Chinese gang shoots down aerospace security with MSFT flaws

"You can dump plaintext passwords from the Windows Authentication Digest"

Yes - because that has to use reversible encryption - as it stores passwords that need to be replayed in original form to websites, WiFi systems, etc. and hashes wouldn't work This is not where Windows user account passwords are stored.

