“…• Formal modeling methods including the Event-B methods [34,35,36,37,42], abstract state machines (ASM) [38,43], and the Fiacre formal language [39,40]; • Verification techniques including a proof theory [34,35,37,43] and model checking [35,39,41,40,43]; and • A test case generation technique [41], a run-time monitoring approach [40,41], and a simulation technique [44]. These proposals provide only a partial solution with a unique objective, either modeling, verification, or testing.…”