Hacker News new | past | comments | ask | show | jobs | submit login

Email transport is done in plaintext on the public internet -- it provides no confidentiality or integrity.



Most e-mail users are using browser-based e-mail clients over HTTPS so in order to access the plaintext email one needs to tap the senders local network which would only work if the sender is not using an HTTPS webmail. Plaintext public internet attacks for email were more common when people used unsecured POP3 and IMAP.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: