Get the latest tech news

Google may shift to risk-based Android security patch rollouts - what that means for you


Google is prioritizing critical real-world vulnerabilities while also improving the OEM patching process.

So, if a vulnerability is being actively exploited in the wild or is considered to be of extreme risk to user privacy and security, it will be patched more quickly than a low-risk denial-of-service memory issue, for example. As noted by the publication, however, there is a difference between an official "critical" rating as issued by authorities in CVSS scoring and what the tech giant could deem high risk. Android stops most vulnerability exploitation at the source with extensive platform hardening, like our use of the memory-safe language Rust and advanced anti-exploitation protections.

Get the Android app

Or read this on ZDNet

Read more on:

Photo of Google

Google

Photo of Android

Android

Photo of risk

risk

Related news:

News photo

Google launches new protocol for agent-driven purchases

News photo

Google's new open protocol secures AI agent transactions - and 60 companies already support it

News photo

This Android flagship is getting Samsung's continuous zoom camera, not the Galaxy