algebraic Specification Language: Semantics and proof theory
-
Mossakowski, T., A. Haxthausen, D. Sannella, and A. Tarlecki (2003). CASL—The Common Algebraic Specification Language: semantics and proof theory. Computing and Informatics 22, 285–321.
-
(2003)
Computing and Informatics
, vol.22
, pp. 285-321
-
-
Mossakowski, T.1
Haxthausen, A.2
Sannella, D.3
Tarlecki, A.4
-
224
-
-
78649329629
-
CASL, the Common Algebraic Specification Language
-
D. Bjørner and M. Henson (Eds.), Berlin: Springer
-
Mossakowski, T., A. Haxthausen, D. Sannella, and A. Tarlecki (2008). CASL, the Common Algebraic Specification Language. In D. Bjørner and M. Henson (Eds.), Logics of Formal Specification Languages, pp. 241–298. Berlin: Springer.
-
(2008)
Logics of Formal Specification Languages
, pp. 241-298
-
-
Mossakowski, T.1
Haxthausen, A.2
Sannella, D.3
Tarlecki, A.4
-
225
-
-
85034570506
-
Reasoning in interval temporal logic
-
Berlin: Springer
-
Moszkowski, B.C. and Z. Manna (1983). Reasoning in interval temporal logic. In Proc. Workshop on Logic of Programs, Volume 164 of LNCS, pp. 371–382. Berlin: Springer.
-
(1983)
Proc. Workshop on Logic of Programs
, vol.164
, pp. 371-382
-
-
Moszkowski, B.C.1
Manna, Z.2
-
228
-
-
85134954025
-
-
NuPRL (Last retrieved on November 15, 2009). The PRL Automated Reasoning Project.http://www.cs.cornell.edu/Info/Projects/NuPRL.
-
(2009)
The PRL Automated Reasoning Project
-
-
-
230
-
-
85134905452
-
-
Otter (Last retrieved on November 15, 2009). The Otter Theorem Prover. http://www.cs.unm.edu/mccune/otter.
-
(2009)
The Otter Theorem Prover
-
-
-
231
-
-
85134996956
-
-
Proc. 14th Annual International Symposium INCOSE 2004
-
Peikenkamp, T., E. Böede, I. Brückner, H. Spenke, M. Bretschneider, and H. J. Holberg (2004). Model-based safety analysis of a flap control system. In Proc. 14th Annual International Symposium INCOSE 2004.
-
(2004)
Model-Based Safety Analysis of a Flap Control System
-
-
Peikenkamp, T.1
Böede, E.2
Brückner, I.3
Spenke, H.4
Bretschneider, M.5
Holberg, H.J.6
-
233
-
-
85134966387
-
Communication with Automata
-
Fort Belvoir, VA
-
Petri, C. (1966). Communication with Automata. DTIC Research Report AD0630125. Defense Technical Information Center, Fort Belvoir, VA.
-
(1966)
Defense Technical Information Center
-
-
Petri, C.1
-
234
-
-
34547226220
-
Formal analysis of hardware requirements
-
E. Sentovich (Ed.), New York: ACM
-
Pill, I., S. Semprini, R. Cavada, M. Roveri, R. Bloem, and A. Cimatti (2006). Formal analysis of hardware requirements. In E. Sentovich (Ed.), Proc. 43rd Design Automation Conference (DAC’06), pp. 821–826. New York: ACM.
-
(2006)
Proc. 43rd Design Automation Conference (DAC’06)
, pp. 821-826
-
-
Pill, I.1
Semprini, S.2
Cavada, R.3
Roveri, M.4
Bloem, R.5
Cimatti, A.6
-
235
-
-
49149133038
-
A temporal logic of concurrent programs
-
Pnueli, A. (1981). A temporal logic of concurrent programs. Theoretical Computer Science 13, 45–60.
-
(1981)
Theoretical Computer Science
, vol.13
, pp. 45-60
-
-
Pnueli, A.1
-
236
-
-
25144498654
-
A survey of recent advances in SAT-based formal verification
-
Prasad, M.R., A. Biere, and A. Gupta (2005). A survey of recent advances in SAT-based formal verification. Software Tools for Technology Transfer 7(2), 156–173.
-
(2005)
Software Tools for Technology Transfer
, vol.7
, Issue.2
, pp. 156-173
-
-
Prasad, M.R.1
Biere, A.2
Gupta, A.3
-
238
-
-
85134907212
-
-
Prover9 (Last retrieved on November 15, 2009). The Prover9 Theorem Prover. http://www.cs.unm.edu/mccune/prover9.
-
(2009)
The Prover9 Theorem Prover
-
-
-
239
-
-
85134991925
-
-
PSL (Last retrieved on November 15, 2009). The PSL/Sugar Consortium. http://www.pslsugar.org.
