Bringing Rust to the Pixel Baseband

2026-04-15T01:23:41Z9395d386b6ae85217c290bea8f3ac353f4cf9c5a5e80f6b559e4271db79f22d9
android-17basebandcertificate-transparency-researchablechromecookie-theftdbscdevice-bound-session-credentialsdns-parserindirect-prompt-injectionipillm-securitymacosmemory-safetymerkle-tree-certificatesmodempixelpost-quantum-cryptographypqcquantum-safe-httpsrustsession-theftvrpvulnerability-rewards-programwindowsworkspace

What happened

Collection of Google Security Blog posts covering multiple product security initiatives: Pixel 10 integrates a memory-safe Rust DNS parser into the modem/baseband firmware to reduce memory‑safety vulnerabilities; Chrome is rolling out Device Bound Session Credentials (DBSC) to prevent cookie-based session theft (Windows available on Chrome 146, macOS coming); Google Workspace is improving defenses against indirect prompt injection (IPI) for LLMs; the Vulnerability Rewards Program (VRP) 2025 year-in-review and ongoing bounty efforts; Android is beginning Android 17 beta tests for Post‑Quantum-C

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
9395d386b6ae85217c290bea8f3ac353f4cf9c5a5e80f6b559e4271db79f22d9
Enrichment time
2026-04-15T01:23:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.