New DNS trojan taints entire LAN from single box


DHCP Snooping

This exploit will not work on our networks because we have DHCP snooping turned on and only an authorised server can pass out dhcp packets.

If your organisation has this capability (will do if it's all CISCO), enable this as part of your standard configuration on all switches.