Password Manipulation Commands
10 Password Manipulation commands from the Credential Attacks category, each with its placeholders, supported authentication methods and upstream references.
Tools covered: bloodyAD, impacket-Get-GPPPassword, impacket-changepasswd, net, nxc
- bloodyAD add uac Toggle UserAccountControl flags on a target account. Setting DONT_REQ_PREAUTH on a user you control (via…
- BloodyAD Force Password Change Force password change using BloodyAD
- bloodyAD Set Password Reset another user's password if you have ForceChangePassword (User-Force-Change-Password extended right) on…
- Impacket changepasswd Change an AD user's password via RPC (requires appropriate ACL rights)
- Impacket Get-GPPPassword Decrypt Group Policy Preference (GPP) passwords from XML files
- Net RPC Password Change Force password change via Net RPC
- NetExec change-password Module Reset a user's password when they are flagged STATUS_PASSWORD_MUST_CHANGE — typical after a freshly-spawned…
- NetExec SMB GPP AutoLogin Search Group Policy Preferences for AutoLogon credentials stored in SYSVOL
- NetExec SMB GPP Password Search SYSVOL for Group Policy Preference XML files containing encrypted passwords
- NetExec SMB Winlogon Credentials Extract AutoLogon credentials from the Winlogon registry key on remote hosts