areas.  Further details of  the project are  available at 
https://www.tornado-mobility.com/. 
REFERENCES 
Althoff,  M.,  &  Dolan,  J.  M.,  2014. Online  verification  of 
automated  road  vehicles  using  reachability  analysis. 
IEEE Transactions on Robotics, 30(4), 903-918. 
Arcile,  J.,  Devillers,  R., &  Klaudel, H.,  2019. VerifCar:  a 
framework  for  modeling  and  model  checking 
communicating  autonomous  vehicles.  Autonomous 
agents and multi-agent systems, 33(3), 353-381. 
Behrisch, M., Bieker, L., Erdmann, J., & Krajzewicz, D. , 
2011.  SUMO–simulation  of  urban  mobility:  an 
overview.  In Proceedings of SIMUL 2011, The Third 
International Conference on Advances in System 
Simulation. ThinkMind. 
Ben  Mansour,  A.,  Naija,  M.,  &  Ben  Ahmed,  S.,  2019.  A 
MARTE-Based Design Pattern for Adaptive Real-Time 
Embedded  Systems.  In Proceedings of the 14th 
International Conference on Evaluation of Novel 
Approaches to Software Engineering  (pp.  242-248). 
SCITEPRESS-Science  and  Technology  Publications, 
Lda. 
Bohrer, B., Tan, Y. K., Mitsch, S., Sogokon, A., & Platzer, 
A., 2019. A Formal Safety Net for Waypoint-Following 
in  Ground  Robots.  IEEE Robotics and Automation 
Letters, 4(3), 2910-2917. 
Chao,  Q.,  Jin,  X., Huang,  H. W.,  Foong, S.,  Yu, L.  F., & 
Yeung, S. K., 2019. Force-based heterogeneous traffic 
simulation  for  autonomous  vehicle  testing.  In 2019 
International Conference on Robotics and Automation 
(ICRA). pp. 8298-8304. IEEE. 
Iftikhar,  M.  U.,  &  Weyns,  D.,  2014.  Activforms:  Active 
formal models for self-adaptation. In Proceedings of the 
9th International Symposium on Software Engineering 
for Adaptive and Self-Managing Systems (pp. 125-134). 
Jharko  E.  (2019).  Formalizing  the  Safety  Functions  to 
Assure  the  Software  Quality of  NPP Safety  Important 
Systems.In  Proceedings  of  the  16th  International 
Conference on Informatics in Control, Automation and 
Robotics - Volume 2: ICINCO, ISBN 978-989-758-380-
3, pages 637-644. DOI: 10.5220/ 0007922506370644 
Kacem, Y. H., Mahfoudhi, A., Magdich, A., Mraidha, C., & 
Karamti,  W., 2012.  Using  mde and  priority  time petri 
nets for the schedulability analysis of embedded systems 
modeled by uml activity diagrams. In 19
th
 International 
Conference and Workshops on Engineering of 
Computer-Based Systems (pp. 316-323). IEEE. 
Kamali, M., Dennis, L. A., McAree, O., Fisher, M., & Veres, 
S. M., 2017. Formal verification of autonomous vehicle 
platooning. Science of computer programming, 148, 88-
106. 
Karoui, O., Khalgui, M., Koubâa, A., Guerfala, E., Li, Z., & 
Tovar, E., 2017. Dual mode for vehicular platoon safety: 
Simulation  and  formal  verification.  Information 
Sciences, 402, 216-232. 
Liebenwein, L., Schwarting, W., Vasile, C. I., DeCastro, J., 
Alonso-Mora,  J.,  Karaman,  S.,  &  Rus,  D.,  2020. 
Compositional  and  contract-based  verification  for 
autonomous  driving  on  road  networks.  In Robotics 
Research (pp. 163-181). Springer, Cham. 
Makartetskiy, D.,  Marchetto,  G., Sisto,  R.,  Valenza,  et al. 
2019.  (User-friendly)  formal  requirements  verification 
in  the  context  of  ISO26262.  Engineering Science and 
Technology, an International Journal. 
Marshall,  A.  W.,  & Olkin,  I., 1985.  A family  of  bivariate 
distributions  generated  by  the  bivariate  Bernoulli 
distribution.  Journal of the American Statistical 
Association, 80(390), 332-338. 
Naija,  M.,  &  Ahmed,  S.  B.,  2016.  A  New  MARTE 
Extension  to  Address  Adaptation  Mechanisms  in 
Scheduling  View.  In International Conference on 
Evaluation of Novel Approaches to Software 
Engineering (pp. 27-43). Springer, Cham. 
Naija,  M.,  Ahmed,  S.  B.,  &  Bruel,  J.  M.,  2015.  New 
schedulability  analysis  for  real-time  systems  based  on 
MDE and petri nets model at early design stages. In 2015 
10th International Joint Conference on Software 
Technologies (ICSOFT) (Vol. 1, pp. 1-9). IEEE. 
Niang M., Philippot A., Gellot F., Coupat R., Riera B. and 
Lefebvre S. (2017). Formal Verification for Validation 
of  PSEEL’s  PLC  Program.In  Proceedings  of  the  14th 
International  Conference  on  Informatics  in  Control, 
Automation and Robotics - Volume 1: ICINCO, ISBN 
978-989-758-304-9,  pages  567-574.  DOI:  10.5220/ 
0006418705670574.  
OMG Object Management Group, 2008. A UML Profile for 
MARTE:  Modeling  and  Analysis  of  Real-Time 
Embedded systems, Beta 2. 
Rausch, M., & Hanisch, H.  M.,  1995. Net condition/event 
systems with multiple condition outputs. In Proceedings 
1995  INRIA/IEEE  Symposium  on  Emerging 
Technologies and Factory Automation. ETFA'95 (Vol. 
1, pp. 592-600). IEEE. 
Schwarting, W., Alonso-Mora, J., & Rus, D., 2018. Planning 
and decision-making for autonomous vehicles. Annual 
Review of Control, Robotics, and Autonomous Systems. 
Tornado  Mobility  FUI  Project.  [online].  [Accessed 
10/01/2020].  Available  from:  https://www.tornado-
mobility.com/  
Vyatkin.  V.,  2007.  “Modeling  and  verification  of discrete 
control systems”.  
Yang, N., Yu, H., Sun, H., & Qian, Z., 2010. Mapping uml 
activity diagrams to analyzable petri net models. In 10th 
International Conference on Quality Software (pp. 369-
372). IEEE. 
Zhang, J., Goldsby, H. J., & Cheng, B. H., 2009. Modular 
verification  of  dynamically  adaptive  systems.  In 
Proceedings of the 8th ACM international conference on 
Aspect-oriented software development pp. 161-172. 
Zhang, J., Khalgui, M., Li, Z., Mosbahi, O., & Al-Ahmari, 
A.  M.,  2013.  R-TNCES:  A  novel  formalism  for 
reconfigurable  discrete  event  control  systems.  IEEE 
Transactions  on  Systems,  Man,  and  Cybernetics: 
Systems, 43(4), 757-772.