Lack ofAPILayerNoauthenticationon storagebucketinsiderthreatUnsecureddatabaseUserNotificationStorage ofsensitiveinformartionReputationalDamageExposureof PIIMetadataexposureIdentitytheftriskAPI keysin clientappExposureof privatemessagesNo AuthControlsemotionalharmSQLinjectionIncidentResponseDataRetentionRisksMinimumsecurityrulesUse ofFirebaseBackendPublic cloudstoragemisconfigurationLack ofaccesscontrolsTrustlossLegacyInfrastructureNoregularauditsLack ofAPILayerNoauthenticationon storagebucketinsiderthreatUnsecureddatabaseUserNotificationStorage ofsensitiveinformartionReputationalDamageExposureof PIIMetadataexposureIdentitytheftriskAPI keysin clientappExposureof privatemessagesNo AuthControlsemotionalharmSQLinjectionIncidentResponseDataRetentionRisksMinimumsecurityrulesUse ofFirebaseBackendPublic cloudstoragemisconfigurationLack ofaccesscontrolsTrustlossLegacyInfrastructureNoregularaudits

Technical Risk Bingo - Call List

(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
  1. Lack of API Layer
  2. No authentication on storage bucket
  3. insider threat
  4. Unsecured database
  5. User Notification
  6. Storage of sensitive informartion
  7. Reputational Damage
  8. Exposure of PII
  9. Metadata exposure
  10. Identity theft risk
  11. API keys in client app
  12. Exposure of private messages
  13. No Auth Controls
  14. emotional harm
  15. SQL injection
  16. Incident Response
  17. Data Retention Risks
  18. Minimum security rules
  19. Use of Firebase Backend
  20. Public cloud storage misconfiguration
  21. Lack of access controls
  22. Trust loss
  23. Legacy Infrastructure
  24. No regular audits