5.1.2 Lack of Message Authentication
This protocol does not provide any authentication for messages. It is possible for a malicious host to send incorrect Hello, Bye, and Probe-Match messages in order to confuse a client. A client needs to consider all information gained from this protocol as insecure until corroborated by other means.