Google Pixel Phones Hit by Zero-Day Attacks Exploiting Modem Vulnerability
Google has disclosed that its Pixel smartphones were targeted in zero-day attacks exploiting a vulnerability in their software. The bug, tracked as CVE-2026-58704, was found in the phone's modem, allowing an attacker to gain access beyond the sandboxed walls of the modem and into the broader phone's data.
The attack can be carried out silently without any interaction from the phone owner, making it a 'zero-click' attack. This type of vulnerability is particularly concerning as it can be exploited by surveillance vendors, such as spyware makers, who sell access to their data-stealing software to governments and law enforcement agencies.
Google has since patched the bug, but the incident highlights the ongoing threat of zero-day attacks on smartphone devices. The company did not disclose who was exploiting the vulnerability or how many phones were affected.