DigitalOcean DNS/ARP Exposure
I'm not sure if this is an issue or not, but I noticed that running tcpdump on a DigitalOcean droplet shows you ARP and DNS requests. This lets you get a list of machines hosted by DigitalOcean... I might be way off here, but could this make DO vulnerable to ARP spoofing?
Made a quick video to demonstrate what I mean: http://www.youtube.com/watch?v=gmNaJCkGFOw