This talk was presented at DEFCON 20 and Blackhat USA 2012. Ryan Reynolds and I talk about a hash corruption issue we discovered with tools like Metasploit, Creddump, Cain and Able and others that extract LM and NTLM hashes from Windows systems. We walk though the bug, how it's manifested and how we and others fixed (or are fixing) the problem.
Video of Actual Talk:
https://vimeo.com/67777429
Blog Post:
http://blog.spiderlabs.com/2012/08/stamping-out-hash-corruption.html