They don't MITM anything. There were a few ridiculously incompetent failed attempts. There will undoubtedly be more, but HTTPS works fine at the moment.
With the state of unicode support in the legacy systems that make up of our e-mail infrastructure, I doubt any emoji domain will be ready for any actual use, where you rely on e-mails being actually delivered to you.
Just wanted to clarify this.