Inapproprite Firewall rules (not RDP) Unidentified PCI requirements DNS logging not enabled Plain text password discovered in share Default admin credentials Guest SSID but no isolation Unpatched Exchange Windows Server 2003/2008 Default SNMP Write value "We update when there are problems" Wireless PSK older than 2 years "We just use Windows Defender" Windows 7 password spreadsheet Windows XP >50% passwords cracked No true network segmentation "We're as secure as we can be." No DMZ Individual permissions in shares No MFA Manual Backups Computers not joined to Domain No IR Plan Minimal Group Policy No DR Plan No EDR No offsite backups No Security Awareness Training Stale Objects older than 1year cracked admin password Passwords never expire Adobe Flash closet spaghetti No drive encryption Telnet "We've never had an incident." Unlicensed hardware or software Teamviewer / VNC External RDP Shares with "Everyone, Full Control" No DKIM / DMARC No SPF record Users are local admins Whitelisted domains in email filter Inapproprite Firewall rules (not RDP) Unidentified PCI requirements DNS logging not enabled Plain text password discovered in share Default admin credentials Guest SSID but no isolation Unpatched Exchange Windows Server 2003/2008 Default SNMP Write value "We update when there are problems" Wireless PSK older than 2 years "We just use Windows Defender" Windows 7 password spreadsheet Windows XP >50% passwords cracked No true network segmentation "We're as secure as we can be." No DMZ Individual permissions in shares No MFA Manual Backups Computers not joined to Domain No IR Plan Minimal Group Policy No DR Plan No EDR No offsite backups No Security Awareness Training Stale Objects older than 1year cracked admin password Passwords never expire Adobe Flash closet spaghetti No drive encryption Telnet "We've never had an incident." Unlicensed hardware or software Teamviewer / VNC External RDP Shares with "Everyone, Full Control" No DKIM / DMARC No SPF record Users are local admins Whitelisted domains in email filter
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
Inapproprite Firewall rules (not RDP)
Unidentified PCI requirements
DNS logging not enabled
Plain text password discovered in share
Default admin credentials
Guest SSID but no isolation
Unpatched Exchange
Windows Server 2003/2008
Default SNMP Write value
"We update when there are problems"
Wireless PSK older than 2 years
"We just use Windows Defender"
Windows 7
password spreadsheet
Windows XP
>50% passwords cracked
No true network segmentation
"We're as secure as we can be."
No DMZ
Individual permissions in shares
No MFA
Manual Backups
Computers not joined to Domain
No IR Plan
Minimal Group Policy
No DR Plan
No EDR
No offsite backups
No Security Awareness Training
Stale Objects older than 1year
cracked admin password
Passwords never expire
Adobe Flash
closet spaghetti
No drive encryption
Telnet
"We've never had an incident."
Unlicensed hardware or software
Teamviewer / VNC
External RDP
Shares with "Everyone, Full Control"
No DKIM / DMARC
No SPF record
Users are local admins
Whitelisted domains in email filter