IncidentResponseLack ofAPILayerReputationalDamageExposureof privatemessagesStorage ofsensitiveinformartionNo AuthControlsUnsecureddatabaseMinimumsecurityrulesPublic cloudstoragemisconfigurationNoauthenticationon storagebucketTrustlossMetadataexposureLack ofaccesscontrolsemotionalharmUse ofFirebaseBackendIdentitytheftriskUserNotificationSQLinjectionAPI keysin clientappinsiderthreatLegacyInfrastructureDataRetentionRisksNoregularauditsExposureof PIIIncidentResponseLack ofAPILayerReputationalDamageExposureof privatemessagesStorage ofsensitiveinformartionNo AuthControlsUnsecureddatabaseMinimumsecurityrulesPublic cloudstoragemisconfigurationNoauthenticationon storagebucketTrustlossMetadataexposureLack ofaccesscontrolsemotionalharmUse ofFirebaseBackendIdentitytheftriskUserNotificationSQLinjectionAPI keysin clientappinsiderthreatLegacyInfrastructureDataRetentionRisksNoregularauditsExposureof PII

Technical Risk Bingo - Call List

(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
  1. Incident Response
  2. Lack of API Layer
  3. Reputational Damage
  4. Exposure of private messages
  5. Storage of sensitive informartion
  6. No Auth Controls
  7. Unsecured database
  8. Minimum security rules
  9. Public cloud storage misconfiguration
  10. No authentication on storage bucket
  11. Trust loss
  12. Metadata exposure
  13. Lack of access controls
  14. emotional harm
  15. Use of Firebase Backend
  16. Identity theft risk
  17. User Notification
  18. SQL injection
  19. API keys in client app
  20. insider threat
  21. Legacy Infrastructure
  22. Data Retention Risks
  23. No regular audits
  24. Exposure of PII