-
(2009)
The Psl/Sugar Consortium
-
-
-
243
-
-
0027289814
-
New algorithms for fault trees analysis
-
Rauzy, A. (1993). New algorithms for fault trees analysis. Reliability Engineering and System Safety 40(3), 203–211.
-
(1993)
Reliability Engineering and System Safety
, vol.40
, Issue.3
, pp. 203-211
-
-
Rauzy, A.1
-
244
-
-
84957370152
-
Modular verification of SRT division
-
R. Alur and T.A. Henzinger (Eds.), Berlin: Springer
-
Rue, H., N. Shankar, and M.K. Srivas (1996). Modular verification of SRT division. In R. Alur and T.A. Henzinger (Eds.), Proc. 8th International Conference on Computer Aided Verification (CAV’96), Volume 1102 of LNCS, pp. 123–134. Berlin: Springer.
-
(1996)
Proc. 8Th International Conference on Computer Aided Verification (CAV’96)
, vol.1102
, pp. 123-134
-
-
Rue, H.1
Shankar, N.2
Srivas, M.K.3
-
247
-
-
84957041040
-
Modelling the human in human factors
-
(b), In U. Voges (Ed.), Berlin: Springer
-
Rushby, J. (2001b). Modelling the human in human factors. In U. Voges (Ed.), Proc. 20th International Conference on Computer Safety, Reliability, and Security (SAFECOMP 2001), Volume 2187 of LNCS, pp. 86–91. Berlin: Springer.
-
(2001)
Proc. 20th International Conference on Computer Safety, Reliability, and Security (SAFECOMP 2001)
, vol.2187
, pp. 86-91
-
-
Rushby, J.1
-
248
-
-
0036466927
-
Using model checking to help discover mode confusions and other automation surprises
-
Rushby, J. (2002). Using model checking to help discover mode confusions and other automation surprises. Reliability Engineering and System Safety 75(2), 167–177.
-
(2002)
Reliability Engineering and System Safety
, vol.75
, Issue.2
, pp. 167-177
-
-
Rushby, J.1
-
249
-
-
0043092223
-
High level formal verification of next-generation microprocessors
-
New York: ACM
-
Schubert, T. (2003). High level formal verification of next-generation microprocessors. In Proc. 40th Design Automation Conference (DAC’03), pp. 1–6. New York: ACM.
-
(2003)
Proc. 40th Design Automation Conference (DAC’03)
, pp. 1-6
-
-
Schubert, T.1
-
250
-
-
85134973689
-
-
Setheo (Last retrieved on November 15, 2009). The Theorem Prover Setheo. http://www.tcs.informatik.uni-muenchen.de/letz/TU/setheo.
-
(2009)
The Theorem Prover Setheo
-
-
-
251
-
-
70350787997
-
Checking safety properties using induction and a SAT-solver
-
W.A. Hunt Jr. and S.D. Johnson (Eds.), Berlin: Springer
-
Sheeran, M., S. Singh, and G. Stalmarck (2000). Checking safety properties using induction and a SAT-solver. In W.A. Hunt Jr. and S.D. Johnson (Eds.), Proc. 3rd International Conference on Formal Methods in Computer-Aided Design (FMCAD 2000), Volume 1954 of LNCS, pp. 108–125. Berlin: Springer.
-
(2000)
Proc. 3rd International Conference on Formal Methods in Computer-Aided Design (FMCAD 2000)
, pp. 108-125
-
-
Sheeran, M.1
Singh, S.2
Stalmarck, G.3
-
252
-
-
85134996212
-
-
SLAM (Last retrieved on November 15, 2009). The SLAM Project. http://research.microsoft.com/en-us/projects/slam.
-
(2009)
The SLAM Project
-
-
-
256
-
-
85134977968
-
-
STeP (Last retrieved on November 15, 2009). The Stanford Temporal Prover. http://wwwstep.stanford.edu.
-
(2009)
The Stanford Temporal Prover
-
-
-
257
-
-
0043024883
-
-
Technical Report PRG-126, Oxford University Computing Laboratory
-
Stepney, S., D. Cooper, and J. Woodcock (2000). An Electronic Purse: Specification, Refinement and Proof. Technical Report PRG-126, Oxford University Computing Laboratory.
-
(2000)
An Electronic Purse: Specification, Refinement and Proof
-
-
Stepney, S.1
Cooper, D.2
Woodcock, J.3
-
259
-
-
0035446960
-
Software engineering with formal methods: The development of a storm surge barrier control system revisiting seven myths of formal methods
-
Tretmans, J., K. Wijbrans, and M. Chaudron (2001). Software engineering with formal methods: The development of a storm surge barrier control system revisiting seven myths of formal methods. Formal Methods in System Design 19(2), 195–215.
