Google said the Pixel 10 modem firmware now includes a memory-safe Rust DNS parser, marking the first time a Pixel device has used a memory-safe language inside its cellular baseband. The company said the change is intended to reduce memory-safety flaws in a component that processes untrusted remote data and has a broad remote attack surface, citing prior Project Zero research that demonstrated remote code execution against Pixel modems over the Internet.
To build the feature, Google adapted the open-source hickory-proto crate for bare-metal use by adding no_std support and integrated it into the modem’s existing C/C++ firmware environment with rustc, Pigweed, GN, and FFI. Engineers reused the modem’s allocator and crash-handling systems and resolved linker-driven performance regressions after compiler_builtins conflicted with modem-optimized memset and memcpy routines, ultimately stripping those builtins from the Rust static library before linking. Google said the work extends earlier modem hardening in Pixel 9 and lays the groundwork for broader Rust adoption across baseband components.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
In its public blog post, Google said Pixel 10 is the first Pixel device to use a memory-safe language in its modem firmware. Google framed the deployment as a step toward broader adoption of memory-safe code in baseband components.
Google said Pixel 10 modem firmware incorporates a memory-safe Rust-based DNS parser using the open-source hickory-proto crate, adapted with no_std support for bare-metal use. The company integrated the Rust component into the existing modem firmware build system with rustc, Pigweed, GN, and FFI alongside C/C++ code.
Google said its Pixel 10 baseband Rust work builds on modem hardening previously introduced in Pixel 9. The reference does not provide a specific date for the Pixel 9 hardening effort.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.