The College of New Jersey Logo

Apply     Visit     Give     |     Alumni     Parents     Offices     TCNJ Today     Three Bar Menu

Announcements Archive

Text Message Scam Alert

A number of people have reported receiving a suspicious sms message on their personal cell phone. The message is brief asking for a reply and impersonating another employee at TCNJ. If you receive a message like this do not reply, and report it to the Information Security Office. All suspicious messages should be reported to… Continue Reading

Phish – Subject: Re: Mandatory

Another phish reported. Links to a weebly site imitating a O365 login page.  From: DEBORAH CARR-SANCHEZ <DEBORAH.CARR@donnaisd.net> To: Microsoft Viva <viva-noreply@microsoft.com> Subject: Re: Mandatory Date: 2022-04-11 12:05PM Mandatory notice. You are requested to verify your email to migrate to the latest upgraded service 2022 to avoid deactivation of your email in the next 24-hours. To… Continue Reading

Phish/Scam – Job Opening

There have been a few different reports of similar student job opening scams over the past few weeks. Please mark these messages as spam or phishing and do not reply to the attackers.  From: CAMPUS JOBS <joseburgos8290@gmail.com> Date: Fri, 4 Mar 2022 07:23:32 +0100 Subject: Job Opening To: undisclosed-recipients:; The service of a student administrative… Continue Reading

Phish – reached the storage limit

New phish reported – Links to a wixsite.com website trying to steal credentials.  Dear user, You have reached the storage limit for your emails and you cannot receive new messages until you increase your storage limit. Click here to increase your office365 Thank you Administrative team Continue Reading

Cybersecurity Awareness Month 2021

October is Cybersecurity Awareness Month. The theme, just like last year, is “Do Your Part. #BeCyberSmart” which emphasizes the important role we all must play in protecting ourselves and the College from cyber attacks. It is our shared responsibility to be good digital citizens. No individual is solely responsible for securing the Internet. Everyone must… Continue Reading

EXPLOIT – CVE-2021-30860 – FORCEDENTRY zero-day exploit on Apple devices

The FORCEDENTRY vulnerability was discovered last week by CitizenLab.  This vulnerability allows attackers to craft malicious PDF files which the device then process and runs the attackers code, leading to data theft, impersonation and potential device takeover.  This vulnerability exploits Apple’s image rendering library, CoreGraphics and requires no interaction from the user once the text… Continue Reading

Exploit – CVE-2021-40444 – MSHTML RCE Vulnerbility via malicious Microsoft Office documents

This week Microsoft reported that they are seeing this vulnerability being actively exploited in the wild.  The attacker crafts a Microsoft Office document which contains a malicious ActiveX control, that once installed, grants the attacker the same rights as the user who opened the document.  This can allow the attacker to run code, install and… Continue Reading

Phish – Subject:Evaulation.docx01.docx

New phish reported, 04/28/2021.  Mail comes from a Jeremy Keifer in the From field and the email appears to be from some variation of share-drive-noreply@google.com.  It is impersonating Kathryn Foster and claims to share a file from Sharepoint (it also has a typo and misspells “has”).  Do not open this attachment or enter any information.… Continue Reading

Phish – Subject: HHS COLLEGE RELIEF FUND ( RE: Finance Department )

New phish reported, with a pdf attachment that links to a phishing site.  From: Dr. Peter Ausburn <p4ausburn@outlook.com> Date: Mon, Feb 22, 2021 at 2:16 PM Subject: HHS COLLEGE RELIEF FUND ( RE: Finance Department ) To: XXX@tcnj.edu <XXX@tcnj.edu> Hello good day, Please find attached the summary of the previous meeting between the College Finanace… Continue Reading

Phish – Subject: TCNJ Help Desk

New phish reported. Link to a jotform site From: “TCNJ” <XXXXXX> Subject: TCNJ Help Desk Date: November 25, 2020 at 7:00:29 PM EST To: XXX@tcnj.edu Hello, Your request to deactivate your TCNJ account has been received and will be completed shortly. You can cancel the request here to keep your account active Thank You TCNJ… Continue Reading

Phish – Subject: Quick Request

New phish reported. Please ignore and delete this message.  From: XXXX <baltzlem.wou@gmail.com> Subject: Quick Request Date: November 10, 2020 at 6:50:00 PM EST To: XX@tcnj.edu Get back to me with your available text number I can reach you at. — Provost and Vice President for Academic Affairs; Professor of Biology Continue Reading

Top