-
(2001)
Formal Methods in System Design
, vol.19
, Issue.2
, pp. 195-215
-
-
Tretmans, J.1
Wijbrans, K.2
Chaudron, M.3
-
260
-
-
85134913953
-
-
UPPAAL (Last retrieved on November 15, 2009). UPPAAL. http://www.uppaal.com.
-
(2009)
UPPAAL
-
-
-
261
-
-
85134954578
-
-
Vampire (Last retrieved on November 15, 2009). Vampire. http://www.voronkov.com/vampire.cgi.
-
(2009)
Vampire
-
-
-
263
-
-
0022987223
-
An automata-theoretic approach to automatic program verification
-
Washington, D.C.: IEEE Computer Society
-
Vardi, M.Y. and P. Wolper (1986). An automata-theoretic approach to automatic program verification. In Proc. Symposium on Logic in Computer Science (LICS ’86), pp. 332–344. Washington, D.C.: IEEE Computer Society.
-
(1986)
Proc. Symposium on Logic in Computer Science (LICS ’86)
, pp. 332-344
-
-
Vardi, M.Y.1
Wolper, P.2
-
264
-
-
9444250310
-
-
Technical report, NASA
-
Vesely, W., M. Stamatelatos, J. Dugan, J. Fragola, J. Minarick III, and J. Railsback (2002). Fault Tree Handbook with Aerospace Applications. Technical report, NASA.
-
(2002)
Fault Tree Handbook with Aerospace Applications
-
-
Vesely, W.1
Stamatelatos, M.2
Dugan, J.3
Fragola, J.4
Minarick, J.5
Railsback, J.6
-
265
-
-
0004269078
-
Fault Tree Handbook
-
U.S. Nuclear Regulatory Commission
-
Vesely, W.E., F.F. Goldberg, N.H. Roberts, and D.F. Haasl (1981). Fault Tree Handbook. Technical Report NUREG-0492, Systems and Reliability Research Office of Nuclear Regulatory Research, U.S. Nuclear Regulatory Commission.
-
(1981)
Technical Report NUREG-0492, Systems and Reliability Research Office of Nuclear Regulatory Research
-
-
Vesely, W.E.1
Goldberg, F.F.2
Roberts, N.H.3
Haasl, D.F.4
-
268
-
-
85047929615
-
A symbiotic relationship between formal methods and security
-
Washington, D.C.: IEEE Computer Society
-
Wing, J. (1998). A symbiotic relationship between formal methods and security. In Proc. Workshop on Computer Security, Dependability, and Assurance: From Needs to Solutions, pp. 26–38. Washington, D.C.: IEEE Computer Society.
-
(1998)
Proc. Workshop on Computer Security, Dependability, and Assurance: From Needs to Solutions
, pp. 26-38
-
-
Wing, J.1
-
269
-
-
38349042923
-
-
AIA, GAMA, and FAA Aircraft Certification Service (2004). The FAA and Industry Guide to Product Certification. Available at http://www.faa.gov/aircraft/air_cert/design_approvals/media/CPI_guide_II.pdf. Last retrieved on November 15, 2009.
-
(2004)
The FAA and Industry Guide to Product Certification
-
-
-
270
-
-
85134935368
-
Clarification of Structure Coverage Analyses of Data Coupling and Control Coupling
-
Certification Authorities Software Team (2004). Clarification of Structure Coverage Analyses of Data Coupling and Control Coupling. Position Paper CAST-19, Federal Aviation Administration. Last retrieved on November 15, 2009.
-
(2004)
Position Paper CAST-19, Federal Aviation Administration
-
-
-
272
-
-
85134909094
-
-
Department of Defense (Last retrieved on November 15, 2009). Assist. Available at https://assist.daps.dla.mil/online/start/.
-
(2009)
Assist.
-
-
-
275
-
-
85134968223
-
-
EUROCAE (Last retrieved on November 15, 2009). EUROCAE web site: http://www.eurocae.net.
-
(2009)
EUROCAE
-
-
-
276
-
-
77955948615
-
-
Technical Document DAP/SSH/091, European Union
-
EUROCONTROL (2006). Safety Case Development Manual. Technical Document DAP/SSH/091, European Union.
-
(2006)
Safety Case Development Manual
-
-
-
277
-
-
79959383493
-
-
European Cooperation for Space Standardization (Last retrieved on November 15, 2009). European Cooperation for Space Standardization web site. Available at http://www.ecss.nl/.
-
(2009)
European Cooperation for Space Standardization
-
-
-
278
-
-
85134903634
-
RTCA/DO-178B, Software Considerations in Airborne Systems and Equipment Certification
-
Federal Aviation Administration (1993). RTCA/DO-178B, Software Considerations in Airborne Systems and Equipment Certification. AC 20-115B, Federal Aviation Administration. Last retrieved on November 15, 2009.
-
(1993)
AC 20-115B, Federal Aviation Administration
-
-
-
279
-
-
0011998335
-
-
Advisory Circular 25.1309-1A, U.S. Deparment of Transportation
-
Federal Aviation Administration (1998). System Design and Analysis. Advisory Circular 25.1309-1A, U.S. Deparment of Transportation.
-
(1998)
System Design and Analysis
-
-
-
280
-
-
85134984048
-
Design Assurance Guidance for Airborne Electronic Hardware
-
Federal Aviation Administration (2005). RTCA/DO-254, Design Assurance Guidance for Airborne Electronic Hardware. AC 20-152, Federal Aviation Administration. Last retrieved on November 15, 2009.
-
(2005)
Federal Aviation Administration
-
-
-
281
-
-
85135000823
-
Type Certification
-
Federal Aviation Administration (2007). Type Certification. Order 8110.4C, U.S. Deparment of Transportation.
-
(2007)
Deparment of Transportation
-
-
-
282
-
-
0006562330
-
-
Technical Report TM-2001-210876, NASA
-
Hayhurst, K.J., D.S. Veerhusen, J.J. Chilenski, and L.K. Rierson (2001). A Practical Tutorial on Modified Condition/Decision Coverage. Technical Report TM-2001-210876, NASA.
-
(2001)
A Practical Tutorial on Modified Condition/Decision Coverage
-
-
Hayhurst, K.J.1
Veerhusen, D.S.2
Chilenski, J.J.3
Rierson, L.K.4
-
283
-
-
85134980943
-
A systematic approach to safety case maintenance
-
John, T.K. and J. McDermid (2001). A systematic approach to safety case maintenance. In M. Felici, K. Kanoun, and A. Pasquini (Eds.), Proc. 18th International Conference on Computer Safety, Reliability and Security (SAFECOMP’99), Volume 1968 of LNCS, pp. 13–26. Springer.
-
(2001)
Proc. 18th International Conference on Computer Safety, Reliability and Security
, vol.1968
, pp. 13-26
-
-
John, T.K.1
McDermid, J.2
-
285
-
-
0025492027
-
Integrating formal methods into the development process
-
Kemmerer, R.A. (1990). Integrating formal methods into the development process. IEEE Software 7(5), 37–50.
-
(1990)
IEEE Software
, vol.7
, Issue.5
, pp. 37-50
-
-
Kemmerer, R.A.1
-
287
-
-
85134934728
-
-
Ministry of Defence (Last retrieved on November 15, 2009). UK Defence Standardization website. Available at http://www.dstan.mod.uk/.
-
(2009)
UK Defence Standardization Website
-
-
-
288
-
-
85134980342
-
-
NASA (Last retrieved on November 15, 2009). Software Requirements Review (SRR) Checklist. Available at http://swassurance.gsfc.nasa.gov/disciplines/quality/checklists/pdf/software_requirements_review.pdf.
-
(2009)
Software Requirements Review (SRR) Checklist
-
-
-
289
-
-
0032731082
-
The potential for a generic approach to certification of safety-critical systems in the transportation sector
-
Papadopoulos, Y. and J.A. McDermid (1999). The potential for a generic approach to certification of safety-critical systems in the transportation sector. Journal of Reliability Engineering and System Safety 63(47–66).
-
(1999)
Journal of Reliability Engineering and System Safety
, vol.63
, Issue.47-66
-
-
Papadopoulos, Y.1
McDermid, J.A.2
-
294
-
-
84911352314
-
Evolution of the framework’s quagmire
-
Sheard, S.A. (2001). Evolution of the framework’s quagmire. Computer 34(7), 96–98.
-
(2001)
Computer
, vol.34
, Issue.7
, pp. 96-98
-
-
Sheard, S.A.1
-
296
-
-
85134929906
-
Digital Avionics Handbook—Avionics, Elements, Software, and Functions
-
Spitzer, C.R. (Ed.) (2006). Digital Avionics Handbook—Avionics, Elements, Software, and Functions (2nd ed.). Boca Raton, FL: CRC. U.S. Government (Last retrieved on November 15, 2009). Code of Federal Regulations, Title 14—Aeronautics and Space. Available at http://ecfr.gpoaccess.gov/cgi/t/text/text-idx?c=ecfr&tpl=/ecfrbrowse/Title14/14tab_02.tpl.
-
(2006)
Code of Federal Regulations, Title 14—Aeronautics and Space
-
-
Spitzer, C.R.1
-
297
-
-
9344231338
-
Safety case development: Current practice, future prospects
-
Wilson, S.P., T. Kelly, J.A. McDermid, and Y. England (1997). Safety case development: Current practice, future prospects. In 12th Annual CSR Workshop on Safety and Reliability of Software Based Systems. Berlin: Springer.
