FTP transmits data, including usernames and passwords, in plaintext, making it highly susceptible to interception. Any attacker with access to the network can capture these credentials using packet-sniffing tools. This security flaw highlights the necessity of encrypted alternatives like SFTP.