Bringing Rust to the Pixel Baseband
2026-04-18T19:23:55Z•580242b03cab83defd840bfec9056eabf57640bc8d0f531c4a4d8529089a2edf
Android 17Chrome 146DBSCDNS parserDevice Bound Session CredentialsGoogle WorkspaceIPILLM securityMerkle Tree CertificatesPLANTS working groupPQCPixel 10VRP 2025Vulnerability Rewards ProgramWindowsbasebandcookie theftindirect prompt injectionmacOSmemory-safetymodempost-quantum cryptographyquantum-safe HTTPSrustsession hijacking
What happened
This Google Security Blog batch highlights multiple platform-level security initiatives and program updates: Pixel 10 integrates a memory-safe Rust DNS parser into the baseband/modem firmware to reduce memory-safety vulnerabilities; Chrome is rolling out Device Bound Session Credentials (DBSC) to Windows (Chrome 146) and expanding to macOS to proactively prevent cookie-based session theft; Google Workspace is continuously improving defenses against indirect prompt injection (IPI) targeting LLM-driven apps; the Vulnerability Rewards Program (VRP) published its 2025 year-in-review; Android will/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- google_security_blog
- Record identifier
- 580242b03cab83defd840bfec9056eabf57640bc8d0f531c4a4d8529089a2edf
- Enrichment time
- 2026-04-18T19:23:55Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.