Bringing Rust to the Pixel Baseband
2026-04-15T01:23:41Z•9395d386b6ae85217c290bea8f3ac353f4cf9c5a5e80f6b559e4271db79f22d9
android-17basebandcertificate-transparency-researchablechromecookie-theftdbscdevice-bound-session-credentialsdns-parserindirect-prompt-injectionipillm-securitymacosmemory-safetymerkle-tree-certificatesmodempixelpost-quantum-cryptographypqcquantum-safe-httpsrustsession-theftvrpvulnerability-rewards-programwindowsworkspace
What happened
Collection of Google Security Blog posts covering multiple product security initiatives: Pixel 10 integrates a memory-safe Rust DNS parser into the modem/baseband firmware to reduce memory‑safety vulnerabilities; Chrome is rolling out Device Bound Session Credentials (DBSC) to prevent cookie-based session theft (Windows available on Chrome 146, macOS coming); Google Workspace is improving defenses against indirect prompt injection (IPI) for LLMs; the Vulnerability Rewards Program (VRP) 2025 year-in-review and ongoing bounty efforts; Android is beginning Android 17 beta tests for Post‑Quantum-C
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- google_security_blog
- Record identifier
- 9395d386b6ae85217c290bea8f3ac353f4cf9c5a5e80f6b559e4271db79f22d9
- Enrichment time
- 2026-04-15T01:23:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.