I personally haven't seen another company abuse a security update system to do it. Add it to the list and enable it automatically? Yes. But putting something that's not a security update into said security updates to push it to more people unnoticed?

Again, this all boils down to the "other people do it, so it's ok for Apple to" I tend to berate those other companies as well.