[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fwe1ir-yisGJQa9B0M_ayIVmbbNzMSZAwO_LK8g06i70":3},{"article":4,"iocs":54},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":31,"category":32,"article_tags":36},"249a33f7-1a1a-478c-af6e-b6d103fc1bcc","In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions","in-other-news-log4j-rce-scare-minimus-shutdown-iranian-hacker-sanctions-20098a","Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang’s claims. The post In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions appeared first on SecurityWeek.","This week's security news roundup covers a potentially overblown Log4j RCE vulnerability alert, U.S. Bank's response to ransomware claims originating from a third-party provider, and the shutdown of container image provider Minimus. Additionally, research revealed widespread exposed AWS keys and Git repositories, mobile banking malware expanding its reach with AI, and a significant portion of the alleged Carhartt breach data being synthetic.","Log4j RCE scare, Minimus shutdown, Iranian hacker sanctions, and other security news.","SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage yet remain relevant to the broader threat landscape. This curated summary highlights key stories across vulnerability disclosures, emerging attack methods, policy updates, industry reports, and other noteworthy events to help readers maintain a well-rounded awareness of the evolving cybersecurity environment. Here are this week’s highlights: Developers say Log4j vulnerability alert overblown An Apache Log4j 2 vulnerability raised concerns in the cybersecurity community this week. Reports started circulating about a critical remote code execution vulnerability. However, Log4j developers calmed fears, describing the issue as a “known security non-finding”. They confirmed its potential for remote code execution, but pointed out the specific circumstances required for exploitation and noted that volunteers’ limited time can be spent on more useful things. Log4j vulnerabilities can have a serious impact, as demonstrated by the Log4Shell flaw a few years ago. Advertisement. Scroll to continue reading. U.S. Bank responds to ransomware gang’s claims U.S. Bancorp says ransomware claims involving its name actually stem from a potential incident at a fourth-party provider, outside the bank’s environment. The bank says there is currently no evidence its systems, networks or data repositories were compromised, although LockBit has threatened to publish allegedly stolen data. Cybersecurity firm Minimus shuts down Hardened container image provider Minimus is winding down operations after raising $51 million in 2025, saying the business and investment climate left it unable to continue. The shutdown comes less than a month after the company appeared at the Black Hat conference. Shortly after Minimus announced it was winding down operations, Echo said it acquired the company and its technology. Credential leak research A Truffle Security study found over 700 still-active corporate AWS keys that granted full control over their accounts. The discovery was made during the review of 10,616 AWS keys exposed between 2022 and 2026. Separately, Intruder found 28,000 exposed Git repositories while scanning 3.5 million active hosts, uncovering more than 400 AWS keys, 107 Stripe keys, 123 OpenAI keys, 80 Telegram tokens and 17 GitHub PATs. Some credentials were still active and could provide access to cloud environments, private source code and other sensitive systems. Mobile banking malware widens its reach Zimperium found 30 mobile malware families actively targeting more than 800 banking and fintech apps across 44 EMEA countries. The research also shows attackers increasingly using AI across the attack chain, from localized lures and exploit scripting to more convincing phishing pages and overlays. Carhartt breach data was partly fake Troy Hunt found that a large portion of the data attributed to the alleged Carhartt breach was actually synthetic TPC-DS benchmark data mixed with genuine customer information. His analysis suggests roughly half of the 24.8 million email addresses were junk records, meaning the original ShinyHunters breach claims significantly overstated the amount of real customer data involved. Paylogix breach exposes sensitive records Paylogix says attackers stole files from its network over several days in November, exposing Social Security numbers, financial and health insurance information, medical data, passport numbers and taxpayer IDs. At least 67,789 people have been reported affected across South Carolina, New Hampshire and Vermont. The Akira ransomware group took credit for the attack. Russian cyber training pipeline exposed Leaked Bauman University records reveal a long-running program that trained roughly 250 career and reserve students for Russian military intelligence