I think jumps the gun a little. When sharing a network, there are other attack vectors into people's unhardened laptops except browser MITM. Do you have any unprotected shared folders? Can someone brute force your login via RDP? Can you account for all the listening ports running on your device? A NAT provides strong protection by simply firewalling you from the outside world. It's so common that the focus (rightfull…
probably a non-issue since it isn't enabled by default.
> Can you account for all the listening ports running on your device?
that's what firewall (which are typically default deny for incoming) is for.