Is Email Confidential in Transit Yet?
Measuring vulnerable SMTP configurations and defenses
Opening excerpt (first ~120 words) tap to expand
Built on Shards of Silicon Is email confidential in transit yet? Measuring vulnerable SMTP configurations and defenses MTA-STS DANE SMTP Security By Robert Alexander 2024-11-04 td, th { padding: 0.6em; border: 1px dashed #ccc; text-align: center; } When I’ve talked to developers about the confidentiality of email in transit, between mail servers, I usually hear one of these responses: Everyone knows email isn’t secure While email is vulnerable, hop-to-hop connections between servers are secure enough Email is secure because every modern mail server uses TLS Which is it? In this post, I explore the current state of server-to-server transport encryption and examine the confidentiality challenges we still face.
…
Excerpt limited to ~120 words for fair-use compliance. The full article is at Built on Shards of Silicon.