Lifestyle
Cloudflare says four hidden JavaScript campaigns hit online shops while scanners missed them and pages looked normal
On 16 September 2026, Cloudflare said its Page Shield machine learning model found four malicious campaigns, made up of eight pieces of harmful code, running on online shops' live traffic. Seven of the eight were not in the public scanning service VirusTotal. The code mainly targeted shops' affiliate commissions and data. Here is what Cloudflare says and why it matters.
About 6 min read

What happened
On 16 September 2026, Cloudflare published a post on its official blog, written by Juan Miguel Cejuela, Zhiyuan Zheng and Denzil Correa. JavaScript is the code that websites send to run inside a visitor's web browser. According to Cloudflare, Page Shield ML, a machine learning (ML) system in its client-side security product, which watches the code running in visitors' browsers, found four malicious campaigns in the wild. Together they involved eight malicious payloads, meaning eight pieces of harmful code. Cloudflare says detection was automated, and staff checked each case only after the system had flagged it.
VirusTotal and URLScan are widely used services for checking files and websites for malicious content. Cloudflare says that when it later rechecked with these security scanning tools, seven of the eight payloads were entirely absent from VirusTotal, and URLScan did not give a malicious verdict for any of them. Page Shield ML, by contrast, caught all eight in live traffic. As an example, the company said one version belonging to the Lnkr family had been indexed by URLScan for nearly two and a half years and always showed "No classification", including in a direct scan in January 2024. VirusTotal now flags it as malicious, but public records do not show when it first did so.
Read the full description
Sources are collected, independently checked, then reviewed by Jev.
The four malicious campaigns at a glance
Many online shops pay an affiliate commission, a referral fee, to partners who send them customers. Several of these campaigns targeted that system. Cloudflare says the four campaigns share no common signature (a known pattern that security tools look for) or concealment technique. One of them activates only when the visitor's device, country, time, referring website or browser state meets certain conditions, so checking a page just once may not reveal it. The table below gives a general summary of Cloudflare's description and leaves out technical details.
| Campaign | Impact as described by Cloudflare | Notes |
|---|---|---|
| 1: After-hours affiliate commission hijacking | Hijacks affiliate commissions | Cloudflare says it found five related versions: two active, three paused |
| 2: Zero-click affiliate commission theft | Steals affiliate commissions without the user clicking | Sends affiliate requests in a hidden way |
| 3: Old search hijacker turned storefront backdoor | Tracks users and opens a backdoor that can remotely run any JavaScript | Loads code from remote servers when certain conditions are met |
| 4: Paid mobile traffic cloaker | Hides mobile visitors who arrived via tagged ad campaigns from the shop, tries to replace ads and analytics, and hides customer support | Includes a list of 325 IP address fragments and disables 9 monitoring or analytics tools |
Taking campaign 1 as an example, Cloudflare says shops could end up paying unearned commissions to accounts that brought in no customers, and could wrongly give a legitimate partner's referral credit to someone else.
How Cloudflare detects them
- Graph neural network (GNN): Cloudflare says this model analyses JavaScript as a map of how the code's parts connect (a syntax tree), rather than as plain text. The same model previously found malicious npm packages (reusable code shared by developers) and a Magecart payment skimmer, a type of script that steals card details at checkout.
- Second opinion from an AI language model: scripts the GNN flags as malicious, under 0.3% of analysed traffic, are reviewed by a lightweight large language model (LLM) running on Cloudflare's Workers AI. Customers receive an alert only when it agrees.
- "Teachers" model group: leading AI models from about six model families each analyse suspicious scripts independently. Their votes are weighted by each model's Artificial Analysis Intelligence Index score, producing probabilities for four labels: benign, payment skimmer, other malware and cryptomining (secretly using a visitor's computer to generate cryptocurrency).
- Human review: people only need to check scripts flagged as malicious or lacking a two-thirds majority; feeding these results back into training still partly relies on manual work.
- Future plans: Cloudflare says it will soon use Cloudflare Sandbox for deeper analysis in an isolated environment.
What it means for general readers
For online shoppers, the kind of scripts Cloudflare describes mainly target the shop's own revenue and data, such as commission payments and analytics tools, while the page still looks normal. The backdoor described in campaign 3, however, allows other code to be loaded remotely, so the impact could widen. For people running online shops or websites, the key point of this research is that relying only on lists of known bad code or one-off scans may not catch scripts that activate only under specific conditions in time. That said, this is Cloudflare's view based on its own products, and readers should treat it as vendor research rather than a neutral evaluation.
Frequently asked questions
Who is affected?
According to Cloudflare, mainly online shops. The scripts can cost them money through unearned or misdirected affiliate commissions and can interfere with their analytics and ads. Their legitimate affiliate partners can also lose credit for referrals.
Did common scanning tools really miss them all?
According to Cloudflare's recheck, seven of the eight were not in VirusTotal, and URLScan did not give a malicious verdict for any of them. This is Cloudflare's own claim and has not been independently verified.
What do these scripts mainly do?
As Cloudflare describes it, they hijack or steal affiliate commissions, track users and open backdoors that load remote code, and hide some mobile visitors from shops while interfering with ads and analytics tools.
Why is a one-off scan not enough?
Cloudflare says one of the campaigns activates only when the device, country, time, referring website or browser state meets certain conditions, so a single check of a page may not reveal the malicious behaviour.
Does this article recommend buying Cloudflare products?
No. This article only relays research published by Cloudflare and does not constitute a recommendation to buy any product.
Browse the latest news in this topic
Lifestyle
Cloudflare launches Traces in public beta: site operators can follow every step a request takes through the platform on one timeline
On October 2, 2026, Cloudflare announced the public beta of Cloudflare Traces. Website operators and developers using Cloudflare can see a request pass through security rules, caching, routing and the origin server on a single timeline, making it easier to find why a request was blocked or slowed. New pricing takes effect on December 1, 2026. Information comes from the official Cloudflare blog.
Lifestyle
Cloudflare launches Web Search API via AI Gateway, requiring search partners to follow its crawler rules
On October 2, 2026, Cloudflare announced a Web Search API that lets AI agents query live web information through AI Gateway. The first partners are Ceramic.ai, Exa and Linkup. Cloudflare says these partners' crawlers must meet its Verified bots requirements and cite sources. This matters both to developers building AI applications and to website owners whose content may be crawled.
Lifestyle
Cloudflare open-sources Streamline: a demo of using its cloud services to add graphics to live streams and burn subtitles into videos
On October 2, 2026, Cloudflare launched and open-sourced Streamline, a developer playground showing how developers can combine Stream, Workers, Containers and Durable Objects to build their own video processing pipelines, such as adding graphics to live streams in real time or adding subtitles to videos. This article explains what it is, how it works, its limitations, and what it means for viewers and developers.
Lifestyle
Google unveils Gemini 4 Argon: cyber defenders get it first, everyone else still has to wait
On September 30, 2026, Google announced Gemini 4 Argon, which it calls its new frontier (most advanced) AI model. For now it is available only to trusted cyber defenders through the Fairwind Program. Here is what Google says the model can do, what it will cost developers, how Google says it is managing the risks, and what it means for everyday users. All figures come from Google itself.
Latest travel guides

