Public service
Intelligence Feed
TeliApp consolidates information from multiple cybersecurity threat intelligence feeds — commercial, open-source, and government — and publishes anything we believe is useful to the public right here. No login. No paywall. No tracking pixels.
Free for everyone.
What we ingest
CISA KEV, MS-ISAC advisories, vendor PSIRT bulletins, open-source threat feeds, and our own field telemetry from defending New Jersey agencies.
What we publish
Plain-English summaries of active threats, scams targeting municipalities and residents, and patch guidance that anyone can act on.
Who it's for
Local government staff, small business owners, school administrators, and residents who want a trustworthy signal without the marketing noise.
Archive
795 advisories
Sep 10, 2026PhishingMalwareHR and Finance Lures Deliver Remote Monitoring Software
The NJCCIC observed a phishing scheme that illustrates how cybercriminals exploit organizational trust to deliver remote monitoring and management (RMM) software. By impersonating trusted senders, such as internal Human Resources and Finance departments, attackers send deceptive emails that trick em…
Sep 10, 2026VulnerabilitySecurityMultiple Vulnerabilities in Ivanti Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Ivanti products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the system. Ivanti Endpoint Manager Mobi…
Sep 10, 2026PhishingSecurityVaried Phishing Lures Target New Jersey Organizations
The NJCCIC has been receiving reports of phishing campaigns with various lures targeting New Jersey private- and public-sector organizations, including local governments and educational institutions. Threat actors use phishing as a prevalent initial attack vector by convincing their targets to click…
Sep 9, 2026VulnerabilitySecurityA Vulnerability in SAP Extended Passport Processing Could Allow for Remote Code Execution
A vulnerability has been discovered in SAP Extended Passport (EPP) Processing that could allow for remote code execution. SAP Extended Passport (EPP) Processing is a core system data structure and tracing mechanism within SAP Kernel code used to track, log, and monitor end-to-end communication acros…
Sep 8, 2026VulnerabilitySecurityMultiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution. Adobe Experience Manager (AEM) is an enterprise-grade digital experience platform that combines content management, digital asset management, and digital enrollment int…
Sep 8, 2026VulnerabilityMicrosoftMultiple Vulnerabilities in Microsoft Products Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution. Successful exploitation of the most severe of these vulnerabilities could result in an attacker gaining the same privileges as the logged-on user. Depending on the pri…
Sep 7, 2026VulnerabilitySecurityMultiple Vulnerabilities in Dell Secure Connect Gateway Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Dell Secure Connect Gateway, the most severe of which could allow for arbitrary code execution. Dell Secure Connect Gateway is an enterprise monitoring and connection software for Dell infrastructure. Successful exploitation of the most severe of thes…
Sep 5, 2026VulnerabilityGoogleMultiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution (September 5)
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privi…
Sep 3, 2026ScamsCryptocurrencyWalletConnect Impersonation Scam Targets Cryptocurrency Wallets
There has been a new cryptocurrency scam lure observed, impersonating WalletConnect Customer Support and targeting New Jersey State employees. The phishing email is sent from the Denmark “.dk” top-level domain (TLD), with a subject line of “Recovery Phrase Viewed,” followed by the date and a purport…
Sep 3, 2026PhishingMalwareZillow Impersonation Campaign Delivers DarkCloud Malware
The NJCCIC observed a phishing campaign attempting to distribute DarkCloud malware by impersonating Zillow. DarkCloud is an information stealer that can collect and exfiltrate browser data, record keystrokes, and replace cryptocurrency wallets on infected devices. It is typically spread through phis…
Sep 2, 2026VulnerabilityGoogleMultiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privi…
Sep 2, 2026VulnerabilitySecurityMultiple Vulnerabilities in PaperCut Products Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in PaperCut products, the most severe of which could allow for remote code execution. PaperCut products are software tools used to track, control, secure, and manage printing, copying, and scanning across office and school printer networks. Successful ex…
Sep 2, 2026VulnerabilitySecurityMultiple Vulnerabilities in SonicWall SMA1000 Series Appliances Could Allow for Remote Code Execution
Multiple Vulnerabilities have been discovered in SonicWall SMA1000 Series Appliances, which when chained together could allow for remote code execution, potentially leading to full system compromise. SonicWall Secure Mobile Access (SMA) 1000 Series appliances are enterprise-grade secure access and S…
Aug 20, 2026ScamsPhishingBusiness Email Compromise Campaign Targets Accounts Payable Departments
The NJCCIC observed a Business Email Compromise (BEC) campaign targeting accounts payable departments. The email body contains language indicative of attempts to steal personal or…
Aug 20, 2026Gov. ProgramsSecurityGovernor Sherrill Highlights State Cybersecurity Resources Available to Local Governments
Earlier this week, Governor Mikie Sherrill highlighted resources available from the New Jersey Cybersecurity and Communications Integration Cell's (NJCCIC) cyber hub, which equips…
Aug 20, 2026ScamsPhishingThreat Actors Impersonate New Jersey Planning and Zoning Officials
The NJCCIC continues to receive reports of threat actors impersonating multiple New Jersey local planning and zoning officials to steal sensitive information and funds and exploit…
Aug 19, 2026SecurityGlobal AttacksActive Cyber Threat to Siemens S7 Series PLCs
The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Department of Energy (DOE), and Environmental Pr…
Aug 19, 2026VulnerabilityMultiple Vulnerabilities in Oracle Products
Multiple vulnerabilities have been discovered in Oracle products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of t…
Aug 18, 2026RansomwareSecurityUpdated Joint Advisory on Medusa Ransomware
The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and US Department of Health and Human Services (HHS) have released an updated jo…
Aug 13, 2026ScamsIndividual AttacksAnother Wave of Sextortion Scams Observed in New Jersey
Another wave of sextortion scams was observed in New Jersey in which threat actors target and steal funds from unsuspecting potential victims. They claim to have compromised the vi…
Aug 13, 2026ScamsSecurityCrypto Wallet Phishing Campaigns Target Seed Phrases
Over time, crypto wallet phishing campaigns have evolved from simple “fake login” pages to complex, multi-stage social engineering tactics and automated exploitation of infrastruct…
Aug 13, 2026HackersGlobal AttacksHacktivist Personas Targeting Air-Supported Sports Dome Control Systems
The NJCICC is alerting New Jersey universities, schools, and private-sector recreation operators to hacktivist targeting of the control systems that keep air-supported sports domes…
Aug 13, 2026Global AttacksSecurityPLC Targeting Highlights Risks Beyond Direct Internet Exposure
The US Water and Wastewater Systems Sector has been the target of increased cyber threat activity in recent weeks. Since July 27, utilities in multiple states, including New Jersey…
Aug 12, 2026VulnerabilityGoogleMultiple Vulnerabilities in Google Chrome
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of the…
