Formal MethodsKlaus Havelund, Jan Peleska, Bill Roscoe, Erik de Vink · First published 2018Open the Tome