Bringing Rust to the Pixel Baseband

2026-04-15T19:23:43Z63d59a15afffd36870fb3b85bfa26ad13ee282feb7179997376b6b2202515e1b
DBSCDNS-parserIPILLM-securityMTCMerkle-Tree-CertificatesPLANTS-working-group','scam-protection','android-scam-protectionPQCTLSVRPandroid-17basebandchromecookie-theftdevice-bound-session-credentialsgoogle-workspaceindirect-prompt-injectionmemory-safetymodempixel-10post-quantum-cryptographyquantum-saferustsession-theftvulnerability-rewards-program

What happened

This collection of Google Security Blog posts describes multiple high-impact security initiatives: Pixel 10 modem firmware hardening by integrating a memory-safe Rust DNS parser to reduce class-wide memory-safety bugs in the baseband; Device Bound Session Credentials (DBSC) rolling out to prevent cookie/session theft in Chrome; ongoing defenses and mitigation strategies for indirect prompt injection (IPI) against LLMs in Google Workspace/Gemini; a 2025 year-in-review for Google’s Vulnerability Rewards Program; Android’s migration path to Post‑Quantum Cryptography starting in Android 17 beta; a

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
63d59a15afffd36870fb3b85bfa26ad13ee282feb7179997376b6b2202515e1b
Enrichment time
2026-04-15T19:23:43Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.