Formal verification and security risk analysis of Tokeneer ID Station using Dafny, SecureUML, and weakest precondition calculus | EAL5+ high-assurance systems
risk-analysis rbac formal-methods newcastle-university dafny formal-verification hoare-logic security-engineering secureuml tokeneer eal5 mcgraw-touchpoints
-
Updated
Apr 7, 2026 - Dafny