NetExec change-password Module

Reset a user's password when they are flagged STATUS_PASSWORD_MUST_CHANGE — typical after a freshly-spawned account or post-coercion. Works without needing existing valid auth, since the must-change pre-auth is its own state. Added in NetExec v1.5.0.

Tool
nxc
Category
Credential Attacks / Password Manipulation
Platform
linux
Requires
password
Protocols
SMB

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

nxc smb <target> -u '<user>' -p '<old-password>' -M change-password -o NEWPASS='<new-password>'

Examples

nxc smb dc.corp.local -u newuser -p 'TempPass1!' -M change-password -o NEWPASS='AttackerPass1!'

Tags

netexec nxc change-password must-change password-reset

References