Beyond mDNS "snooping", has there been reporting of non-compromised IoT inappropriately listening on networks?
To be clear, I agree that putting IoT devices on a separate VLAN is a good idea but I do that because they're black boxes, not because they're malicious.