Your Pixel's biggest lock screen security hole is getting patched
But only in the Canary channel
Google revealed that a software bug in its Pixel smartphones was exploited in targeted cyberattacks. The vulnerability, identified as CVE-2026-58704, has since been patched. The bug, discovered in the modem that enables Pixel phones to connect to the internet, could enable attackers to bypass the device's security measures and access sensitive data.
This type of attack, known as a "zero-click" attack, does not require any interaction from the phone owner. Google did not disclose the identity of the entity exploiting the bug, and the company did not respond to requests for further information. While it's not unusual for such bugs to be abused by surveillance vendors, the potential for misuse is significant, as the compromised data could potentially be accessed by governments and law enforcement agencies.
Written by urgent.news from TechCrunch's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- Google says some Pixel phone owners were hacked in zero-day attacks techcrunch.com
- Score 20% off the Google Pixel Watch 5 LTE less than a month after launch androidauthority.com
- Google confirms a dangerous Pixel security flaw was exploited by hackers androidpolice.com