IEEE J Biomed Health Inform. 2019 Jul;23(4):1546-1557. doi: 10.1109/JBHI.2018.2864796. Epub 2018 Aug 10.
Any proposal to provide security for implantable medical devices (IMDs), such as cardiac pacemakers and defibrillators, has to achieve a trade-off between security and accessibility for doctors to gain access to an IMD, especially in an emergency scenario. In this paper, we propose a finger-to-heart (F2H) IMD authentication scheme to address this trade-off between security and accessibility. This scheme utilizes a patient's fingerprint to perform authentication for gaining access to the IMD. Doctors can gain access to the IMD and perform emergency treatment by scanning the patient's finger tip instead of asking the patient for passwords/security tokens, thereby, achieving the necessary trade-off. In the scheme, an improved minutia-cylinder-code-based fingerprint authentication algorithm is proposed for the IMD by reducing the length of each feature vector and the number of query feature vectors. Experimental results show that the improved fingerprint authentication algorithm significantly reduces both the size of messages in transmission and computational overheads in the device, and thus, can be utilized to secure the IMD. Compared to existing electrocardiogram signal-based security schemes, the F2H scheme does not require the IMD to capture or process biometric traits in every access attempt since a fingerprint template is generated and stored in the IMD beforehand. As a result, the scarce resources in the IMD are conserved, making the scheme sustainable as well as energy efficient.
任何为植入式医疗设备 (IMD) 提供安全保障的建议,如心脏起搏器和除颤器,都必须在医生访问 IMD 的安全性和可访问性之间取得权衡,尤其是在紧急情况下。在本文中,我们提出了一种手指到心脏 (F2H) IMD 认证方案,以在安全性和可访问性之间取得这种权衡。该方案利用患者的指纹进行认证,以访问 IMD。医生可以通过扫描患者指尖来访问 IMD 并进行紧急治疗,而无需向患者询问密码/安全令牌,从而实现了必要的权衡。在该方案中,通过减少每个特征向量的长度和查询特征向量的数量,为 IMD 提出了一种改进的基于 minutia-cylinder-code 的指纹认证算法。实验结果表明,改进的指纹认证算法显著减少了传输中的消息大小和设备中的计算开销,因此可以用于保护 IMD。与现有的基于心电图信号的安全方案相比,由于事先在 IMD 中生成并存储了指纹模板,因此 F2H 方案不需要 IMD 在每次访问尝试中都捕获或处理生物特征。因此,节省了 IMD 中的稀缺资源,使该方案具有可持续性和节能性。