Bringing Rust to the Pixel Baseband

2026-04-20T13:23:50Za231601ac03b2d5a12f2c388b1a1c7ae56058b6763337b64db6e38617e0d8e9b
IPIMTCandroid 17android scam protectioncertificate transparencychromecookie theftdbscdevice bound session credentialsdns parsergenai securityindirect prompt injectionmemory safetymerkle tree certificatesmodempixel basebandpost-quantum cryptographypqcquantum-safe HTTPSrustscam protectionvrpvulnerability rewards program

What happened

This collection of Google security posts (Apr–Mar 2026) announces defensive engineering and deployment plans across multiple high‑risk areas: Pixel modem firmware is adopting a memory‑safe Rust DNS parser to reduce exploitation risk in baseband code; Chrome is rolling out Device Bound Session Credentials (DBSC) to prevent cookie‑based session theft (public availability on Windows in Chrome 146, macOS coming soon); Google Workspace/ Gemini teams describe ongoing defenses against indirect prompt injection (IPI) threats to LLMs; the Vulnerability Rewards Program reflects continued engagement with

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
a231601ac03b2d5a12f2c388b1a1c7ae56058b6763337b64db6e38617e0d8e9b
Enrichment time
2026-04-20T13:23:50Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.