Google Project Zero's analysis of a 0-click Pixel 9 exploit chain reveals systemic Android security issues. The team found critical vulnerabilities in Dolby UDC audio codec and BigWave driver within days, exploited them in weeks, and faced delayed patches (139+ days). Key problems include AI features expanding attack surfaces,

13m read timeFrom projectzero.google
Post cover image
Table of contents
Audio Attack SurfaceBug Discovery Time FramesEase of ExploitabilityPatch TimeframePatch PropagationConclusion

Sort: