1. R.E. Bloomfield, J.H. Cheng, and J. Gorski. Towards a common safety description model. In J.F. Lindeberg, editor, SAFECOMP ’91, 1991.
2. J.C. Bradfield. A proof assistand for symbolic model checking. In Proceedings of CAV ’92, 1992.
3. Rance Cleaveland, Joachim Parrow, and Bernhard Steffen. The concurrency workbench: A semantics based tool for the verification of concurrent systems. Technical Report ECS-LFCS-89-83, Laboratory for Foundations of Computer Science, University of Edinburgh, 1989.
4. D. Kozen. Results on the propositional mu-calculus. Theoretical Computer Science, 27:333–354, 1983.
5. N.H. Roberts, W.E. Vesely, D.F. Haasl, and F.F. Goldberg. Fault Tree Handbook. U.S. Nuclear Regulatory Commission, 1981.