On Tue, Sep 10, 2013 at 2:26 PM, Gervase Markham <gerv at mozilla.org> wrote:

> On 09/09/13 21:03, Manish Goregaokar wrote:
> > Can't they do that anyway? MITM attacks on the proxy password are
> > already possible if you're behind an HTTP proxy.
> >
> > There's no way to notice (from within FF) that an MITM is going on, so
> > in both cases (autologin or no autologin) the user will log in.
