DNS spoofing is an attack where false DNS information is fed into the resolution process, tricking your device into connecting to the wrong, often malicious, IP address instead of the legitimate one. Instead of reaching the real website you typed, you're silently redirected to a fake copy designed to steal login details, payment information, or other sensitive data, often without any visible sign that something is wrong. This works by corrupting the DNS cache or intercepting the lookup, so the resolver returns an incorrect address that looks legitimate to your device. Public Wi-Fi networks and compromised routers are common places where this occurs, since attackers can more easily intercept and alter traffic there. DNS spoofing is closely related to a DNS leak, so it's worth understanding what a DNS leak is too, since both involve DNS information being exposed in ways users don't expect.