You are viewing a single comment's thread from:

RE: Who's Been Reading Your E-Mail?; A Simple Solution for Better E-mail Privacy and Security

in #security9 years ago

karnal is absolutely on the money here... smtp encryption is something of a crapshoot - STARTTLS downgrade attacks are pretty trivial due to backwards compatibility.

https://www.elie.net/blog/understanding-how-tls-downgrade-attacks-prevent-email-encryption

When it comes to email, to be absolutely certain you do have to go full tinfoil hat and install some PGP variant...