Lee Chien-Ding, Ho Kevin I-J, Lee Wei-Bin
Department of Information Engineering and Computer Science, Feng Chia University, Taichung 40724, Taiwan.
IEEE Trans Inf Technol Biomed. 2011 Jul;15(4):550-6. doi: 10.1109/TITB.2011.2154363. Epub 2011 May 12.
Digitizing medical records facilitates the healthcare process. However, it can also cause serious security and privacy problems, which are the major concern in the Health Insurance Portability and Accountability Act (HIPAA). While various conventional encryption mechanisms can solve some aspects of these problems, they cannot address the illegal distribution of decrypted medical images, which violates the regulations defined in the HIPAA. To protect decrypted medical images from being illegally distributed by an authorized staff member, the model proposed in this paper provides a way to integrate several cryptographic mechanisms. In this model, the malicious staff member can be tracked by a watermarked clue. By combining several well-designed cryptographic mechanisms and developing a key management scheme to facilitate the interoperation among these mechanisms, the risk of illegal distribution can be reduced.
数字化医疗记录有助于医疗保健流程。然而,它也可能引发严重的安全和隐私问题,这是《健康保险流通与责任法案》(HIPAA)中的主要关注点。虽然各种传统加密机制可以解决这些问题的某些方面,但它们无法解决解密后的医学图像的非法传播问题,而这违反了HIPAA中规定的法规。为了保护解密后的医学图像不被授权工作人员非法传播,本文提出的模型提供了一种整合多种加密机制的方法。在该模型中,恶意工作人员可以通过水印线索被追踪。通过结合几种精心设计的加密机制并开发一种密钥管理方案以促进这些机制之间的互操作,可以降低非法传播的风险。