Challenging formal specifications by mutation: a CSP security example

Thitima Srivatanakul, John A. Clark, Susan Stepney, Fiona Polack · 2004

When formal modelling is done we must validate both the model and the assumptions. Formal techniques tend to concentrate on the former. We examine how fault injection (specification mutation) and model checking can help address the latter, in particular, the effects of failure. We find that, in contrast with software testing, where they are a problem, "equivalent mutants" are valuable for specification validation.

Read the paper · More papers on PaperTik