The only factual piece of information I know of that is likely related to "rootless" is from a WWDC 2013 session[1] about kexts, in which an Apple engineer said this:
> I'm Jerry Cottingham, I'm an engineer on the Core OS IO team
> ...
> And another warning I'll throw out here is in the future as we start to lock down the /System folder, you might actually get write errors. So when you try to install a kernel extension into the /System folder, the write itself may fail.
As far as I know the release versions of the iOS kernel don't support kext loading at all. Most likely, MFI participants are encouraged/required to use standard interfaces or request inclusion of specific functionality if it isn't there already.
Backup is done via a completely separate service.
iOS releases do tend to arbitrarily change the security policy of these services, but it's not clear that "Rootless" is anything more than business as usual. Guess we'll find out Monday.