@inproceedings(Behrmann2004-TutorialUppaal, author = {Gerd Behrmann and Alexandre David and Kim Guldstrand Larsen}, year = {2004}, title = {A Tutorial on {UPPAAL}}, booktitle = {SFM}, pages = {200--236}, doi = {10.1007/978-3-540-30080-9_7}, ) @manual(libfsmtest, author = {Moritz Bergenthal and Niklas Krafczyk and Jan Peleska and Robert Sachtleben}, year = {2021}, title = {{libfsmtest -- An Open Source Library for FSM-based Testing}}, url = {https://bitbucket.org/JanPeleska/libfsmtest}, ) @article(Bersani2020-PuRSUEspecificationrobotic, author = {Marcello M. Bersani and Matteo Soldo and Claudio Menghi and Patrizio Pelliccione and Matteo Rossi}, year = {2020}, title = {{PuRSUE} -- From specification of robotic environments to synthesis of controllers}, journal = {Formal Aspects of Computing}, volume = {32}, number = {2-3}, pages = {187--227}, doi = {10.1007/s00165-020-00509-0}, ) @article(Broy2010-LogicalBasisComponent, author = {Manfred Broy}, year = {2010}, title = {A Logical Basis for Component-Oriented Software and Systems Engineering}, journal = {The Computer Journal}, volume = {53}, number = {10}, pages = {1758--82}, doi = {10.1093/comjnl/bxq005}, ) @article(chow:wmethod, author = {Tsun S. Chow}, year = {1978}, title = {Testing Software Design Modeled by Finite-State Machines}, journal = {IEEE Transactions on Software Engineering}, volume = {SE-4}, number = {3}, pages = {178--186}, doi = {10.1109/TSE.1978.231496}, ) @inproceedings(DBLP:conf/forte/DorofeevaEY05, author = {Rita Dorofeeva and El{-}Fakih, Khaled and Nina Yevtushenko}, year = {2005}, title = {An Improved Conformance Testing Method}, editor = {Farn Wang}, booktitle = {Formal Techniques for Networked and Distributed Systems - {FORTE} 2005, 25th {IFIP} {WG} 6.1 International Conference, Taipei, Taiwan, October 2-5, 2005, Proceedings}, series = {Lecture Notes in Computer Science}, volume = {3731}, publisher = {Springer}, pages = {204--218}, doi = {10.1007/11562436\_16}, ) @inproceedings(eder_kerstin_2021_5203111, author = {Kerstin Eder and {Wen-ling} Huang and Jan Peleska}, year = {2021}, title = {Complete Agent-driven Model-based System Testing for Autonomous Systems}, editor = {Matt Luckuck and Marie Farrell}, booktitle = {Formal Methods for Autonomous Systems ({FMAS}), 3rd Workshop}, note = {To appear in EPTCS}, ) @inproceedings(Gleirscher2011-HazardbasedSelection, author = {Mario Gleirscher}, year = {2011}, title = {Hazard-based Selection of Test Cases}, editor = {Antonia Bertolino and Howard Foster and J. Jenny Li}, booktitle = {Automation of Software Test ({AST}), 6th {ICSE} Workshop}, publisher = {ACM}, address = {Honolulu, HI}, pages = {64--70}, doi = {10.1145/1982595.1982609}, ) @phdthesis(Gleirscher2014-BehavioralSafetyTechnical, author = {Mario Gleirscher}, year = {2014}, title = {Behavioral Safety of Technical Systems}, type = {Dissertation}, school = {Technical University of Munich}, url = {http://nbn-resolving.de/urn/resolver.pl?urn:nbn:de:bvb:91-diss-20141120-1221841-0-1}, ) @incollection(Gleirscher2020-SafetyControllerSynthesis, author = {Mario Gleirscher and Radu Calinescu}, year = {2020}, title = {Safety Controller Synthesis for Collaborative Robots}, editor = {Yi Li and Alan Liew}, booktitle = {Engineering of Complex Computer Systems ({ICECCS}), 25th Int. Conf., Singapore}, publisher = {ACM}, pages = {83--92}, doi = {10.1109/ICECCS51672.2020.00017}, ) @techreport(Gleirscher2021-VerifiedSynthesisSafety, author = {Mario Gleirscher and Radu Calinescu and James Douthwaite and Benjamin Lesage and Colin Paterson and Jonathan Aitken and Robert Alexander and James Law}, year = {2021}, title = {Verified Synthesis of Optimal Safety Controllers for Human-Robot Collaboration}, type = {Working paper}, institution = {University of York, University of Sheffield, and