{
  "id": 7819034,
  "title": "Google confirms Pixel phones were exploited in ‘targeted’ attack related to modem",
  "url": "https://urgent.news/2026/09/16/google-confirms-pixel-phones-were-exploited-in-targeted-attack",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-16T15:45:00.000Z",
  "source": {
    "name": "9to5Google",
    "slug": "9to5google",
    "url": "https://9to5google.com/2026/09/16/google-pixel-targeted-zero-day-modem-attack/"
  },
  "original_language": "en",
  "account": "Google has disclosed that a select number of Pixel smartphones were targeted in an attack linked to a flaw in the device's modem. As part of the September 2026 security update, Google addressed more than 200 security loopholes, but highlighted that one of them was actively exploited in the wild. Specific evidence suggests that CVE-2026-58704 may have been subject to limited, targeted exploitation. The issue stems from the modem, requiring no user interaction for exploitation. CVE-2026-58704 involves a potential permission bypass due to a coding error, enabling remote (proximal/adjacent) privilege escalation without additional execution privileges. The exact method of exploitation and affected models remain unclear. However, CISA, via The Hacker News, confirms that Pixel phones were targeted, stating, \"Google Pixel devices contain an improper authorization vulnerability in the cellular modem.\" Google has not provided further details on the attackers or motives behind the attack, nor whether Google has commented on the exploitation. Pixel owners are advised to update to the September 2026 patch immediately to address the vulnerability.",
  "summary": "Google has confirmed that a “limited” number of Pixel phones were attacked by a vulnerability related to the modem on the device. more…",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}