Bitcoin-mining hackers hit government websites
Visiting public body domains could turn your computer into a cryptocurrency miner

Thousands of government websites have been hit by a cryptocurrency-mining hack, forcing them to run scripts that make visitors use their computer power to mine cryptocurrencies like Bitcoin, Litecoin, Ethereum and others.
These aren't insignificant sites either. In the UK, the Information Commissioner's Office and the Student Loan Company have both been affected, with the General Medical Council and NHS Inform also found running the script. In the US, the Indiana Government and the US courts system were also discovered to be running the crypto jacking script.
The mining script comes from Coinhive, a company that claims its product can help you "monetise your site visitors" by sucking their CPU power and using it to mine cryptocurrencies. It's the same type of script found to be running in YouTube adverts earlier this year, as well as the likes of video streaming sites and torrent website The Pirate Bay.
Coinhive's script was able to run across all of these sites thanks to a piece of software called BrowseAloud. Embedded in all of the affected sites, TextHelp's BrowseAloud software offers accessibility services to those with visual or literacy impairments who are browsing the web. Sometime on Sunday, a third-party made modifications to BrowseAloud by adding the Coinhive mining software.
Since news of the breach came to light TextHelp has withdrawn BrowseAloud while it resolves the problem.
The crypto-jacking script isn't particularly malicious. While it may utilise your computer's CPU power - and therefore slow your computer down - it won't capture sensitive information you may have entered on any of the government sites you've visited.
A spokesperson for the National Cyber Security Centre (NCSC) said: "NCSC technical experts are examining data involving incidents of malware being used to illegally mine cryptocurrency.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"The affected service has been taken offline, largely mitigating the issue. Government websites continue to operate securely. At this stage there is nothing to suggest that members of the public are at risk."
If you're worried about becoming a victim of crypto jacking, you can install a content blocker that'll scramble the script and flag the plugin. No Coin for Firefox, Chrome and Opera are your best bet. Interestingly, Opera comes with crypto jacking protections embedded into both its mobile and desktop iterations.
Vaughn Highfield is a seasoned freelance writer with more than 10 years experience in content strategy and technology journalism.
Vaughn is a self-described ‘wordsmith and UX wizard’, covering topics spanning cyber security, cryptocurrency, financial technology, and skills development.
From 2015 to 2018, he served as a senior staff writer at Alphr before assuming the role of associate editor. In his role as associate editor, Vaughn was responsible for a range of duties, including the publication’s long-term content strategy, events coverage, editorial commissions, and curation of the Alphr newsletter.
Prior to this, Vaughn held in-house roles at PCPro and Terrapinn Digital in addition to freelance marketing and content strategy activities with The Gamers Hub and Magdala Media.
-
What is polymorphic malware?
Explainer Polymorphic malware constantly changes its code to avoid detection, making it a top cybersecurity threat that demands advanced, behavior-based defenses
-
Outgoing Kaseya CEO teases "this is just the beginning" for the company
Opinion We spoke to Fred Voccola who remains a key figurehead at the firm as it enters its next chapter...
-
ASUS, Cisco, Netgear devices exploited in ongoing Chinese hacking campaign
News Critical national infrastructure is the target of sustained attempts from state-sponsored hackers, according to Five Eyes advisories
-
Off-the-shelf ransomware is spurring a new era in the Ukraine war
News Experts agreed Russian forces could be overwhelmed, forced to use less sophisticated tools to meet the regime's demands
-
NCSC: “New class” of Russian cyber attackers seek to destroy critical infrastructure
News The cyber threat has been raised due to the heightened risk of ideologically driven cyber attacks from Russia-aligned adversaries
-
NCSC warns UK under state-sponsored spear-phishing attacks from Russia and Iran
News The acceleration in spear-phishing campaigns last year coincided with the escalating conflict in Ukraine, according to the NCSC
-
NCSC founder details 'biggest regret' in underestimating organised cyber crime
News In a rare public address, Martin also detailed his proudest achievement and how the idea for the NCSC came to be
-
Second Singtel subsidiary breach in a month sees customer and client data leaked
News The incident at Singtel subsidiary Dialog follows the earlier breach at Singtel-owned Optus, Australia's second-largest telco
-
UK, US condemn Iran for ‘unprecedented’ cyber attack against Albania
News The Balkan nation has cut ties with Iran following the hack, which took down national infrastructure and exposed government information
-
Cyber attack on software supplier causes "major outage" across the NHS
News Unconfirmed reports suggest the attack may be ransomware-related, while the NHS contends with disrupted services on the 111 non-emergency line