Google Pixel Modem Flaw Exposes Devices to Targeted Attacks
A recently patched flaw in Google's Pixel cellular modem has raised concerns about the vulnerability of mobile devices to targeted attacks. The bug, CVE-2026-58704, is a high-severity issue that allows an attacker to bypass permission checks and escalate privileges without any user interaction.
The vulnerability is located in the modem firmware, which runs beneath the operating system and handles cellular connectivity. This makes it difficult for security teams to detect and monitor, as they typically focus on network traffic, application behavior, and OS-level permissions.
Google has confirmed that there are indications of limited, targeted exploitation of this flaw, but no attribution or delivery mechanism has been disclosed. The Cybersecurity and Infrastructure Security Agency added CVE-2026-58704 to its Known Exploited Vulnerabilities catalog on September 16, 2026, with a remediation deadline of September 19 for federal agencies.
The characteristics of this vulnerability match those of commercial spyware tooling, with a zero-click, modem-level, targeted attack that is difficult to detect. The patch has been available since September 15, but Pixel owners who have not updated remain vulnerable.