The world needs more people like this.
Although why MS couldn't have done it themselves, $deity_of_your_choice alone knows
Microsoft hacker Itai Grady has created a tool to help prevent blackhat scouts from stealing Windows credentials, an effort the firm hopes will make network compromises harder to achieve. The SAMRi10 PowerShell script (it's pronounced as samaritan) eliminates the easy username information hackers seek in initial reconnaissance …
>> Although why MS couldn't have done it themselves, $deity_of_your_choice alone knows
If you actually read the article, you will see that they already did:
"The Windows Anniversary update version changed the default security descriptor for the SAM access to limit the remote querying of SAM to local administrators only, even if the aforementioned registry key is not present. "