1) J.M. Atlee and J. Gannon A logic-model semantics for SCR software requirements Proceedings of the 1996 ACM SIGSOFT International Symposium on Software Testing and Analysis, pages 280-292, January 1996. 2) J.M. Atlee and J. Gannon State-based model checking of event-driven system requirements IEEE Transactions on Software Engineering 19(1):24-40, January 1993 3) T. Bultan, R. Gerber, and C. League Verifying systems with integer constraints and boolean predicates: a composite approach Proceedings of the 1998 ACM SIGSOFT International Symposium on Software Testing and Analysis, pages 113-123, January 1996. 4) W. Chan, R.J. Anderson, P. Beame, S. Burns, F. Modugno, D. Notkin, and J.D. Reese Model checking large software specifications IEEE Transactions on Software Engineering 24(7):498-520, July 1998 5) C.L. Heitmeyer, R.D. Jeffords, and B.G. Labaw Automated consistency checking of requirements specifications ACM Transactions on Software Engineering and Methodology 5(3):231-261, July 1996 6) P.J. Courtois and D.L. Parnas Documentation for safety critical software Proceedings of the 15th International Conference on Software Engg Pages 315-323, May 1993 7) J. Wing and M. Vaziri-Farahani A Case Study in Model Checking Software Systems Science of Computer Programming, vol. 28, 1997, pp. 273-299. (Note: This paper was handed out in class)