Public service
Intelligence Feed
TeliApp consolidates information from multiple cybersecurity threat intelligence feeds — commercial, open-source, and government — and publishes anything we believe is useful to the public right here. No login. No paywall. No tracking pixels.
Free for everyone.
What we ingest
CISA KEV, MS-ISAC advisories, vendor PSIRT bulletins, open-source threat feeds, and our own field telemetry from defending New Jersey agencies.
What we publish
Plain-English summaries of active threats, scams targeting government agencies and residents, and patch guidance that anyone can act on.
Who it's for
Local government staff, small business owners, school administrators, and residents who want a trustworthy signal without the marketing noise.
Archive
810 advisories
Sep 24, 2026PhishingMalwareCalendly Phishing Campaign Delivers ScreenConnect
The NJCCIC observed a Calendly phishing campaign targeting New Jersey State employees. The phishing email purports to be a partnership opportunity with an attached Request for Quotation (RFQ) for a project plan. At first glance, an RFQ file in an Adobe PDF format appears attached in the email. Howev
Sep 24, 2026VulnerabilitySecurityMultiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privi
Sep 24, 2026VulnerabilitySecurityMultiple Vulnerabilities in IBM Concert Software Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in IBM Concert Software, the most severe of which could allow for remote code execution. IBM Concert is an agentic IT operations (IT Ops) and resilience platform designed to unify fragmented data, context, and actions across an enterprise's hybrid cloud
Sep 24, 2026VulnerabilityCritical InfrastructureNorth American Hydroelectric Organization Compromised Via Cisco IOS XE WebUI Vulnerabilities
Prior to July 2026, an advanced persistent threat (APT), which overlaps in tactics, techniques, and procedures (TTPs) with Salt Typhoon, compromised a North American hydroelectric organization's internet-facing Cisco router by exploiting known Cisco IOS XE WebUI vulnerabilities (CVE-2023-20198 and C
Sep 24, 2026ScamPhishingSEO Poisoning Scam Impersonates the NJMVC Registration Portal
The NJCCIC received incident reports detailing the latest tactic in a long series of scams involving the New Jersey Motor Vehicle Commission (NJMVC). In this campaign, threat actors use search engine optimization (SEO) poisoning, a cyberattack that manipulates search engine rankings to push maliciou
Sep 24, 2026VulnerabilitySecuritySolarWinds Observability Self-Hosted Vulnerabilities
SolarWinds released security advisories for two vulnerabilities affecting SolarWinds Observability Self-Hosted 2026.2.2 products. The first vulnerability, CVE-2026-28324 (Critical – CVSS v3.1 9.8), is an unauthenticated remote code execution vulnerability due to insufficient integrity checks, affect
Sep 23, 2026Critical InfrastructureSecurityFBI and CISA Guidance for Working With Third-Party ICS Integrators
The Federal Bureau of Investigation (FBI) and Cybersecurity and Infrastructure Security Agency (CISA) recently published a Fact Sheet to highlight considerations for critical infrastructure entities to reduce risk and minimize vulnerabilities when working with third-party industrial control system (
Sep 23, 2026VulnerabilitySecurityMultiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.
