Hi,
Im doing stuff quiet a long time with C now (like 6 months) but now i want to learn how to exploit C code, i've read some papers on how to exploit format strings how to exploit malloc() and stuff like that,
but now somebody said that using system() or sprintf() in your code isnt smart, but why?
Does anybody know a good text about this??
Thanks in advance

Encrypted