No offsite backups Guest SSID but no isolation Default SNMP Write value Shares with "Everyone, Full Control" Minimal Group Policy No DR Plan Manual Backups No MFA Windows Server 2003/2008 DNS logging not enabled Stale Objects older than 1year Unpatched Exchange "We just use Windows Defender" Adobe Flash cracked admin password No SPF record Plain text password discovered in share closet spaghetti Windows 7 No DMZ No DKIM / DMARC Individual permissions in shares No drive encryption password spreadsheet Unlicensed hardware or software No IR Plan "We update when there are problems" "We're as secure as we can be." Computers not joined to Domain Wireless PSK older than 2 years Users are local admins No true network segmentation "We've never had an incident." Whitelisted domains in email filter Passwords never expire No Security Awareness Training Inapproprite Firewall rules (not RDP) Default admin credentials Telnet Teamviewer / VNC >50% passwords cracked Windows XP External RDP No EDR Unidentified PCI requirements No offsite backups Guest SSID but no isolation Default SNMP Write value Shares with "Everyone, Full Control" Minimal Group Policy No DR Plan Manual Backups No MFA Windows Server 2003/2008 DNS logging not enabled Stale Objects older than 1year Unpatched Exchange "We just use Windows Defender" Adobe Flash cracked admin password No SPF record Plain text password discovered in share closet spaghetti Windows 7 No DMZ No DKIM / DMARC Individual permissions in shares No drive encryption password spreadsheet Unlicensed hardware or software No IR Plan "We update when there are problems" "We're as secure as we can be." Computers not joined to Domain Wireless PSK older than 2 years Users are local admins No true network segmentation "We've never had an incident." Whitelisted domains in email filter Passwords never expire No Security Awareness Training Inapproprite Firewall rules (not RDP) Default admin credentials Telnet Teamviewer / VNC >50% passwords cracked Windows XP External RDP No EDR Unidentified PCI requirements
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
No offsite backups
Guest SSID but no isolation
Default SNMP Write value
Shares with "Everyone, Full Control"
Minimal Group Policy
No DR Plan
Manual Backups
No MFA
Windows Server 2003/2008
DNS logging not enabled
Stale Objects older than 1year
Unpatched Exchange
"We just use Windows Defender"
Adobe Flash
cracked admin password
No SPF record
Plain text password discovered in share
closet spaghetti
Windows 7
No DMZ
No DKIM / DMARC
Individual permissions in shares
No drive encryption
password spreadsheet
Unlicensed hardware or software
No IR Plan
"We update when there are problems"
"We're as secure as we can be."
Computers not joined to Domain
Wireless PSK older than 2 years
Users are local admins
No true network segmentation
"We've never had an incident."
Whitelisted domains in email filter
Passwords never expire
No Security Awareness Training
Inapproprite Firewall rules (not RDP)
Default admin credentials
Telnet
Teamviewer / VNC
>50% passwords cracked
Windows XP
External RDP
No EDR
Unidentified PCI requirements