University of Bremen}, url = {https://arxiv.org/abs/2106.06604}, ) @article(Gleirscher2021-RiskStructuresDesign, author = {Mario Gleirscher and Radu Calinescu and Jim Woodcock}, year = {2021}, title = {Risk Structures: A Design Algebra for Risk-Aware Machines}, journal = {Formal Aspects of Computing}, volume = {33}, pages = {763--802}, doi = {10.1007/s00165-021-00545-4}, ) @article(DBLP:journals/sqj/HuangOP19, author = {Wen{-}ling Huang and Sadik {\"{O}}zoguz and Jan Peleska}, year = {2019}, title = {Safety-complete test suites}, journal = {Software Quality Journal}, volume = {27}, number = {2}, pages = {589--613}, doi = {10.1007/s11219-018-9421-y}, ) @article(peleska_sttt_2014, author = {Wen{-}ling Huang and Jan Peleska}, year = {2016}, title = {Complete model-based equivalence class testing}, journal = {{Software Tools for Technology Transfer}}, volume = {18}, number = {3}, pages = {265--283}, doi = {10.1007/s10009-014-0356-8}, ) @article(Huang2017, author = {Wen{-}ling Huang and Jan Peleska}, year = {2017}, title = {Complete model-based equivalence class testing for nondeterministic systems}, journal = {Formal Aspects of Computing}, volume = {29}, number = {2}, pages = {335--364}, doi = {10.1007/s00165-016-0402-2}, ) @techreport(ISO26262, author = {{ISO 26262}}, year = {2011}, title = {Road Vehicles -- Functional Safety}, type = {Standard}, institution = {ISO/TC 22/SC 32}, url = {https://www.iso.org/standard/43464.html}, ) @techreport(ISOTS15066, author = {{ISO/TS 15066}}, year = {2016}, title = {{ISO/TS 15066:2016 -- Robots and robotic devices -- Collaborative robots}}, type = {Standard}, institution = {International Organization for Standardization}, address = {Geneva, CH}, ) @incollection(Kwiatkowska2007-StochasticModelChecking, author = {Marta Kwiatkowska and Gethin Norman and David Parker}, year = {2007}, title = {Stochastic Model Checking}, editor = {M. Bernardo and J. Hillston}, booktitle = {Formal Methods for the Design of Computer, Communication and Software Systems: Performance Evaluation ({SFM})}, series = {LNCS}, volume = {4486}, publisher = {Springer}, pages = {220--70}, doi = {10.1007/978-3-540-72522-0_6}, ) @inproceedings(Kwiatkowska2011-PRISM4Verification, author = {Marta Kwiatkowska and Gethin Norman and David Parker}, year = {2011}, title = {{PRISM} 4.0: Verification of Probabilistic Real-time Systems}, editor = {G. Gopalakrishnan and S. Qadeer}, booktitle = {23rd International Conference on Computer Aided Verification ({CAV})}, series = {LNCS}, publisher = {Springer}, pages = {585--591}, doi = {10.1007/978-3-642-22110-1_47}, ) @incollection(Lesage2021-SASSISafetyAnalysis, author = {Benjamin Lesage and Rob Alexander}, year = {2021}, title = {{SASSI}: Safety Analysis using Simulation-based Situation Coverage for Cobot Systems}, booktitle = {Computer Safety, Reliability, and Security ({SAFECOMP}), 40th Int. Conf.}, series = {LNCS}, volume = {12852}, publisher = {Springer}, pages = {195--209}, doi = {10.1007/978-3-030-83903-1_13}, ) @incollection(Orlandini2013-ControllerSynthesisSafety, author = {Andrea Orlandini and Marco Suriano and Amedeo Cesta and Alberto Finzi}, year = {2013}, title = {Controller Synthesis for Safety Critical Planning}, editor = {Judy Luo}, booktitle = {Tools with Artificial Intelligence ({ICTAI}), {IEEE} 25th Int. Conf.}, publisher = {{IEEE}}, pages = {1--8}, doi = {10.1109/ictai.2013.54}, ) @inproceedings(DBLP:conf/icst/Petrenko16, author = {Alexandre Petrenko}, year = {2016}, title = {Checking Experiments for Symbolic Input/Output Finite State Machines}, booktitle = {Ninth {IEEE} International Conference on Software Testing, Verification and Validation Workshops, {ICST} Workshops 2016, Chicago, IL, USA, April 11-15, 2016}, publisher = {{IEEE} Computer Society}, pages = {229--237}, doi = {10.1109/ICSTW.2016.9}, url = {http://ieeexplore.ieee.org/xpl/mostRecentIssue.jsp?punumber=7517740}, ) @article(Petrenko:2012:MTS:2347096.2347101, author = {Alexandre Petrenko and Adenilso Simao and Jos{\'e} Carlos Maldonado}, year = {2012}, title = {Model-based Testing of Software and Systems: Recent Advances and Challenges}, journal = {Int. J. Softw. Tools Technol. Transf.