IP spoofing involves an attacker sending packets with forged source IP addresses to make them appear to come from a trusted source, bypassing authentication or hiding the attacker's identity. It's a network-layer attack. Options A and C describe social engineering. Option D describes phishing.