J. Abrial, Modeling in Event-B: system and software engineering, 2010.
DOI : 10.1017/CBO9781139195881

J. Abrial and J. Abrial, The B-book: assigning programs to meanings, 2005.
DOI : 10.1017/CBO9780511624162

M. Barnett, K. Rustan, M. Leino, and W. Schulte, The Spec# Programming System: An Overview, International Workshop on Construction and Analysis of Safe, Secure, and Interoperable Smart Devices, pp.49-69, 2004.
DOI : 10.1007/978-3-540-30569-9_3

D. Beyer, A. Thomas, R. Henzinger, R. Jhala, and . Majumdar, The software model checker Blast, International Journal on Software Tools for Technology Transfer, vol.2, issue.4, pp.5-6505, 2007.
DOI : 10.1007/s10009-007-0044-z

A. Biere, C. Artho, and V. Schuppan, Liveness Checking as Safety Checking, Electronic Notes in Theoretical Computer Science, vol.66, issue.2, pp.160-177, 2002.
DOI : 10.1016/S1571-0661(04)80410-9

A. Biere, A. Cimatti, E. Clarke, and Y. Zhu, Symbolic Model Checking without BDDs, 1999.
DOI : 10.1007/3-540-49059-0_14

A. Biere, M. Heule, and H. Van-maaren, Handbook of satisfiability, 2009.

P. Bjesse and K. Claessen, SAT-Based Verification without State Space Traversal, Formal Methods in Computer-Aided Design, pp.409-426, 2000.
DOI : 10.1007/3-540-40922-X_23

URL : http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.114.4172

P. Boström, Creating Sequential Programs from Event-B Models, International Conference on Integrated Formal Methods, pp.74-88, 2010.
DOI : 10.1016/j.scico.2004.05.018

P. Boström, F. Degerlund, K. Sere, and M. Waldén, Derivation of concurrent programs by stepwise scheduling of Event-B models, Formal Aspects of Computing, vol.39, issue.8, pp.281-303, 2014.
DOI : 10.1007/s00165-012-0260-5

M. Butler, Towards a cookbook for modelling and refinement of control problems, 2009.

P. Caspi, A. Curic, A. Maignan, C. Sofronis, S. Tripakis et al., From simulink to SCADE/lustre to TTA, ACM SIGPLAN Notices, vol.38, issue.7, pp.153-162, 2003.
DOI : 10.1145/780731.780754

M. Clabaut, N. Ge, N. Breton, E. Jenn, R. Delmas et al., Industrial grade model checking -use cases, constraints, tools and applications, International Conference on Embedded Real Time Software and Systems, 2016.
URL : https://hal.archives-ouvertes.fr/hal-01291365

J. Coleman, C. Jones, I. Oliver, A. Romanovsky, and E. Troubitsyna, Rodin (rigorous open development environment for complex systems), Fifth European Dependable Computing Conference: EDCC-5 supplementary volume, pp.23-26, 2005.

P. Cuenot, E. Jenn, E. Faure, N. Broueilh, and E. Rouland, An experiment on exploiting virtual platforms for the development of embedded equipments, International Conference on Embedded Real Time Software and Systems, 2016.
URL : https://hal.archives-ouvertes.fr/hal-01289499

P. Cuoq, F. Kirchner, N. Kosmatov, and V. Prevosto, Julien Signoles, and Boris Yakobowski. Frama-c, International Conference on Software Engineering and Formal Methods, pp.233-247, 2012.

A. Dieumegard, G. Ning, and E. Jenn, An Experiment Report on a Process Combining Formal Refinement and Formal Software verification. working paper or preprint, 2016.

R. Do, Software considerations in airborne systems and equipment certification, 2011.

A. Edmunds and M. Butler, Tasking event-b: An extension to event-b for generating concurrent code, PLACES 2011, 2011.

A. Fürst, T. S. Hoang, D. Basin, K. Desai, N. Sato et al., Code Generation for Event-B, International Conference on Integrated Formal Methods, pp.323-338, 2014.
DOI : 10.1007/978-3-319-10181-1_20

E. Ning-ge, N. Jenn, Y. Breton, and . Fonteneau, Formal verification of a rover anti-collision system, International Workshop on Formal Methods for Industrial Critical Systems and Automated Verification of Critical Systems, pp.171-188, 2016.

N. Halbwachs, P. Caspi, P. Raymond, and D. Pilaud, The synchronous data flow programming language LUSTRE, Proceedings of the IEEE, vol.79, issue.9, pp.1305-1320, 1991.
DOI : 10.1109/5.97300

S. Thai, J. Hoang, and . Abrial, Reasoning about liveness properties in eventb, International Conference on Formal Engineering Methods, pp.456-471, 2011.

D. Méry and R. Monahan, Transforming event B models into verified c# implementations In First International Workshop on Verification and Program Transformation , VPT 2013, pp.57-73, 2013.

D. Méry and N. Singh, Automatic code generation from event-B models, Proceedings of the Second Symposium on Information and Communication Technology, SoICT '11, pp.179-188, 2011.
DOI : 10.1145/2069216.2069252

D. Lorge, P. , and J. Madey, Functional Documentation for Computer Systems Engineering: Version 2, 1991.

K. Robinson, A concise summary of the event b mathematical toolkit. http://wiki. event-b.org/images/EventB-Summary.pdf, 2009.

M. Sheeran, S. Singh, and G. Stålmarck, Checking safety properties using induction and a SAT-solver. In Formal methods in computer-aided design, pp.127-144, 2000.

S. Wright, Automatic generation of c from event-b. In Workshop on integration of modelbased formal methods and tools, p.14, 2009.

F. Yang and J. Jacquot, An event-b plug-in for creating deadlock-freeness theorems, 14th Brazilian Symposium on Formal Methods, 2011.
URL : https://hal.archives-ouvertes.fr/inria-00623825

D. Zuras, M. Cowlishaw, A. Aiken, M. Applegate, D. Bailey et al., Ieee standard for floating-point arithmetic, IEEE Std, pp.754-2008, 2008.