:

LAW ENFORCEMENT CAN ACCESS DELETED MESSAGE NOTIFICATIONS

INDUSTRY DESK2 MIN READ
WED, APR 29, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A recent legal case reveals that law enforcement can view incoming Signal messages on iPhones even after the app has been deleted. The discovery raises privacy concerns about how notification data persists on devices.

Law enforcement has demonstrated the ability to access Signal message notifications on iPhones through device searches, even after users have removed the app entirely. This capability emerged from a recent case that exposed how notification data remains accessible to investigators with physical device access. The issue centers on how iOS stores notification information. When a message arrives, iOS generates notification data that can persist on the device independently of the app itself. This means deleted apps leave behind traces of incoming messages in system logs and notification histories. What this means for your privacy: If law enforcement seizes your iPhone, they can potentially reconstruct message activity without the app being installed. This applies to any messaging service—Signal, WhatsApp, iMessage, or others. The notification metadata doesn't require authentication to access. Apple has not publicly addressed whether this behavior is intentional or a gap in their privacy architecture. The persistence of notification data appears to be a system-level feature rather than something users can easily control. How to protect yourself: - Disable notifications for sensitive apps. Go to Settings > Apps > [App Name] and toggle off notifications entirely. - Use notification summaries. Enable Focus modes that batch notifications or hide sensitive details on lock screens. - Clear notification history regularly. Older iOS versions stored detailed logs; staying updated helps limit this data. - Consider full device encryption. While iOS encrypts data by default, strong passcodes prevent rapid access attempts. - Review notification settings. Some apps show message previews; disable these in Settings > Notifications. This case underscores a broader reality: phones store far more data than users typically realize. Even deleted apps leave digital footprints that sophisticated searches can uncover. If your device could face legal scrutiny, reviewing notification permissions across all apps is worth your time.

■ SOURCES

Wired

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Authorities have arrested two alleged members of TeamPCP, a hacking group responsible for infecting over 1,000 organizations through supply-chain attacks.

2H AGOSecurity Desk

A Georgia police officer used Flock surveillance technology to track the movements of his ex-partner and another officer after their affair ended, according to internal investigation records.

2H AGOIndustry Desk

McKesson, a major healthcare and pharmaceutical distributor, confirmed a cybersecurity incident involving unauthorized access to third-party applications. Extortion group ShinyHunters claims responsibility for stealing 284 million patient data records.

2H AGOAI Desk

Fraudsters are exploiting Microsoft Teams and similar enterprise chat apps to deceive Chinese users into sending large sums of money. The trend has sparked a wave of complaints across the region.

5H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.