A version of this article was first published on HIPAA Vault’s
On January 29, 2018, the widely used website content management system (CMS), WordPress, was once again infected with malware. To date, approximately 2000+ websites running the open-source CMS have become victims of a cryptocurrency keylogger. Coinhive is a JavaScript Monero Blockchain miner service that mines digital cryptocurrency. Coinhive runs a snippet of JavaScript code in the background of the visitor’s browser while they visit a site that ran the Coinhive service. Coinhive was hacked and used to target WordPress sites. Recently, hackers started a new campaign of malicious Javascript miners that contain a keylogger, so whenever an individual visits an infected site they are susceptible to the cryptocurrency service and keylogger. The keylogger tracks the keystrokes of visitors and extracts any private information that may be found from a filled ecommerce checkout form or login form.