-
(1997)
Annual CSR Workshop on Safety and Reliability of Software Based Systems
-
-
Wilson, S.P.1
Kelly, T.2
McDermid, J.A.3
England, Y.4
-
298
-
-
84949196273
-
Compositional reasoning in model checking
-
In W.P. de Roever, H. Langmaack, and A. Pnueli (Eds.), Berlin: Springer
-
Berezin, S., S. Campos, and E.M. Clarke (1998). Compositional reasoning in model checking. In W.P. de Roever, H. Langmaack, and A. Pnueli (Eds.), Proc. International Symposium on Compositionality: The Significant Difference (COMPOS’97), Volume 1536 of LNCS, pp. 81–102. Berlin: Springer.
-
(1998)
Proc. International Symposium on Compositionality: The Significant Difference (COMPOS’97)
, vol.1536
, pp. 81-102
-
-
Berezin, S.1
Campos, S.2
Clarke, E.M.3
-
299
-
-
38049165554
-
A symbolic model checking framework for safety analysis, diagnosis, and synthesis
-
Berlin: Springer
-
Bertoli, P., M. Bozzano, and A. Cimatti (2007). A symbolic model checking framework for safety analysis, diagnosis, and synthesis. In Model Checking and Artificial Intelligence, Volume 4428 of LNCS, pp. 1–18. Berlin: Springer.
-
(2007)
Model Checking and Artificial Intelligence
, vol.4428
, pp. 1-18
-
-
Bertoli, P.1
Bozzano, M.2
Cimatti, A.3
-
300
-
-
0043027543
-
MBP: A model based planner
-
Bertoli, P., A. Cimatti, M. Pistore, M. Roveri, and P. Traverso (2001). MBP: A model based planner. In Proc. Workshop on Planning under Uncertainty and Incomplete Information.
-
(2001)
In Proc. Workshop on Planning under Uncertainty and Incomplete Information
-
-
Bertoli, P.1
Cimatti, A.2
Pistore, M.3
Roveri, M.4
Traverso, P.5
-
303
-
-
70350778552
-
The COMPASS approach: Correctness, modelling and performability of aerospace systems
-
(a), In B. Buth, G. Rabe, and T. Seyfarth (Eds.), Berlin: Springer
-
Bozzano, M., A. Cimatti, J.-P. Katoen, V.Y. Nguyen, T. Noll, and M. Roveri (2009a). The COMPASS approach: correctness, modelling and performability of aerospace systems. In B. Buth, G. Rabe, and T. Seyfarth (Eds.). In Proc. 28th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2009), Volume 5775 of LNCS, pp. 173–186. Berlin: Springer.
-
(2009)
In Proc. 28th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2009)
, vol.5775
, pp. 173-186
-
-
Bozzano, M.1
Cimatti, A.2
Katoen, J.-P.3
Nguyen, V.Y.4
Noll, T.5
Roveri, M.6
-
305
-
-
0026913667
-
Symbolic Boolean manipulation with ordered binary decision diagrams
-
Bryant, R.E. (1992). Symbolic Boolean manipulation with ordered binary decision diagrams. ACM Computing Surveys 24(3), 293–318.
-
(1992)
ACM Computing Surveys
, vol.24
, Issue.3
, pp. 293-318
-
-
Bryant, R.E.1
-
307
-
-
85027519602
-
-
Cavada, R., A. Cimatti, G. Keighren, E. Olivetti, M. Pistore, and M. Roveri (Last retrieved on November 15, 2009b). NuSMV 2.2 Tutorial. Available at http://nusmv.fbk.eu/NuSMV/tutorial/v24/tutorial.pdf.
-
(2009)
Nusmv 2.2 Tutorial
-
-
Cavada, R.1
Cimatti, A.2
Keighren, G.3
Olivetti, E.4
Pistore, M.5
Roveri, M.6
-
309
-
-
84896869660
-
NuSMV: A new symbolic model checker
-
Cimatti, A., E.M. Clarke, F. Giunchiglia, and M. Roveri (2000). NuSMV: a new symbolic model checker. Software Tools for Technology Transfer 2(4), 410–425.
-
(2000)
Software Tools for Technology Transfer
, vol.2
, Issue.4
, pp. 410-425
-
-
Cimatti, A.1
Clarke, E.M.2
Giunchiglia, F.3
Roveri, M.4
-
310
-
-
84937557946
-
NuSMV2: An opensource tool for symbolic model checking
-
Cimatti, A., E.M. Clarke, E. Giunchiglia et al. (2002). NuSMV2: An opensource tool for symbolic model checking. In E. Brinksma and K. Larsen (Eds.), Proc. 14th International Conference on Computer Aided Verification (CAV’02), Volume 2404 of LNCS, pp. 359–364. Springer.