}, volume = {14}, number = {4}, pages = {383--386}, doi = {10.1007/s10009-012-0240-3}, ) @inproceedings(DBLP:conf/pts/Sachtleben20, author = {Robert Sachtleben}, year = {2020}, title = {An Executable Mechanised Formalisation of an Adaptive State Counting Algorithm}, editor = {Valentina Casola and Alessandra De Benedictis and Massimiliano Rak}, booktitle = {Testing Software and Systems - 32nd {IFIP} {WG} 6.1 International Conference, {ICTSS} 2020, Naples, Italy, December 9-11, 2020, Proceedings}, series = {Lecture Notes in Computer Science}, volume = {12543}, publisher = {Springer}, pages = {236--254}, doi = {10.1007/978-3-030-64881-7\_15}, ) @inproceedings(DBLP:conf/pts/SachtlebenHH019, author = {Robert Sachtleben and Robert M. Hierons and Wen{-}ling Huang and Jan Peleska}, year = {2019}, title = {A Mechanised Proof of an Adaptive State Counting Algorithm}, editor = {Christophe Gaston and Nikolai Kosmatov and Pascale Le Gall}, booktitle = {Testing Software and Systems - 31st {IFIP} {WG} 6.1 International Conference, {ICTSS} 2019, Paris, France, October 15-17, 2019, Proceedings}, series = {Lecture Notes in Computer Science}, volume = {11812}, publisher = {Springer}, pages = {176--193}, doi = {10.1007/978-3-030-31280-0\_11}, ) @inproceedings(DBLP:conf/icst/SouchaB18, author = {Michal Soucha and Kirill Bogdanov}, year = {2018}, title = {SPYH-Method: An Improvement in Testing of Finite-State Machines}, booktitle = {2018 {IEEE} International Conference on Software Testing, Verification and Validation Workshops, {ICST} Workshops, V{\"{a}}ster{\r a}s, Sweden, April 9-13, 2018}, publisher = {{IEEE} Computer Society}, pages = {194--203}, doi = {10.1109/ICSTW.2018.00050}, ) @incollection(Stenkova2019-GenericNegativeScenarios, author = {Viktoria Stenkova and Jennifer Brings and Marian Daun and Thorsten Weyer}, year = {2019}, title = {Generic Negative Scenarios for the Specification of Collaborative Cyber-Physical Systems}, booktitle = {Conceptual Modeling}, series = {LNCS}, volume = {11788}, publisher = {Springer}, pages = {412--419}, doi = {10.1007/978-3-030-33223-5_34}, ) @article(Uchitel2002-Negativescenariosimplied, author = {Sebastian Uchitel and Jeff Kramer and Jeff Magee}, year = {2002}, title = {Negative scenarios for implied scenario elicitation}, journal = {{ACM} {SIGSOFT} Software Engineering Notes}, volume = {27}, number = {6}, pages = {109--118}, doi = {10.1145/605466.605484}, ) @article(Villani2019-Integratingmodelchecking, author = {Em{\'{\i}}lia Villani and Rodrigo Pastl Pontes and Guilherme Kisselofl Coracini and Ana Maria Ambr{\'{o}}sio}, year = {2019}, title = {Integrating model checking and model based testing for industrial software development}, journal = {Computers in Industry}, volume = {104}, pages = {88--102}, doi = {10.1016/j.compind.2018.08.003}, ) @techreport(DO178C, author = {WG-71, RTCA SC-205/EUROCAE}, year = {2011}, title = {{Software Considerations in Airborne Systems and Equipment Certification}}, type = {Technical Report}, number = {RTCA/DO-178C}, institution = {RTCA Inc}, address = {1150 $18^{th}$ Street, NW, Suite 910, Washington, D.C. 20036-3816 USA}, ) @techreport(DO330, author = {WG-71, RTCA SC-205/EUROCAE}, year = {2011}, title = {{Software Tool Qualification Considerations}}, type = {Technical Report}, number = {RTCA/DO-330}, institution = {RTCA Inc}, address = {1150 $18^{th}$ Street, NW, Suite 910, Washington, D.C. 20036-3816 USA}, )