Updated
Updated · 9to5Google · Sep 16
Google Patches 200-Plus Pixel Flaws After Zero-Click Modem Bug Hit Targeted Phones
Updated
Updated · 9to5Google · Sep 16

Google Patches 200-Plus Pixel Flaws After Zero-Click Modem Bug Hit Targeted Phones

3 articles · Updated · 9to5Google · Sep 16

Summary

  • Google said a limited number of Pixel phones were compromised through CVE-2026-58704, a modem flaw it flagged as actively exploited in the wild.
  • CVE-2026-58704 is a logic-error permission bypass in the cellular modem that can enable adjacent-network privilege escalation with no user interaction, making it a zero-click attack.
  • September 2026 Pixel updates rolling out now fix the bug as part of more than 200 security patches, though Google has not detailed which models were hit or who carried out the attacks.
  • CISA has listed the flaw as a known exploited vulnerability, warning that such bugs are a frequent attack vector and pose significant risks to federal systems.

Insights

With a critical zero-day already being exploited, who is secretly targeting Pixel modems, and is your device already compromised?
Beyond the 110 patched flaws, what invisible threats are still lurking in the cellular networks connecting our everyday devices?