-
(2002)
Proc. 14th International Conference on Computer Aided Verification
, vol.2404
, pp. 359-364
-
-
Cimatti, A.1
Clarke, E.M.2
Giunchiglia, E.3
-
311
-
-
84880841724
-
Formal verification of diagnosability via symbolic model checking
-
San Francisco, CA: Morgan Kaufmann
-
Cimatti, A., C. Pecheur, and R. Cavada (2003a). Formal verification of diagnosability via symbolic model checking. InG. Gottlob and T. Walsh (Eds.), Proc. 18th International Joint Conference on Artificial Intelligence (IJCAI 2003), pp. 363–369. San Francisco, CA: Morgan Kaufmann.
-
(2003)
Proc. 18th International Joint Conference on Artificial Intelligence (IJCAI 2003)
, pp. 363-369
-
-
Cimatti, A.1
Pecheur, C.2
Cavada, R.3
-
312
-
-
0038517219
-
Weak, strong, and strong cyclic planning via symbolic model checking
-
Cimatti, A., M. Pistore, M. Roveri, and P. Traverso (2003b). Weak, strong, and strong cyclic planning via symbolic model checking. Artificial Intelligence 147(1-2), 35–84.
-
(2003)
Artificial Intelligence
, vol.147
, Issue.1-2
, pp. 35-84
-
-
Cimatti, A.1
Pistore, M.2
Roveri, M.3
Traverso, P.4
-
314
-
-
0004000699
-
-
CUDD (Last retrieved on November 15, 2009). CUDD: CU Decision Diagram Package. http://vlsi.colorado.edu/fabio/CUDD.
-
(2009)
CUDD: CU Decision Diagram Package
-
-
-
315
-
-
85134957545
-
-
FBK (Last retrieved on November 15, 2009). Fondazione Bruno Kessler. http://www.fbk.eu.
-
(2009)
Fondazione Bruno Kessler
-
-
-
316
-
-
85134897822
-
-
FSAP (Last retrieved on November 15, 2009). The FSAP/NuSMV-SA platform. https://es.fbk.eu/tools/FSAP.
-
(2009)
The Fsap/Nusmv-Sa Platform
-
-
-
317
-
-
15744398074
-
Specifying and analyzing early requirements in Tropos
-
Fuxman, A., L. Liu, J. Mylopoulos, M. Pistore, M. Roveri, and P. Traverso (2004). Specifying and analyzing early requirements in Tropos. Requirements Engineering 9, 132–150.
-
(2004)
Requirements Engineering
, vol.9
, pp. 132-150
-
-
Fuxman, A.1
Liu, L.2
Mylopoulos, J.3
Pistore, M.4
Roveri, M.5
Traverso, P.6
-
318
-
-
85134903122
-
-
LGPL (Last retrieved on November 15, 2009). The GNU Lesser General Public License. http://www.fsf.org/licensing/licenses/lgpl.html.
-
(2009)
The GNU Lesser General Public License
-
-
-
319
-
-
85134977218
-
-
MBP (Last retrieved on November 15, 2009). The MBP Model Based Planner. http://mbp.fbk.eu.
-
(2009)
The MBP Model Based Planner
-
-
-
320
-
-
0003581143
-
-
Dordrecht, The Netherlands: Kluwer Academic
-
McMillan, K.L. (1993). Symbolic Model Checking. Dordrecht, The Netherlands: Kluwer Academic.
-
(1993)
Symbolic Model Checking
-
-
McMillan, K.L.1
-
321
-
-
85134954867
-
-
MiniSat (Last retrieved on November 15, 2009). The MiniSat Page. http://minisat.se.
-
(2009)
The Minisat Page
-
-
-
323
-
-
78650384759
-
-
OS (Last retrieved on November 15, 2009). The Open Source Initiative. http://www.opensource.org.
-
(2009)
The Open Source Initiative
-
-
-
324
-
-
34547226220
-
Formal analysis of hardware requirements
-
E. Sentovich (Ed.), New York: ACM
-
Pill, I., S. Semprini, R. Cavada, M. Roveri, R. Bloem, and A. Cimatti (2006). Formal analysis of hardware requirements. In E. Sentovich (Ed.), Proc. 43rd Design Automation Conference (DAC’06), pp. 821–826. New York: ACM.
