1. Advisory Circular 25.1309–1, ‘System design analysis’, U.S. Dept. of Transportation, Federal Aviation Administration, Washington, D.C., September 1982.
2. ‘Software errors in experimental systems having ultra-reliability requirements’, Proc. IEEE Symposium on Fault Tolerant Computing, 1986, pp. 158–164.
3. Software safety: why, what, and how
4. The N-Version Approach to Fault-Tolerant Software
5. System structure for software fault tolerance