This booklet constitutes the lawsuits of the 3rd overseas convention on summary kingdom Machines, B, VDM, and Z, which happened in Pisa, Italy, in June 2012. The 20 complete papers awarded including 2 invited talks and thirteen brief papers have been conscientiously reviewed and chosen from fifty nine submissions. The ABZ convention sequence is devoted to the cross-fertilization of 5 comparable state-based and machine-based formal tools: summary nation Machines (ASM), Alloy, B, VDM, and Z. They percentage a standard conceptual starting place and are standard in either academia and for the layout and research of and software program structures. the most aim of this convention sequence is to give a contribution to the mixing of those formal tools, clarifying their commonalities and ameliorations to higher know the way to mix diversified methods for attaining some of the projects in modeling, experimental validation and mathematical verification of trustworthy high quality hardware/software systems.

In this paper we use a technique based on the capability of the model checkers to produce counterexamples [7]. The method consists of steps: 1. The test predicates set {tpi } is derived from the specification according to the desired coverage criteria; 2. The specification is translated into the language of the model checker; 3. For each test predicate tpi the trap property ¬tpi is proved, where means always. If the model checker finds a state s where tpi is true, it stops and returns as counterexample a state sequence leading to s: such sequence is the test covering tpi .

Without producing any counterexample), usually because of the state explosion problem. , there exists a sequence that reaches the goal). In this paper we use the Asmeta framework1 and its ATGT tool [8], based on the model checker SPIN [11]. 3 Sequential Nets of Abstract State Machines We focus our attention on those systems that are composed of independent subsystems that pass the control to each other, so that only one sub-system is active at any time. Usually, in order to describe such kind of systems, a model of each sub-system is developed.

In: Drossopoulou, S. ) ESOP 2008. LNCS, vol. 4960, pp. 1–15. Springer, Heidelberg (2008) 13. : A structural approach to operational semantics. J. Log. Algebr. Program. 60-61, 17–139 (2004) Test Generation for Sequential Nets of Abstract State Machines Paolo Arcaini1 , Francesco Bolis2 , and Angelo Gargantini2 1 2 Dip. it Dip. di Ing. it Abstract. Test generation techniques based on model checking suffer from the state space explosion problem. However, for a family of systems that can be easily decomposed in sub-systems, we devise a technique to cope with this problem.

