Noauthenticationon storagebucketMinimumsecurityrulesDataRetentionRisksNoregularauditsTrustlossUse ofFirebaseBackendLack ofaccesscontrolsIncidentResponseExposureof privatemessagesinsiderthreatLegacyInfrastructureStorage ofsensitiveinformartionPublic cloudstoragemisconfigurationMetadataexposureLack ofAPILayerReputationalDamageUnsecureddatabaseIdentitytheftriskAPI keysin clientappSQLinjectionExposureof PIIUserNotificationNo AuthControlsemotionalharmNoauthenticationon storagebucketMinimumsecurityrulesDataRetentionRisksNoregularauditsTrustlossUse ofFirebaseBackendLack ofaccesscontrolsIncidentResponseExposureof privatemessagesinsiderthreatLegacyInfrastructureStorage ofsensitiveinformartionPublic cloudstoragemisconfigurationMetadataexposureLack ofAPILayerReputationalDamageUnsecureddatabaseIdentitytheftriskAPI keysin clientappSQLinjectionExposureof PIIUserNotificationNo AuthControlsemotionalharm

Technical Risk Bingo - Call List

(Print) Use this randomly generated list as your call list when playing the game. There is no need to say the BINGO column name. Place some kind of mark (like an X, a checkmark, a dot, tally mark, etc) on each cell as you announce it, to keep track. You can also cut out each item, place them in a bag and pull words from the bag.


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
  1. No authentication on storage bucket
  2. Minimum security rules
  3. Data Retention Risks
  4. No regular audits
  5. Trust loss
  6. Use of Firebase Backend
  7. Lack of access controls
  8. Incident Response
  9. Exposure of private messages
  10. insider threat
  11. Legacy Infrastructure
  12. Storage of sensitive informartion
  13. Public cloud storage misconfiguration
  14. Metadata exposure
  15. Lack of API Layer
  16. Reputational Damage
  17. Unsecured database
  18. Identity theft risk
  19. API keys in client app
  20. SQL injection
  21. Exposure of PII
  22. User Notification
  23. No Auth Controls
  24. emotional harm