-
(2006)
Proc. 43rd Design Automation Conference (DAC’06)
, pp. 821-826
-
-
Pill, I.1
Semprini, S.2
Cavada, R.3
Roveri, M.4
Bloem, R.5
Cimatti, A.6
-
325
-
-
85135000076
-
The RAT Requirements Analysis tool
-
RAT (Last retrieved on November 15, 2009). The RAT Requirements Analysis tool. http://rat.fbk.eu.zChaff (Last retrieved on November 15, 2009). ZChaff. http://www.princeton.edu/chaff/zchaff.html.
-
(2009)
Zchaff.
-
-
-
326
-
-
47749109617
-
ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects
-
Akerlund, O., P. Bieber, E. Böede et al. (2006). ISAAC, a framework for integrated safety analysis of functional, geometrical and human aspects. In Proc. European Congress on Embedded Real Time Software (ERTS 2006).
-
(2006)
In Proc. European Congress on Embedded Real Time Software (ERTS 2006)
-
-
Akerlund, O.1
Bieber, P.2
Böede, E.3
-
328
-
-
35248889587
-
Improving safety assessment of complex systems: An industrial case study
-
K. Araki, S. Gnesi, and D. Mandrioli (Eds.), Berlin: Springer
-
Bozzano, M., A. Cavallo, M. Cifaldi, L. Valacca, and A. Villafiorita (2003a). Improving safety assessment of complex systems: An industrial case study. In K. Araki, S. Gnesi, and D. Mandrioli (Eds.), Proc. Formal Methods, International Symposium of Formal Methods Europe (FME 2003), Volume 2805 of LNCS, pp. 208–222. Berlin: Springer.
-
(2003)
Proc. Formal Methods, International Symposium of Formal Methods Europe (FME 2003)
, vol.2805
, pp. 208-222
-
-
Bozzano, M.1
Cavallo, A.2
Cifaldi, M.3
Valacca, L.4
Villafiorita, A.5
-
330
-
-
70350778552
-
The COMPASS approach: Correctness, modelling and performability of aerospace systems
-
In B. Buth, G. Rabe, and T. Seyfarth (Eds.), Berlin: Springer
-
Bozzano, M., A. Cimatti, J.-P. Katoen, V.Y. Nguyen, T. Noll, and M. Roveri (2009). The COMPASS approach: Correctness, modelling and performability of aerospace systems. In B. Buth, G. Rabe, and T. Seyfarth (Eds.), Proc. 28th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2009), Volume 5775 of LNCS, pp. 173–186. Berlin: Springer.
-
(2009)
Proc. 28th International Conference on Computer Safety, Reliability and Security (SAFECOMP 2009)
, vol.5775
, pp. 173-186
-
-
Bozzano, M.1
Cimatti, A.2
Katoen, J.-P.3
Nguyen, V.Y.4
Noll, T.5
Roveri, M.6
-
331
-
-
38149006221
-
Symbolic fault tree analysis for reactive systems
-
Berlin: Springer
-
Bozzano, M., A. Cimatti, and F. Tapparo (2007). Symbolic fault tree analysis for reactive systems. In Proc. 5th International Symposium on Automated Technology for Verification and Analysis (ATVA 2007), Volume 4762 of LNCS, pp. 162–176. Berlin: Springer.
-
(2007)
Proc. 5th International Symposium on Automated Technology for Verification and Analysis (ATVA 2007)
, vol.4762
, pp. 162-176
-
-
Bozzano, M.1
Cimatti, A.2
Tapparo, F.3
-
332
-
-
33750993028
-
Integrating fault tree analysis with event ordering information
-
Leiden, The Netherlands: Balkema Publisher
-
Bozzano, M. and A. Villafiorita (2003). Integrating fault tree analysis with event ordering information. In Proc. European Safety and Reliability Conference (ESREL 2003), pp. 247–254. Leiden, The Netherlands: Balkema Publisher.
-
(2003)
Proc. European Safety and Reliability Conference (ESREL 2003)
, pp. 247-254
-
-
Bozzano, M.1
Villafiorita, A.2
-
334
-
-
20044368093
-
ESACS: An integrated methodology for design and safety analysis of complex systems
-
(b), Leiden, The Netherlands: Balkema Publisher
-
Bozzano, M., A. Villafiorita, O. Åkerlund et al. (2003b). ESACS: An integrated methodology for design and safety analysis of complex systems. In Proc. European Safety and Reliability Conference (ESREL 2003), pp. 237–245. Leiden, The Netherlands: Balkema Publisher.
-
(2003)
Proc. European Safety and Reliability Conference (ESREL 2003)
, pp. 237-245
-
-
Bozzano, M.1
Villafiorita, A.2
Kerlund, O.Å.3
-
335
-
-
85134982178
-
-
COMPASS (Last retrieved on November 15, 2009). The COMPASS Project. http://compass.informatik.rwth-aachen.de.