and cyber operations. The material covers offensive and defensive cyber techniques, malware analysis, intelligence work and military placements, with graduates linked to units associated with the Russian threat groups APT28 and Sandworm. Manchester Airports Group cyberattack Hackers accessed personal data belonging to about 8.7 million customers of Manchester Airports Group, including email addresses, phone numbers, vehicle registrations and postcodes. The attackers demanded a ransom for the return of the data, but MAG refused to pay. The company said airport operations, passenger safety and aviation security were not affected. US sanctions Iranian hackers The US Treasury sanctioned Iranian cyber actors tied to the MOIS, accusing the group of compromising critical infrastructure and conducting financially motivated cyber theft. Treasury said Keyvan Fayyaz Ghareh Blagh, Saber Shahbazi Balujeh and Mohammad Reza Kadkhoda’i carried out compromises and data theft, while four of the 17 Iranian cyber actors charged by the FBI were designated in the action. Related: In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities Related: In Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused Bug Written By SecurityWeek News Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from SecurityWeek News Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity SecurityAlice Raises $140M to Expand AI Model Defenses and Enterprise GuardrailsIn Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused BugVirtual Event Today: CodeSecCon – Secure Your Code and ApplicationsWebinar Today: Rethinking Cyber Defense for AI-Speed AttacksIn Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System VulnerabilitiesVenture Firm Team8 Secures Additional $365 MillionCorma Raises $60 Million for Defensive Cybersecurity AI Model Latest News ATF Confirms Cyber Incident After Ransomware Group Claims AttackOpenAI Agents Exploited Linux Kernel Flaw on Company’s Own SystemsTech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense PledgeThink You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco SaysPaperCut Releases Emergency Patch for Exploited Zero-DayTrump Order Aims to Block Foreign Backdoors in US Power Grid GearAustralia Arrests 2 Alleged TeamPCP HackersOpenAI Agents Coordinated via Makeshift Message Board Ahead of Hugging Face Hack Trending Daily Briefing NewsletterSubscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Virtual Event: Attack Surface Management Summit 2026 September 16, 2026 Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs. Register Webinar: Minimum Viable Business: Can You Prove Your Organization Would Recover? September 2, 2026 In this live webinar, learn how to define your minimum viable business, identify the systems it depends on, measure actual recovery time against business requirements, and present the gaps to the board as measurable risk. Register People on the MoveSocial engineering protection company Doppel has promoted Alyssa Smrekar to Chief Marketing Officer.Naveen Bhateja has been appointed Chief People Officer at HackerOne.The Department of War has appointed Sonu Shankar as Principal Deputy Chief Information Officer.More People On The MoveExpert Insights The Future of AI-Driven Security Depends on Complete Data For twenty-five years, \"data\" in security meant logs and events. But logs are a lossy representation of reality. (Danelle Au) The MFA Identity Trap: When Authentication Creates a False Sense of Security Organizations must distinguish identity verification, authentication and threat detection, or risk successfully authenticating the ","https:\u002F\u002Fwww.securityweek.com\u002Fin-other-news-log4j-rce-scare-minimus-shutdown-iranian-hacker-sanctions\u002F","https:\u002F\u002Fwww.securityweek.com\u002Fwp-content\u002Fuploads\u002F2023\u002F10\u002Fcybersecurity-news.jpg","2026-08-28T15:35:34+00:00","2026-08-28T16:00:36.931608+00:00",7,[18,21,24,26,28],{"name":19,"type":20},"Log4j","product",{"name":22,"type":23},"Minimus","vendor",{"name":25,"type":23},"U.S. Bank",{"name":27,"type":23},"Echo",{"name":29,"type":30},"AWS","technology","e7b231c8-5f79-4465-8d38-1ef13aea5a14",{"id":31,"icon":33,"name":34,"slug":35},null,"Threat Intelligence","threat-intelligence",[37,42,47,52],{"category":38},{"id":39,"icon":33,"name":40,"slug":41},"26b0b636-0e31-4db1-bffb-61bdf9f20a58","Supply Chain","supply-chain",{"category":43},{"id":44,"icon":33,"name":45,"slug":46},"80544778-fabb-4dcd-aa35-17492e5dcf4f","Vulnerabilities","vulnerabilities",{"category":48},{"id":49,"icon":33,"name":50,"slug":51},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":53},{"id":31,"icon":33,"name":34,"slug":35},[55,58],{"type":51,"value":56,"context":57},"Akira","Ransomware group that took credit for the Paylogix breach.",{"type":51,"value":59,"context":60},"ShinyHunters","Threat actor associated with the alleged Carhartt breach."]