Yannick Weiss

How to find a Rogue DHCP Server

Use nmap to request a DHCPOFFER, and capture the answers with tcpdump.

brew install dhcpdump
brew install nmap
dhcpdump -i en1
sudo nmap --script broadcast-dhcp-discover -e en1