On May 16th one of my devices had a notification from #Apple re a #BackgroundSecurityImprovement.

I do not have automatic updates enabled on Apple-sourced hardware. They have abused this feature in the past.

With iOS 26.1 'emergency update' Apple started hammering the 'set auto-update on!' button. 26.3.1(a) they are also screaming for users to set auto on. But do not say what is in it.

No. You burnt that bridge, the trust is gone. And you back your fash government bombing civilians.

#infosec

That said, #security people are reporting this update is not known to be harmful.

It fixes a #bug in the latest #WebKit used by #Safari.

* https://www.bleepingcomputer.com/news/security/apple-pushes-first-background-security-improvements-update-to-fix-webkit-flaw/
* https://appleinsider.com/articles/26/03/17/apples-latest-background-security-improvement-targets-a-webkit-flaw
* https://www.engadget.com/computing/apple-releases-its-first-background-security-improvement-for-macos-ios-and-ipados-214052311.html

Because #Apple has illegally integrated Safari into #iOS, this affects every iOS device even if you do not use Safari.

The 1ST USE of the (new) Background Security Improvement 'feature'. It will likely become a standard always-on security hole / #backdoor.

[EDIT: rplc msn lnk]

Apple pushes first Background Security Improvements update to fix WebKit flaw

Apple has released its first Background Security Improvements update to fix a WebKit flaw tracked as CVE-2026-20643 on iPhones, iPads, and Macs without requiring a full operating system upgrade.

BleepingComputer