Challenges facing secure mobile code
Secure distributed programs
- CORBA, RMI
- complex identity not understood well
Persistence, linking, and versioning
- serialization and the environment problem
Understanding code signing
- signatures are good only for vouching, not authorship
- environment deeply affects behavior