Assessing the effectiveness of endpoint and network security products is imperative to identifying and addressing the threats it faces, especially as new solutions enter the market. Through this case study that explores the limitations of Sysmon, SpecterOps provides rationale and methodology for subverting security products.