From what I found (Can't sniff at the moment, my xbox is banned) it is not encrypted.
Well yes it is, but it's just kerebros authentication.
I'm trying to find out if there are "man in the middle" attacks available for kereberos
If others read this, please try to find info as well.
I feel this will be the only way we can fool xbl servers, and keep on playing xbl