>20% phish click rate min password length < 12 characters password complexity not enforced password spreadsheet untrained clickers unencrypted web management interface Unpatched Exchange Application with > 1000 vulnerabilities DNS logging not enabled Insecure share with PII/PHI Windows XP inappropriate unconstrained delegation in Active Directory Windows 7 Computers not joined to AD (or AAD) rogue device No SPF record LM Hash on admin compliance violation legacy configuration not removed Segmentation without ACLs insecure zone transfers Windows Server 2003/2008 No DMZ (where appropriate) unauthenticated mail relay No DKIM / DMARC GPO with insecure settings LLMNR enabled critically out-of- date firmware Telnet No Geo-IP blocking Winlogon cache default value Bypass users in DUO unencrypted backups End user Passwords that never expire No botnet filter VM without autostart VPN with weak encryption Teamviewer / VNC Guest SSID but no guest isolation SMB signing not enabled Plain text password discovered in share EDR Missing on endpoint NIPS disabled /unconfigured No redundant ISP Individual user permissions in shares Default SNMP Write value No backup failure alerts Adobe Flash Stale users older than 1year Unlicensed hardware or software Whitelisted domains in email filter cpassword Wireless PSK older than 2 years "Domain Users" group as local administrator Users are local admins No drive encryption No MFA on 365 Admin Inapproprite Firewall rules (not RDP) Default admin credentials PCI violation >20% phish click rate min password length < 12 characters password complexity not enforced password spreadsheet untrained clickers unencrypted web management interface Unpatched Exchange Application with > 1000 vulnerabilities DNS logging not enabled Insecure share with PII/PHI Windows XP inappropriate unconstrained delegation in Active Directory Windows 7 Computers not joined to AD (or AAD) rogue device No SPF record LM Hash on admin compliance violation legacy configuration not removed Segmentation without ACLs insecure zone transfers Windows Server 2003/2008 No DMZ (where appropriate) unauthenticated mail relay No DKIM / DMARC GPO with insecure settings LLMNR enabled critically out-of- date firmware Telnet No Geo-IP blocking Winlogon cache default value Bypass users in DUO unencrypted backups End user Passwords that never expire No botnet filter VM without autostart VPN with weak encryption Teamviewer / VNC Guest SSID but no guest isolation SMB signing not enabled Plain text password discovered in share EDR Missing on endpoint NIPS disabled /unconfigured No redundant ISP Individual user permissions in shares Default SNMP Write value No backup failure alerts Adobe Flash Stale users older than 1year Unlicensed hardware or software Whitelisted domains in email filter cpassword Wireless PSK older than 2 years "Domain Users" group as local administrator Users are local admins No drive encryption No MFA on 365 Admin Inapproprite Firewall rules (not RDP) Default admin credentials PCI violation
(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.
>20% phish click rate
min password length < 12 characters
password complexity not enforced
password spreadsheet
untrained clickers
unencrypted web management interface
Unpatched Exchange
Application
with > 1000 vulnerabilities
DNS logging not enabled
Insecure share with PII/PHI
Windows XP
inappropriate unconstrained delegation in Active Directory
Windows 7
Computers
not
joined to
AD (or AAD)
rogue device
No SPF record
LM Hash on admin
compliance violation
legacy configuration
not removed
Segmentation without ACLs
insecure zone transfers
Windows Server 2003/2008
No DMZ
(where appropriate)
unauthenticated
mail relay
No DKIM / DMARC
GPO with insecure settings
LLMNR enabled
critically out-of-date firmware
Telnet
No Geo-IP blocking
Winlogon cache default value
Bypass users in DUO
unencrypted backups
End user
Passwords that never expire
No botnet
filter
VM without autostart
VPN with weak encryption
Teamviewer / VNC
Guest SSID but no guest isolation
SMB signing
not enabled
Plain text password discovered in share
EDR
Missing on endpoint
NIPS
disabled
/unconfigured
No redundant ISP
Individual user permissions in shares
Default SNMP Write value
No backup
failure alerts
Adobe Flash
Stale users older than 1year
Unlicensed
hardware or software
Whitelisted domains in email filter
cpassword
Wireless PSK older than 2 years
"Domain Users" group as local administrator
Users are local admins
No drive encryption
No MFA on
365 Admin
Inapproprite Firewall rules (not RDP)
Default admin credentials
PCI violation