{
  "node_id": "mitre-d3fend-d3-cdp-change-default-password",
  "title": "MITRE D3FEND D3-CDP: Change Default Password (Defensive Tactic - Harden -> Change Default Password)",
  "domain": "Cybersecurity",
  "version": "1.0.0",
  "last_updated": "2026-05-25",
  "bluf": "MITRE D3FEND D3-CDP (Change Default Password) is a Harden defensive technique. Changing the default password means replacing the factory-set credentials with a strong, unique password before the device is deployed, preventing unauthorized access. Change the default password as soon as a new device is received. The default credentials are normally documented in an instruction manual that is either packaged with the device, published online through official means, or published online through unofficial means. In the D3FEND model it hardens the ot controller; strengthens the password; strengthens the user account. It counters ATT&CK techniques T1078, T1078.001, T1078.002, T1078.003, T1078.004, T1087.001, T1087.002, T1087.004, T1098, T1098.002, and 10 more. Via the Center for Threat-Informed Defense mapping of the countered techniques, it supports NIST SP 800-53 Rev 5 controls AC-02, AC-03, AC-04, AC-05, AC-06, AC-07, AC-16, AC-20.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "mitre_d3fend"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "mitre-attack-t1078-valid-accounts",
    "mitre-attack-t1078-001-default-accounts",
    "mitre-attack-t1078-002-domain-accounts",
    "nist-cybersecurity-framework-2-0",
    "nist-sp-800-53-r5",
    "iso-27001-2022"
  ],
  "primary_citations_count": 7
}