This case study details a security incident involving a Fortune 500 Healthcare Technology company that experienced a double-encoded attack, which exposed a critical vulnerability in their web application firewall (WAF). The company relied on a leading content delivery network (CDN) WAF with strict OWASP rules, believing it provided adequate protection against injection and traversal attacks. However, attackers exploited a blind spot by using double-encoding techniques to bypass the WAF's defenses, targeting the company's product catalog APIs. Salt Security identified the attack, which the WAF failed to detect due to its reliance on static signatures. The case study outlines how Salt Security's behavioral detection capabilities allowed for the identification of anomalous payload structures and grouped similar attack patterns, highlighting the need for a more dynamic approach to security. The findings emphasize that compliance-based security measures are insufficient against sophisticated attacks, particularly those executed by AI agents, necessitating the implementation of advanced security solutions.