Privileges. The never ending Application battle of Good vs. Evil

Hello All,
Brand new here but I have a question / topic that would be perfect for fellow developers.
I am fairly new to this industry but have noticed for much longer that I have taken an interest in IT that…
Privileges, and the associated problems or solutions surrounding them is massive.

 We spend so much time on privileges. Whether its a...

password manager that seems to be managing its users of those passwords quite well…
Chasing the de-escalation of privileges
malicious escalation of privileges.
With or without persistence
Explaining to people how important long, complex passwords reallly are, all while simultaneously (in your mind) cussing out that inflated password manager you chose years sgo that has somehow morphed into No-Mans land of long lost sha256 and evil triple instances of each resource / password combo?!?!?
wow.

Does it ever seem to get a little old?

You aren’t Alone.
That’s just the tip of the ice berg… Let’s not even talk about Group policy and CA Authorities that aren’t really Authoritive (in the direction we as Ethical devs. would appreciate)
IDE’s and Pub Keys, Pri Keys. PKFail and UEFI Credentials, VPN’s etc etc.
Will Microsoft ever recover? I don’t think any of us Truly know…

Forgotten and Lost Credentials!

I’m here to play the game of Let s flip the priviliges, to hopefully find a solution by exposing a problem. or vise versa.

**Maintenance mode in Samsung S6 Tab Lite.

   I have been stuck in it for about a year. Took the tablet to the pawn shop one day for a loan with some other electronics. Since I had just gotten this fancy, awesome password manager that I coincidently was not enthused to use that day... I wrote a NEW Super Secure PW / Pin onto the paperwork I was saving when I got home (Possibly digitally). 

You already know how the rest of the story goes!!! I shouldn’t even need to tell it haha.

Is there any way to bypass maintenance mode WITHOUT doing a reset? I am up to 1600 minutes between single attempts and I don’t even want to try anymore for fear of bricking it.

Seems to me that this is just a simple VM running on android. I have included pics and deails for anyone that wants specifics.

I also have a android phone running 11 and I was able to bypass a FRP lock on it by basically ethical hacking it into submission. No Computer at all. Just my trusty fingers! works great now.

I havent tried it but apparently ODIN and ADB can remove pin / swype, pass on phones W/O a reset just by hooking them up to the proper console and having physical access. This seems a little too easy but I am interested to see what (Off the Books" Solutions I might be able to find here.

I’d like to mention that The tablet in question is listed on my samsung account and i have other android devices. It seems to me that there should be a way to bypass the Pin protecting Maint mode since I can verify ownership etc etc. I can’t seem to find that solution anywhere.

I appreciate any ideas and solutions.

Thanks!