Not all MitMs inject malicious responses; denial of service is equally problematic. If you can block DNS requests via a pihole, so can your upstream ISP (whether it's because they want to throttle your internet usage, or police it, or whatever else).
And even just a passive observer snooping on your DNS requests can result in an invasion of privacy.
I agree on all counts, but DoH removes control and choices that I want to keep. pi-hole itself supports DoH. It's a good way to protect privacy and keep control.
And even just a passive observer snooping on your DNS requests can result in an invasion of privacy.