Holger Rabbach <hrabbach@xxxxxxxxxxxxxxxxxxxxxx>: (Wed Aug 18 12:59:19 2010) [ Charset ISO-8859-1 converted... ] > Dear Bugtraq community, > > I am happy to announce the immediate availability of a web based email > security testing tool at http://www.ismymailsecure.com. The tool is an > end-user friendly way to determine if the mail servers for a certain > email address support the STARTTLS capability to encrypt the email > transfer between servers. While most email providers have frontends that > use encryption, the actual email transfers via SMTP are often not secure It seems not check if certificate returned is signed by trusted CA.