Apple Faces New Cybersecurity Law in UK - MacRumors
Skip to Content

Apple Faces New Cybersecurity Law in UK

A new British cybersecurity law mandates smart device manufacturers like Apple to enhance protections or face hefty penalties.

iphone 15 series store
The legislation, known as the Product Security and Telecommunications Infrastructure (PSTI) Act, introduces robust requirements aimed at securing devices connected to the internet to make it harder for cybercriminals to get access to private networks.

The law specifically targets the inadequacies in current security measures by mandating three major changes: the elimination of default passwords, a clear protocol for reporting security vulnerabilities, and detailed consumer information on the length of product support and software updates. These stipulations apply to all companies manufacturing or selling smart devices in the UK.

For Apple, the law will necessitate a review of how its products comply with these enhanced standards. While Apple devices do not use default passwords, the company will need to ensure that all of its connected devices sold in the UK clearly communicate the duration of security support to customers. In addition, affected companies are expected to establish or refine their contact points for security issue reporting.

Retailers such as Apple stores are also required to provide customers with point-of-sale information about the cybersecurity practices relevant to the devices they purchase. The PSTI Act also includes strict penalties for non-compliance, with fines that can reach up to £10 million ($12.5 million USD) or 4% of the offending company's global turnover.

Note: Due to the political or social nature of the discussion regarding this topic, the discussion thread is located in our Political News forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.

Popular Stories

london marathon apple watch

Apple to Host Free Events in London Ahead of April 26 Marathon

Wednesday April 15, 2026 7:29 am PDT by
Apple today announced a series of events tied to this year's TCS London Marathon, with the company serving as an official partner of the race. The TCS London Marathon is one of the world's most popular marathons and takes place on Sunday, April 26, drawing athletes of all abilities from around the world. A record-breaking one million people applied to enter the ballot for the 2026 event....
iCloud General Feature Redux

Apple Faces £3 Billion UK Trial Over iCloud Lock-In Claims

Thursday May 7, 2026 1:56 pm PDT by
Apple was not able to narrow the scope of a UK lawsuit accusing it of locking 40 million UK consumers into iCloud, to the detriment of third-party cloud storage providers. British consumer group Which? first filed the lawsuit in late 2024, and is asking for £3 billion for UK Apple customers. Apple wanted to exclude non-paying iCloud users from the lawsuit, but the tribunal denied Apple's...
Dynamic Island iPhone 18 Pro Feature

11 Reasons to Wait for the iPhone 18 Pro

Monday May 11, 2026 9:01 am PDT by
We're only four months out from the launch of Apple's premium next-generation smartphone lineup, and while we're not expecting a sea change in terms of functionality, there are still several enhancements rumored to be coming to the iPhone 18 Pro and iPhone 18 Pro Max. One thing worth noting is that Apple is reportedly planning a major change to its iPhone release cycle this year, adopting a...

Top Rated Comments

27 months ago
All this concern for privacy and security when the very governments issuing these requirements are themselves keen to collect data on their own citizens and want backdoor entry points to mobile operating systems.
Score: 51 Votes (Like | Disagree)
27 months ago
Isn't this the same government that has been proposing banning encryption?
Score: 35 Votes (Like | Disagree)
27 months ago
If this applies to all companies that manufacture smart devices, I would imagine Apple is probably one of the most compliant of most manufacturers already.
Score: 29 Votes (Like | Disagree)
I7guy Avatar
27 months ago

Yup, I trust Apple, a greedy corporation, with my data so that it can use it for its ad platform. I do not like my government to access the data to solve crimes of national importance.

https://www.emarketer.com/content/apple-new-ad-product-pushes-closer-google
Don’t know about you but I trust apple more than my government.
Score: 18 Votes (Like | Disagree)
27 months ago

Will be nice to see Apple saying how long people will get security updates. They used to be best in class, but Samsung and Google's 7-year policies are now the expectation rather than an unwritten policy that Apple has. You can currently get iOS 17 on an iPhone XS, so that's 5 years of updates, but they can sometimes go further with some out of cycle point releases for major bugs. Just would be nice for them to say a number.
You're confusing full iOS updates with security updates.

The iPhone 6s got a software update just at the start of March, iOS 15.8.2 which was a security release. That phone is seven and a half years old.

Samsung Galaxy S20, a four year old phone, last upgradable version is Android 13. What expectation, exactly, is Samsung setting?
Score: 17 Votes (Like | Disagree)
HouseLannister Avatar
27 months ago
Will be nice to see Apple saying how long people will get security updates. They used to be best in class, but Samsung and Google's 7-year policies are now the expectation rather than an unwritten policy that Apple has. You can currently get iOS 17 on an iPhone XS, so that's 5 years of updates, but they can sometimes go further with some out of cycle point releases for major bugs. Just would be nice for them to say a number.
Score: 17 Votes (Like | Disagree)