|
|
|
|
|
by cm2187
2917 days ago
|
|
The problem with STARTTLS is a mitm downgrade attack. Self-signed certs are exposed to the same kind of mitm attack. Mail is very sensitive communication. It is reasonable for the EFF to worry the risk of evedropping. Some websites are still sending passwords by email! |
|