SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service
Casky was already ahead
This CVE exploits attack patterns that Casky's 0matched skills already investigate — long before this vulnerability was disclosed. Claude's reasoning model maps these techniques to MITRE ATT&CK, so practitioners who ran these skills have already seen the threat behaviour in their findings.
CVE-2026-95387 is a denial of service vulnerability in the SPDY protocol dissector affecting Wireshark versions 4.6.0-4.6.8 and 4.4.0-4.4.18. The vulnerability stems from a buffer overflow condition (CWE-122) that crashes the dissector when processing malformed SPDY packets. This matters because network analysts, security operations centers, and incident responders rely on packet analysis tools to investigate suspicious traffic and threats. When the dissector crashes, it disrupts critical security monitoring activities and could allow malicious traffic to go undetected during analysis windows. Organizations using affected Wireshark versions for network traffic inspection are vulnerable to attackers deliberately crafting malformed SPDY packets to disrupt their security monitoring infrastructure.
While this CVE lacks direct MITRE ATT&CK technique mapping, Casky's 754 skills powered by Claude AI with extended reasoning would help practitioners detect attack patterns associated with Defense Evasion and Impact techniques. Security teams using Casky would identify anomalous packet sequences and protocol violations characteristic of denial of service attempts targeting analysis infrastructure itself. Practitioners would see findings highlighting unusual SPDY frame structures, suspicious packet sizes, and dissector behavior anomalies—patterns that Claude's advanced reasoning capabilities could correlate across multiple security domains to expose deliberate attempts to blind monitoring systems. This proactive analysis transforms a simple crash vulnerability into actionable intelligence about infrastructure-targeting attack campaigns.
Composite risk scoring from EPSS, CISA KEV, Shodan, and GreyNoise — 21 security APIs correlated into a single Casky Risk Score. Coming in Casky Pro. Join early access →
Casky has 0 skills that investigate the attack patterns behind CVE-2026-95387. Run one and get CVSS-scored findings in 3 minutes.
Run the skill that detects this →© 2026 Casky.AI, Inc. · AI Security Investigation