i don't understand how it is not susceptible to MITM attacks. how do you know you know the thing at the other end is really who you want to talk to without using some kind of preshared key? maybe an eavesdropper can't view the conversation between you and the other end but that doesn't matter if someone can easily pretend to be the other end.