-
(2009)
The COMPASS Project
-
-
-
336
-
-
0026973232
-
Implicit and incremental computation of primes and essential primes of Boolean functions
-
IEEE Computer Society
-
Coudert, O. and J.C. Madre (1992). Implicit and incremental computation of primes and essential primes of Boolean functions. In Proc. 29th Design Automation Conference (DAC’92), pp. 36–39. IEEE Computer Society.
-
(1992)
Proc. 29Th Design Automation Conference (DAC’92)
, pp. 36-39
-
-
Coudert, O.1
Madre, J.C.2
-
338
-
-
0004000699
-
-
CUDD (Last retrieved on November 15, 2009). CUDD: CU Decision Diagram Package. http://vlsi.colorado.edu/fabio/CUDD.
-
(2009)
CUDD: CU Decision Diagram Package
-
-
-
339
-
-
85134972761
-
-
ESACS (Last retrieved on November 15, 2009). The ESACS Project. http://www.esacs.org.
-
(2009)
The ESACS Project
-
-
-
340
-
-
77951996047
-
-
Expat (Last retrieved on November 15, 2009). The Expat XML Parser. http://expat.sourceforge.net.
-
(2009)
The Expat XML Parser
-
-
-
341
-
-
85134957545
-
-
FBK (Last retrieved on November 15, 2009). Fondazione Bruno Kessler. http://www.fbk.eu.
-
(2009)
Fondazione Bruno Kessler
-
-
-
342
-
-
85134974379
-
-
FLTK (Last retrieved on November 15, 2009). FLTK: Fast Light Toolkit. http://www.fltk.org.
-
(2009)
FLTK: Fast Light Toolkit
-
-
-
343
-
-
85134897822
-
-
FSAP (Last retrieved on November 15, 2009). The FSAP/NuSMV-SA Platform. https://es.fbk.eu/tools/FSAP.
-
(2009)
The Fsap/Nusmv-Sa Platform
-
-
-
345
-
-
85134981056
-
-
FT+ (Last retrieved on November 15, 2009). FaultTree+. http://www.isographsoftware.com/ftpover.htm.
-
(2009)
Faulttree
-
-
-
346
-
-
85134908330
-
-
ISAAC (Last retrieved on November 15, 2009). The ISAAC Project. http://www.cert.fr/isaac.
-
(2009)
The ISAAC Project
-
-
-
347
-
-
85134954867
-
-
MiniSat (Last retrieved on November 15, 2009). The MiniSat Page. http://minisat.se.
-
(2009)
The Minisat Page
-
-
-
348
-
-
85134940879
-
-
MISSA (Last retrieved on November 15, 2009). The MISSA Project. http://www.missafp7.eu.
-
(2009)
The MISSA Project
-
-
-
350
-
-
85134914958
-
-
OMC-ARE (Last retrieved on November 15, 2009). The OMC-ARE Project. http://es.fbk.eu/projects/esa_omc-are.
-
(2009)
The OMC-ARE Project
-
-
-
351
-
-
0027289814
-
New algorithms for fault trees analysis
-
Rauzy, A. (1993). New algorithms for fault trees analysis. Reliability Engineering and System Safety 40(3), 203–211.
-
(1993)
Reliability Engineering and System Safety
, vol.40
, Issue.3
, pp. 203-211
-
-
Rauzy, A.1
-
352
-
-
0031276402
-
Exact and truncated computations of prime implicants of coherent and non-coherent fault trees within Aralia
-
Rauzy, A. and Y. Dutuit (1997). Exact and truncated computations of prime implicants of coherent and non-coherent fault trees within Aralia. Reliability Engineering and System Safety 58(2), 127–144.
-
(1997)
Reliability Engineering and System Safety
, vol.58
, Issue.2
, pp. 127-144
-
-
Rauzy, A.1
Dutuit, Y.2
-
353
-
-
85134928824
-
-
zChaff (Last retrieved on November 15, 2009). zChaff. http://www.princeton.edu/chaff/zchaff.html.
-
(2009)
Zchaff
-
-
-
354
-
-
85134928097
-
-
FAA (Last retrieved on November 15, 2009a). FAA mission. Available at http://www.faa.gov/about/mission/.
-
(2009)
FAA Mission
-
-
-
357
-
-
0004269078
-
Fault Tree Handbook
-
Vesely, W.E., F.F. Goldberg, N.H. Roberts, and D.F. Haasl (1981). Fault Tree Handbook. Technical Report NUREG-0492, Systems and Reliability Research Office of Nuclear Regulatory Research U.S. Nuclear Regulatory Commission.
-
(1981)
Technical Report NUREG-0492, Systems and Reliability Research Office of Nuclear Regulatory Research U.S. Nuclear Regulatory Commission
-
-
Vesely, W.E.1
Goldberg, F.F.2
Roberts, N.H.3
Haasl, D.F.4
|