Technology
TechCrunch

Google says some Pixel phone owners were hacked in zero-day attacks

Source Entity

Zack Whittaker

September 18, 2026
Google says some Pixel phone owners were hacked in zero-day attacks

Google has patched a critical zero-click vulnerability, CVE-2026-58704, affecting the modems of its Pixel smartphones. This security flaw allowed attackers to remotely access user data without any interaction from the device owner.

Security Alert: Google Patches Critical Zero-Click Modem Vulnerability

Google has officially acknowledged that a significant security vulnerability, tracked as CVE-2026-58704, has been identified and exploited in its Pixel smartphone lineup. This specific bug, localized within the device's modem firmware, presented a severe security risk by potentially allowing unauthorized entities to bypass standard system protections. The company has confirmed that a patch is now available, addressing the flaw that enabled these targeted, limited cyberattacks.

The Mechanics of the Vulnerability

The core of this security incident lies in the modem, the essential component responsible for cellular connectivity and internet access. By targeting this subsystem, attackers were able to bypass the 'sandboxed' security environment—a core architecture design intended to isolate individual components of the phone from one another. This breach allowed for privilege escalation, effectively granting an attacker the ability to move from the isolated modem environment into the broader operating system, where sensitive user data resides.

The Threat of Zero-Click Exploitation

Perhaps the most alarming aspect of CVE-2026-58704 is its classification as a 'zero-click' exploit. Unlike traditional malware attacks that require a user to inadvertently download a malicious file or click on a phishing link, this vulnerability could be triggered silently. This means that an attacker could potentially compromise a device without any action or awareness from the phone owner, highlighting the extreme sophistication of the threat actors involved in these targeted operations.

Broader Implications for Mobile Security

This incident underscores the inherent risks associated with complex, interconnected hardware components in modern smartphones. Modems, which are often provided by third-party manufacturers or complex proprietary software stacks, have increasingly become a focal point for high-level digital espionage. As mobile devices become the primary computing platform for global users, the discovery of such flaws emphasizes the constant race between security researchers and sophisticated adversaries attempting to weaponize low-level hardware vulnerabilities.

Industry Trends and Future Outlook

Looking ahead, the mobile security landscape is likely to shift toward more rigorous auditing of firmware and baseband software. While Google has acted to patch this specific instance, the nature of these attacks suggests that state-sponsored or advanced persistent threat (APT) actors are investing heavily in finding vulnerabilities that bypass user interaction. For the average consumer, this event reinforces the vital importance of maintaining up-to-date software and the necessity for manufacturers to maintain transparent, rapid response cycles for security patches.

Conclusion

While Google has not attributed these attacks to a specific entity, the targeted and limited nature of the exploitation points to a highly skilled adversary. As the digital ecosystem evolves, the ability to rapidly identify, contain, and patch vulnerabilities like CVE-2026-58704 will remain the primary defense for smartphone users worldwide. Users are strongly encouraged to update their Pixel devices immediately to ensure they are protected against this known exploit.

Verification Required?

Read the full report from the primary source

Go to TechCrunch