VRP 2025 Year in Review

2026-04-02T01:23:41Z4b347f139e5e310d99a6c1a1a6bedce4e584fd40b35e0f49ddbecdc0f91aac30
Android 17Android theft protectionCA/Browser ForumCertificate TransparencyChromeGoogle Play securityHTTPS certificate policyIETF PLANTSMTCMerkle Tree CertificatesPKIPQCVRPdomain control validationpost-quantum cryptographyquantum-safe HTTPSscam protectionvulnerability rewards program

What happened

Collection of Google Security Blog posts (early 2026) summarizing multiple platform and ecosystem security initiatives: a VRP (Vulnerability Rewards Program) 2025 year-in-review; Android’s multi-year migration to Post-Quantum Cryptography (PQC) with PQC experiments and Android 17 beta tests; Chrome’s program for quantum-safe HTTPS (exploring Merkle Tree Certificates via the IETF PLANTS working group) and reluctance to add PQC X.509 roots immediately; enhancements to Android scam protection and theft-protection features; Google Play enforcement metrics and AI-powered app defenses; and Chrome/CA

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
4b347f139e5e310d99a6c1a1a6bedce4e584fd40b35e0f49ddbecdc0f91aac30
Enrichment time
2026-04-02T01:23:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · VRP 2025 Year in Review · Baitaphish