On social media, I asked folks, “Why haven’t you disabled the SA account in your SQL Servers? Wrong answers only.” The results were pretty funny:
“I went a step further and also created an account called ‘as’. Now my boss keeps bragging to his golf buddies that we run our database fully SaaS.” – Hugo Kornelis
“How else can I provide job security for the cybersecurity team?” – Evgeny Alexandrovich
“Because it matches the password of sa.” – Jamie Ridenour
“Oh you can create another account in SQL Server? Mind blown.” – Justin Adrias
“Why would I disable the