

<feed xmlns="http://www.w3.org/2005/Atom">
  <id>https://jakestech.info/</id>
  <title>JakesTech.info</title>
  <subtitle>Practical IT guides, hands-on projects, and technical resources for learning, troubleshooting, and improving technology skills.</subtitle>
  <updated>2026-08-02T10:16:01-05:00</updated>
  <author>
    <name>Jacob</name>
    <uri>https://jakestech.info/</uri>
  </author>
  <link rel="self" type="application/atom+xml" href="https://jakestech.info/feed.xml"/>
  <link rel="alternate" type="text/html" hreflang="en"
    href="https://jakestech.info/"/>
  <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator>
  <rights> © 2026 Jacob </rights>
  <icon>/assets/img/favicons/favicon.ico</icon>
  <logo>/assets/img/favicons/favicon-96x96.png</logo>


  
  <entry>
    <title>Wazuh - VirusTotal Active Response Integration (Windows)</title>
    <link href="https://jakestech.info/posts/wazuh-virustotal_activeresponse/" rel="alternate" type="text/html" title="Wazuh - VirusTotal Active Response Integration (Windows)" />
    <published>2026-07-29T12:00:00-05:00</published>
  
    <updated>2026-07-29T12:00:00-05:00</updated>
  
    <id>https://jakestech.info/posts/wazuh-virustotal_activeresponse/</id>
    <content type="text/html" src="https://jakestech.info/posts/wazuh-virustotal_activeresponse/" />
    <author>
      <name>Jacob</name>
    </author>

  
    
    <category term="SIEM (Wazuh)" />
    
    <category term="Active Response" />
    
  

  <summary>Objective Configure Wazuh Active Response to automatically remediate malicious files detected by the VirusTotal integration on Windows endpoints. Building on our previous VirusTotal integration guide, this tutorial covers mapping custom command definitions, binding active-response triggers to VirusTotal alert rule IDs, and verifying automated quarantine/removal on target agents.    Skills Learn...</summary>

  </entry>

  
  <entry>
    <title>Wazuh - VirusTotal Integration (Windows)</title>
    <link href="https://jakestech.info/posts/wazuh_virustotal_integration/" rel="alternate" type="text/html" title="Wazuh - VirusTotal Integration (Windows)" />
    <published>2026-07-27T12:00:00-05:00</published>
  
    <updated>2026-07-27T12:00:00-05:00</updated>
  
    <id>https://jakestech.info/posts/wazuh_virustotal_integration/</id>
    <content type="text/html" src="https://jakestech.info/posts/wazuh_virustotal_integration/" />
    <author>
      <name>Jacob</name>
    </author>

  
    
    <category term="SIEM (Wazuh)" />
    
    <category term="VirusTotal" />
    
  

  <summary>Configure Wazuh to integrate with the VirusTotal API for automated file reputation checks and real-time threat intelligence.</summary>

  </entry>

  
  <entry>
    <title>Snaffler</title>
    <link href="https://jakestech.info/posts/snaffler/" rel="alternate" type="text/html" title="Snaffler" />
    <published>2026-05-17T22:00:00-05:00</published>
  
    <updated>2026-05-17T22:00:00-05:00</updated>
  
    <id>https://jakestech.info/posts/snaffler/</id>
    <content type="text/html" src="https://jakestech.info/posts/snaffler/" />
    <author>
      <name>Jacob</name>
    </author>

  
    
    <category term="Open Source Tools" />
    
    <category term="Snaffler" />
    
  

  <summary>A reconnaissance tool that uses rule-based analysis to locate high-value files, credentials, and privilege escalation opportunities within Active Directory environments.</summary>

  </entry>

  
  <entry>
    <title>KQL - LolDrivers</title>
    <link href="https://jakestech.info/posts/LolDrivers/" rel="alternate" type="text/html" title="KQL - LolDrivers" />
    <published>2026-03-29T16:30:00-05:00</published>
  
    <updated>2026-03-29T16:30:00-05:00</updated>
  
    <id>https://jakestech.info/posts/LolDrivers/</id>
    <content type="text/html" src="https://jakestech.info/posts/LolDrivers/" />
    <author>
      <name>Jacob</name>
    </author>

  
    
    <category term="KQL" />
    
    <category term="LolDrivers" />
    
  

  <summary>Create a detection rule using LOLDrivers intelligence to identify potentially abused signed drivers associated with privilege escalation and kernel-level attacks.</summary>

  </entry>

  
  <entry>
    <title>How to rotate the KRBTGT user account with PowerShell</title>
    <link href="https://jakestech.info/posts/active_directory_krbtgt_rotation/" rel="alternate" type="text/html" title="How to rotate the KRBTGT user account with PowerShell" />
    <published>2026-03-25T06:30:00-05:00</published>
  
    <updated>2026-03-25T06:30:00-05:00</updated>
  
    <id>https://jakestech.info/posts/active_directory_krbtgt_rotation/</id>
    <content type="text/html" src="https://jakestech.info/posts/active_directory_krbtgt_rotation/" />
    <author>
      <name>Jacob</name>
    </author>

  
    
    <category term="Active Directory" />
    
    <category term="PowerShell" />
    
  

  <summary>Learn how to safely rotate the KRBTGT account password twice to invalidate existing Kerberos tickets and help protect Active Directory from Golden Ticket attacks.</summary>

  </entry>

</feed>


