Use when writing or reviewing kernel/driver code that validates then uses a resource — file paths, user pointers, fd tables, pid/name lookups, mounts — where another thread can mutate between check and use. Teaches TOCTOU patterns, openat2/renameat2/AT_EMPTY_PATH idioms, refcount-and-lock fixes, and how to make check-then-use atomic.