The only crack I've read about is simply using a leaked OEM key (and I'm guessing a BIOS loader) - nothing too complex in that. As this happened before RTM I see no reason that Microsoft couldn't simply revoke the key - after all, the vendor in question can't possibly have had machines ready to roll off shelves until the RTM build was signed off. Sure, it's a pain in the ass for Lenovo but it might teach them to safeguard that kind of data a little better.
Or is there another crack doing the rounds? I've not been searching too hard (in fact not searched at all, just saw the story on Hexus and Neowin) so I may well have missed something more canny.