4 Hours+ Final Call 0 Vulnerabilities Web APP has a (good) Firewall Environment is broken XSS with Admin Bot 20+ Crits Format String Injection RCE Exploit works on multiple Hosts 0 Technical Customers Wrong IPs/Hosts provided Only 1 VPN connection 0 Customer Responses during the Test Default Credentials Unauthorized FTP Outdated Software with known vulns Command Injection Unauthorized SMB SSRF Your test machine crashes Access to Example Reports Unauthorized Database Unauthorized DoS Feature SQL Injection Unauthorized NFS 4 Hours+ Final Call 0 Vulnerabilities Web APP has a (good) Firewall Environment is broken XSS with Admin Bot 20+ Crits Format String Injection RCE Exploit works on multiple Hosts 0 Technical Customers Wrong IPs/Hosts provided Only 1 VPN connection 0 Customer Responses during the Test Default Credentials Unauthorized FTP Outdated Software with known vulns Command Injection Unauthorized SMB SSRF Your test machine crashes Access to Example Reports Unauthorized Database Unauthorized DoS Feature SQL Injection Unauthorized NFS
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
4 Hours+ Final Call
0 Vulnerabilities
Web APP has a (good) Firewall
Environment is broken
XSS with Admin Bot
20+ Crits
Format String Injection
RCE Exploit works on multiple Hosts
0 Technical Customers
Wrong IPs/Hosts provided
Only 1 VPN connection
0 Customer Responses during the Test
Default Credentials
Unauthorized FTP
Outdated Software with known vulns
Command Injection
Unauthorized SMB
SSRF
Your test machine crashes
Access to Example Reports
Unauthorized Database
Unauthorized
DoS Feature
SQL Injection
Unauthorized NFS