Bringing Rust to the Pixel Baseband

2026-04-16T01:23:41Zf691376188547a43a0f0aca9dfc0e9977c59a7cc191dc2b8df48c56dbcb631d8
Android-17Certificate-Transparency (CT)DBSCGenAIIPILLM-securityMerkle-Tree-CertificatesPQCVRPWindowsbasebandchromecookiesdevice-bound-session-credentialsdns-parserindirect-prompt-injectionmacOSmemory-safetymodempixel-10post-quantum-cryptographyquantum-safe-HTTPSrustsession-theftvulnerability-reward-program

What happened

A set of Google Security Blog updates describing multiple defensive advances across Google products. Key items: Pixel is integrating a memory-safe Rust DNS parser into modem firmware (Pixel 10) to reduce baseband memory-safety vulnerabilities; Chrome is rolling out Device Bound Session Credentials (DBSC) (public for Windows on Chrome 146, coming to macOS) to prevent stolen cookies from being abused; Google Workspace is improving defenses against indirect prompt injection (IPI) in LLM-powered applications; the Vulnerability Rewards Program (VRP) 2025 year-in-review highlights continued bug-boun

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
google_security_blog
Record identifier
f691376188547a43a0f0aca9dfc0e9977c59a7cc191dc2b8df48c56dbcb631d8
Enrichment time
2026-04-16T01:23:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.