Bringing Rust to the Pixel Baseband
2026-04-16T01:23:41Z•f691376188547a43a0f0aca9dfc0e9977c59a7cc191dc2b8df48c56dbcb631d8
Android-17Certificate-Transparency (CT)DBSCGenAIIPILLM-securityMerkle-Tree-CertificatesPQCVRPWindowsbasebandchromecookiesdevice-bound-session-credentialsdns-parserindirect-prompt-injectionmacOSmemory-safetymodempixel-10post-quantum-cryptographyquantum-safe-HTTPSrustsession-theftvulnerability-reward-program
What happened
A set of Google Security Blog updates describing multiple defensive advances across Google products. Key items: Pixel is integrating a memory-safe Rust DNS parser into modem firmware (Pixel 10) to reduce baseband memory-safety vulnerabilities; Chrome is rolling out Device Bound Session Credentials (DBSC) (public for Windows on Chrome 146, coming to macOS) to prevent stolen cookies from being abused; Google Workspace is improving defenses against indirect prompt injection (IPI) in LLM-powered applications; the Vulnerability Rewards Program (VRP) 2025 year-in-review highlights continued bug-boun
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- google_security_blog
- Record identifier
- f691376188547a43a0f0aca9dfc0e9977c59a7cc191dc2b8df48c56dbcb631d8
- Enrichment time
- 2026-04-16T01:23:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.