Today I saw a very good blogpost on the Ask the Directory Services Team blog. Check it out there:

Purging Old NT Security Protocols

This blogpost is about how to discover which computers and applications are using NTLM V1 and LM security, regardless of your operating system. Everyone knows that Kerberos is Microsoft’s preeminent security protocol and that NTLM is both inefficient and, in some iterations, not strong enough to avoid concerted attack. NTLM V2 using complex passwords stands up well to common hash cracking tools like Cain and Abel, Ophcrack, or John the Ripper. On the other hand, NTLM V1 is defeated far faster and LM is effectively no protection at all.