Malicious JavaScript evaded VirusTotal in seven of eight storefront attacks
A study found malicious JavaScript campaigns on e-commerce storefronts evaded VirusTotal in 7 of 8 cases, exposing a weakness in signature scanning. Cloudflare's graph neural network caught all eight payloads in real time, while URLScan detected none.
- VirusTotal missed malicious JS in 7 of 8 storefront attacks
- Cloudflare graph neural network detected all 8 payloads in real time
- URLScan detected none of the eight attacks
- Four active campaigns: affiliate link hijacking, analytics sabotage and RCE
Read next
Security