GuideTokyo
Where to Stay in Tokyo: Comparing Shinjuku, Ueno, Tokyo Station, Shibuya, Asakusa, Ikebukuro, and Ginza, Plus Airport Access, Accommodation Tax, and Luggage Delivery
Where should you stay in Tokyo? Compare Shinjuku, Ueno, Tokyo Station, Shibuya, Asakusa, Ikebukuro, and Ginza by the same criteria: access from Narita and Haneda, transit routes, nearby attractions, neighborhood character, and who each area suits. Includes a comparison table, a Yamanote Line diagram, Tokyo’s accommodation tax as verified in 2026/9 (changing to 3% in 2027/4), and Airport TA-Q-BIN luggage shipping rules.
- Budget
- Hotels

GuideTokyo
How to Choose Tokyo Transit Passes: Are Suica, Welcome Suica, the Tokyo Subway Ticket, and the JR Pass Worth It?
On a first Tokyo trip, start with an IC card and pay per ride (Welcome Suica has no deposit and is valid for 28 days). If you take four or more subway rides in a day, add a 72-hour Tokyo Subway Ticket for 2,000 yen; a JR Pass is never worthwhile if you stay in Tokyo and do not go to Kansai. See what TOURIST PASMO, Suica on iPhone, and the Tokyo Metro day pass do and do not cover, with a decision chart. Prices verified in September 2026.
- Transport
- Budget

GuideTokyo
Tokyo Disneyland and DisneySea Guide: Ticket Prices, Fantasy Springs, Disney Premier Access (DPA), Standby Pass, and Which Park to Choose for Your First Visit
Tokyo Disney one-day Passport prices vary: most weekdays in 9/2026 cost ¥9,900 and weekends ¥10,900. At 14:00 daily, tickets go on sale for the same date two months later. Free Priority Pass is no longer on the official service list; only paid Disney Premier Access (¥1,000–3,500 per person per use) shortens waits. Covers hours, the 25th anniversary, Standby Pass, Entry Request, Fantasy Springs access and first-visit park choice; checked on the official site in 9/2026.
- Itineraries
- Family