References


[1] K. Beck, Test Driven Development -- by Example . Boston: Addison Wesley, 2003.

[2] B. Chess and G. McGraw, "Static Analysis for Security," in IEEE Security and Privacy , November/December 2004 ed, 2004, pp. 32-35.

[3] R. Chillarege, I. S. Bhandari, J. K. Chaar, M. J. Halliday, D. S. Moebus, B. K. Ray, and M.-Y. Wong, "Orthogonal Defect Classification - A Concept for In-Process Measurements," IEEE Transactions on Software Engineering , vol. 18, pp. 943-956, 1992.

[4] D. R. Cok, "ESC/Java2 Implementation Notes," Nov 2004 2004.

[5] D. R. Cok and J. R. Kiniry, "ESC/Java2: Uniting ESC/Java and JML: Progress and Issues in Building and Using ESC/Java2, Including a Case Study Involving the Use of the Tool to Verify Portions of an Internet Voting Tally System," presented at International Workshop on Construction and Analysis of Safe, Secure, and Interoperable Smart Devices, Marseille, France, 2004.

[6] C. Csallner and Y. Smaragdakis, "JCrasher: an automatic robustness tester for Java," Software - Practice and Experience , vol. 34, pp. 1025-1050, 2004.

[7] C. Csallner and Y. Smaragdakis, "Check 'n' Crash: Combining Static Checking and Testing," presented at the 27th International Conference in Software Engineering, St. Louis, MO, USA, 2005.

[8] D. Detlefs, G. Nelson, and J. B. Saxe, "Simplify: A Theorem Prover for Program Checking," Hewlett-Packard Systems Research Center HPL-2003-148, July 2003.

[9] C. Flanagan, K. R. M. Leino, M. Lillibridge, G. Nelson, J. B. Saxe, and R. Stata, "Extended Static Checking for Java," presented at Programming Language Design and Implementation, Berlin, Germany, 2002.

[10] D. Hovemeyer and W. Pugh, "Finding Bugs is Easy," in SIGPLAN Notices , vol. 39, 2004.

[11] IEEE, "IEEE Standard Glossary of Software Engineering Terminology," IEEE Standard 610.12-1990 1990.

[12] IEEE, "IEEE Standard Classification for Software Anomalies," IEEE Standard 1044-1993 1993.

[13] T. Kremenek, K. Ashcraft, J. Yang, and D. Engler, "Correlation Exploitation in Error Ranking," presented at International Symposium on Foundations of Software Engineering, Newport Beach, CA, 2004.

[14] T. Kremenek and D. Engler, "Z-Ranking: Using Statistical Analysis to Counter the Impact of Static Analysis Approximations," in 10th International Static Analysis Symposium , 2003.

[15] K. R. M. Leino, G. Nelson, and J. B. Saxe, "ESC/Java User's Manual," 2000.

[16] N. Rutar, C. B. Almazan, and J. S. Foster, "A Comparison of Bug Finding Tools for Java," presented at 15th IEEE International Symposium on Software Reliability Engineering, Stain-Malo, Bretagne, France, 2004.

[17] D. Saff and M. D. Ernst, "Reducing Wasted Development Time Via Continuous Testing," presented at the 14th International Symposium on Software Reliability Engineering, Denver, CO, 2003.

[18] D. Saff and M. D. Ernst, "An Experimental Evaluation of Continuous Testing During Development," presented at International Symposium on Software Testing and Analysis, Boston, MA, USA, 2004.

[19] D. Saff and M. D. Ernst, "Continuous Testing in Eclipse," presented at the 27th International Conference in Software Engineering, St. Louis, MO, USA, 2005.

[20] S. E. Smith, L. Williams, and J. Xu, "Expediting Programmer AWAREness of Anomalous Code," presented at the 16th IEEE International Symposium on Software Reliability Engineering, Fast Abstract, Chicago, IL, 2005.

[21] T. Xie, D. Marinov, and D. Notkin, "Rostra: A Framework for Detectin Redundant Object-Oriented Unit Tests," presented at 19th IEEE Internationall Conference on Automated Software Engineering, Linz, Austria, 2004.

[22] J. Zheng, L. Williams, N. Nagappan, W. Snipes, J. Hudepohl, and M. Vouk, "On the Value of Static Analysis for Fault Detection in Software," IEEE Transactions on Software Engineering , to appear.