Secure programmer: Validating input

A nice piece from David Wheeler on IBM's DeveloperWorks site covers some of the basics in input handling . This is the second piece in a series on DeveloperWorks. The first is about the mentality of writing secure code . Both are a good place to start. David Wheeler is probably best known for his Secure Programming for Linux and Unix HOWTO , which can also be used to audit programs (he wrote a tool called flawfinder to help you with that).

