Wireshark, the protocol analyzer trusted by network engineers worldwide, has released version 4.6.8 to address 28 security vulnerabilities — nine of which require nothing more than a user opening a crafted file to detonate. The release is a reminder that the tools we use to inspect danger can themselves become the surface of attack, and that the quiet act of reading a file is never truly passive. Those who depend on Wireshark to understand their networks should update without delay.