1. Ammann, P.E., Black, P.E., Majurski, W. (1998). Using model checking to generate tests from specifications. In Proceedings of the second IEEE international conference on formal engineering methods, ICFEM’98 (pp. 46–54). Washington, DC: IEEE Computer Society.
2. Beer, I., Ben-David, S., Eisner, C., Rodeh, Y. (1997). Efficient detection of vacuity in actl formulas. In: Proceedings of the 9th international conference on computer aided verification, CAV ’97. London: Springer-Verlag.
3. Beyer, D., Chlipala, A.J., Majumdar, R., Henzinger, T.A., Jhala, R. (2004). Generating tests from counterexamples. In Proceedings of the 26th international conference on software engineering, ICSE’04 (pp. 326–335). Washington, DC: IEEE Computer Society.
4. Clarke, E., Jha, S., Lu, Y. (2002). Tree-like counterexamples in model checking. In Proceedings of 17th annual IEEE symposium on Logic in computer science (pp. 19–29). Washington, DC: IEEE Computer Society.
5. Clarke, E.M., & Emerson, E.A. (1982). Design and synthesis of synchronization skeletons using branching-time temporal logic. In Logic of programs, workshop. London: Springer-Verlag.