Beyond code-based exploits, users often turn to manual settings to bypass protection on uncertified devices: