"We just use Windows Defender" Windows Server 2003/2008 Default SNMP Write value No DR Plan DNS logging not enabled No DKIM / DMARC No offsite backups closet spaghetti Stale Objects older than 1year Manual Backups Minimal Group Policy Windows 7 Whitelisted domains in email filter "We've never had an incident." No drive encryption Telnet Computers not joined to Domain cracked admin password Unidentified PCI requirements >50% passwords cracked Guest SSID but no isolation No IR Plan No Security Awareness Training Plain text password discovered in share Windows XP Unlicensed hardware or software No SPF record External RDP No MFA Default admin credentials password spreadsheet Users are local admins No EDR Unpatched Exchange No true network segmentation Inapproprite Firewall rules (not RDP) "We update when there are problems" Teamviewer / VNC Wireless PSK older than 2 years Shares with "Everyone, Full Control" "We're as secure as we can be." Adobe Flash No DMZ Individual permissions in shares Passwords never expire "We just use Windows Defender" Windows Server 2003/2008 Default SNMP Write value No DR Plan DNS logging not enabled No DKIM / DMARC No offsite backups closet spaghetti Stale Objects older than 1year Manual Backups Minimal Group Policy Windows 7 Whitelisted domains in email filter "We've never had an incident." No drive encryption Telnet Computers not joined to Domain cracked admin password Unidentified PCI requirements >50% passwords cracked Guest SSID but no isolation No IR Plan No Security Awareness Training Plain text password discovered in share Windows XP Unlicensed hardware or software No SPF record External RDP No MFA Default admin credentials password spreadsheet Users are local admins No EDR Unpatched Exchange No true network segmentation Inapproprite Firewall rules (not RDP) "We update when there are problems" Teamviewer / VNC Wireless PSK older than 2 years Shares with "Everyone, Full Control" "We're as secure as we can be." Adobe Flash No DMZ Individual permissions in shares Passwords never expire
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
"We just use Windows Defender"
Windows Server 2003/2008
Default SNMP Write value
No DR Plan
DNS logging not enabled
No DKIM / DMARC
No offsite backups
closet spaghetti
Stale Objects older than 1year
Manual Backups
Minimal Group Policy
Windows 7
Whitelisted domains in email filter
"We've never had an incident."
No drive encryption
Telnet
Computers not joined to Domain
cracked admin password
Unidentified PCI requirements
>50% passwords cracked
Guest SSID but no isolation
No IR Plan
No Security Awareness Training
Plain text password discovered in share
Windows XP
Unlicensed hardware or software
No SPF record
External RDP
No MFA
Default admin credentials
password spreadsheet
Users are local admins
No EDR
Unpatched Exchange
No true network segmentation
Inapproprite Firewall rules (not RDP)
"We update when there are problems"
Teamviewer / VNC
Wireless PSK older than 2 years
Shares with "Everyone, Full Control"
"We're as secure as we can be."
Adobe Flash
No DMZ
Individual permissions in shares
Passwords never expire