Sep 22, 2026VulnerabilitySecurityCritical Vulnerability in F5 BIG-IP APM Could Allow for Remote Code Execution
A vulnerability has been discovered in F5 BIG-IP Access Policy Manager (APM) that could allow for remote code execution. BIG-IP APM is a widely deployed network access and identity management solution used across government agencies, financial institutions, healthcare organizations, and large enterp
Sep 17, 2026PhishingMalwareFleetDeck RMM Tool Abused in Phishing Campaigns
Threat actors continue to abuse legitimate remote monitoring and management (RMM) tools in phishing campaigns to bypass traditional anti-virus detection and gain unauthorized remote access to systems. The NJCCIC observed a growing trend of threat actors abusing the FleetDeck RMM tool by impersonatin
Sep 17, 2026PhishingMalwareSSA Phishing Campaign Delivers ScreenConnect
The NJCCIC observed a campaign that lures targets with emails that masquerade as official notifications from the US Social Security Administration (SSA). The email header urges recipients to complete a document review before a tight deadline, claiming a new notification is waiting in their "mySocial
Sep 16, 2026MalwareSecurityIranian Cyber Actors Deploy HEAVYGRAM Malware
The Federal Bureau of Investigation (FBI) released a FBI Liaison Alert System (FLASH) to disseminate a detailed malware analysis of the HEAVYGRAM malware. They assessed that Iranian cyber actors are using HEAVYGRAM malware to conduct malicious cyber activity to target Iranian dissidents, journalists
Sep 15, 2026VulnerabilitySecurityMultiple Vulnerabilities in Cisco Secure Email Products Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in Cisco Secure Email products, the most severe of which could allow for remote code execution. Cisco Secure Email Gateway (formerly ESA) is an email security appliance that filters spam, malware, and other threats at the mail gateway. Cisco Secure Email…
Sep 14, 2026VulnerabilitySecurityMultiple Vulnerabilities in MikroTik Routers Could Allow for Admin Hijacking
Multiple vulnerabilities have been discovered in MikroTik Routers, the most severe of which could allow for admin hijacking. MikroTik routers are network devices that use the RouterOS operating system to provide advanced routing, firewall, wireless, VPN, bandwidth management, and network security fe…
Sep 13, 2026VulnerabilitySecurityVulnerability in GitLab Could Allow for Disclosure of Sensitive Data
A vulnerability has been discovered in GitLab, which could allow disclosure of sensitive data. GitLab GitLab is a DevOps platform that provides source code management, CI/CD pipelines, issue tracking, and collaboration tools in a single application for software development teams. Successful exploita…
Sep 10, 2026PhishingMalwareHR and Finance Lures Deliver Remote Monitoring Software
The NJCCIC observed a phishing scheme that illustrates how cybercriminals exploit organizational trust to deliver remote monitoring and management (RMM) software. By impersonating trusted senders, such as internal Human Resources and Finance departments, attackers send deceptive emails that trick em…
Sep 10, 2026VulnerabilitySecurityMultiple Vulnerabilities in Ivanti Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Ivanti products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the system. Ivanti Endpoint Manager Mobi…
Sep 10, 2026PhishingSecurityVaried Phishing Lures Target New Jersey Organizations
The NJCCIC has been receiving reports of phishing campaigns with various lures targeting New Jersey private- and public-sector organizations, including local governments and educational institutions. Threat actors use phishing as a prevalent initial attack vector by convincing their targets to click…
Sep 9, 2026VulnerabilitySecurityA Vulnerability in SAP Extended Passport Processing Could Allow for Remote Code Execution
A vulnerability has been discovered in SAP Extended Passport (EPP) Processing that could allow for remote code execution. SAP Extended Passport (EPP) Processing is a core system data structure and tracing mechanism within SAP Kernel code used to track, log, and monitor end-to-end communication acros…
Sep 8, 2026VulnerabilitySecurityMultiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution. Adobe Experience Manager (AEM) is an enterprise-grade digital experience platform that combines content management, digital asset management, and digital enrollment int…
Sep 8, 2026VulnerabilityMicrosoftMultiple Vulnerabilities in Microsoft Products Could Allow for Remote Code Execution
Multiple vulnerabilities have been discovered in Microsoft products, the most severe of which could allow for remote code execution. Successful exploitation of the most severe of these vulnerabilities could result in an attacker gaining the same privileges as the logged-on user. Depending on the pri…
Sep 7, 2026VulnerabilitySecurityMultiple Vulnerabilities in Dell Secure Connect Gateway Could Allow for Arbitrary Code Execution
Multiple vulnerabilities have been discovered in Dell Secure Connect Gateway, the most severe of which could allow for arbitrary code execution. Dell Secure Connect Gateway is an enterprise monitoring and connection software for Dell infrastructure. Successful exploitation of the most severe of thes…
Sep 5, 2026VulnerabilityGoogleMultiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution (September 5)
Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privi…
Sep 3, 2026ScamsCryptocurrencyWalletConnect Impersonation Scam Targets Cryptocurrency Wallets
There has been a new cryptocurrency scam lure observed, impersonating WalletConnect Customer Support and targeting New Jersey State employees. The phishing email is sent from the Denmark “.dk” top-level domain (TLD), with a subject line of “Recovery Phrase Viewed,” followed by the date and a purport…
