
party code. When in doubt, go with your instincts. If your instincts are failing you,
then be paranoid instead and don’t trust it—you can never be too cautious.
In this approach, we will also be focusing on a programmatic approach—that is,
we will focus on the actual (mis)uses of certain functions and the programming lan-
guage in general. We do not focus on logic-based security flaws, because they require
the expertise of knowing exactly what a program is attempting to do, how it is doing
such logic, where it is making assumptions, and where it might fail. And of course, all
of those items vary from one application to the next, because they are dependant ...