• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

医疗保健数据泄露:对数字取证准备的影响。

Healthcare Data Breaches: Implications for Digital Forensic Readiness.

机构信息

Edith Cowan University, Perth, Australia.

University of Kentucky, Lexington, KY, 40506-0224, USA.

出版信息

J Med Syst. 2018 Nov 28;43(1):7. doi: 10.1007/s10916-018-1123-2.

DOI:10.1007/s10916-018-1123-2
PMID:30488291
Abstract

While the healthcare industry is undergoing disruptive digital transformation, data breaches involving health information are not usually the result of integration of new technologies. Based on published industry reports, fundamental security safeguards are still considered to be lacking with many documented data breaches occurring as the result of device and equipment theft, human error, hacking, ransomware attacks and misuse. Health information is considered to be one of the most attractive targets for cybercriminals due to its inherent sensitivity, but digital investigations of incidents involving health information are often constrained by the lack of the necessary infrastructure forensic readiness. Following the analysis of healthcare data breach causes and threats, we describe the associated digital forensic readiness challenges in the context of the most significant incident causes. With specific focus on privilege misuse, we present a conceptual architecture for forensic audit logging to assist with capture of the relevant digital artefacts in support of possible future digital investigations.

摘要

虽然医疗保健行业正在经历颠覆性的数字化转型,但涉及健康信息的数据泄露通常不是新技术整合的结果。根据已发布的行业报告,许多有记录的数据泄露仍然被认为是缺乏基本安全保障造成的,这些数据泄露的原因包括设备和器械被盗、人为错误、黑客攻击、勒索软件攻击和滥用等。由于健康信息固有的敏感性,它被认为是网络犯罪分子最具吸引力的目标之一,但由于缺乏必要的基础设施取证准备,对涉及健康信息的事件的数字调查往往受到限制。在分析了医疗保健数据泄露的原因和威胁之后,我们在最重要的事件原因的背景下描述了相关的数字取证准备挑战。我们特别关注特权滥用,提出了一种取证审计日志记录的概念架构,以帮助捕获相关的数字证据,为可能的未来数字调查提供支持。

相似文献

1
Healthcare Data Breaches: Implications for Digital Forensic Readiness.医疗保健数据泄露:对数字取证准备的影响。
J Med Syst. 2018 Nov 28;43(1):7. doi: 10.1007/s10916-018-1123-2.
2
Security Attacks and Solutions in Electronic Health (E-health) Systems.电子健康(E-health)系统中的安全攻击与解决方案
J Med Syst. 2016 Dec;40(12):263. doi: 10.1007/s10916-016-0597-z. Epub 2016 Oct 11.
3
What caused the breach? An examination of use of information technology and health data breaches.是什么导致了违规行为?对信息技术使用和健康数据泄露的调查。
Perspect Health Inf Manag. 2014 Oct 1;11(Fall):1h. eCollection 2014.
4
Cyberthreats: A primer for healthcare professionals.网络威胁:医疗专业人员入门指南。
Am J Emerg Med. 2023 Jun;68:179-185. doi: 10.1016/j.ajem.2023.04.001. Epub 2023 Apr 5.
5
Cyber threats to health information systems: A systematic review.对健康信息系统的网络威胁:一项系统综述。
Technol Health Care. 2016;24(1):1-9. doi: 10.3233/THC-151102.
6
e-Consent design and implementation issues for health information managers.电子知情同意书在健康信息管理者中的设计和实施问题。
Health Inf Manag. 2004;33(3):84-8. doi: 10.1177/183335830403300304.
7
How can hospitals better protect the privacy of electronic medical records? Perspectives from staff members of health information management departments.医院如何更好地保护电子病历的隐私?卫生信息管理部门工作人员的观点。
Health Inf Manag. 2017 May;46(2):87-95. doi: 10.1177/1833358316671264. Epub 2016 Oct 4.
8
Transforming Healthcare Cybersecurity from Reactive to Proactive: Current Status and Future Recommendations.从被动到主动:医疗保健网络安全的转变现状与未来建议。
J Med Syst. 2020 Apr 2;44(5):98. doi: 10.1007/s10916-019-1507-y.
9
Trends and characteristics of protected health information breaches in the United States.美国受保护健康信息泄露的趋势与特征
AMIA Annu Symp Proc. 2020 Mar 4;2019:1081-1090. eCollection 2019.
10
When finding nothing may be evidence of something: Anti-forensics and digital tool marks.当一无所获可能成为某种证据时:反取证与数字工具痕迹
Sci Justice. 2019 Sep;59(5):565-572. doi: 10.1016/j.scijus.2019.06.004. Epub 2019 Jun 3.

引用本文的文献

1
False-positive tolerant model misconduct mitigation in distributed federated learning on electronic health record data across clinical institutions.跨临床机构的电子健康记录数据分布式联邦学习中假阳性容忍模型不当行为缓解
Sci Rep. 2025 Jul 2;15(1):23310. doi: 10.1038/s41598-025-04069-2.
2
Digital health data security practices among health professionals in low-resource settings: cross-sectional study in Amhara Region, Ethiopia.资源匮乏地区卫生专业人员的数字健康数据安全实践:埃塞俄比亚阿姆哈拉地区的横断面研究
BMC Med Inform Decis Mak. 2025 Feb 5;25(1):60. doi: 10.1186/s12911-025-02902-2.
3
Hardware-Efficient Configurable Ring-Oscillator-Based Physical Unclonable Function/True Random Number Generator Module for Secure Key Management.

本文引用的文献

1
2017 Roadmap for Innovation-ACC Health Policy Statement on Healthcare Transformation in the Era of Digital Health, Big Data, and Precision Health: A Report of the American College of Cardiology Task Force on Health Policy Statements and Systems of Care.《2017年创新路线图——美国心脏病学会关于数字健康、大数据和精准健康时代医疗保健转型的健康政策声明:美国心脏病学会健康政策声明与医疗保健系统特别工作组报告》
J Am Coll Cardiol. 2017 Nov 28;70(21):2696-2718. doi: 10.1016/j.jacc.2017.10.018.
2
Automatic detection of protected health information from clinic narratives.从临床记录中自动检测受保护的健康信息。
J Biomed Inform. 2015 Dec;58 Suppl(Suppl):S30-S38. doi: 10.1016/j.jbi.2015.06.015. Epub 2015 Jul 29.
用于安全密钥管理的基于硬件高效可配置环形振荡器的物理不可克隆功能/真随机数生成器模块
Sensors (Basel). 2024 Aug 31;24(17):5674. doi: 10.3390/s24175674.
4
Internet of Medical Things and Healthcare 4.0: Trends, Requirements, Challenges, and Research Directions.医疗物联网和医疗保健 4.0:趋势、需求、挑战和研究方向。
Sensors (Basel). 2023 Aug 25;23(17):7435. doi: 10.3390/s23177435.
5
On-Line Evaluation and Monitoring of Security Features of an RO-Based PUF/TRNG for IoT Devices.基于 RO 的 PUF/TRNG 在物联网设备中的安全特性的在线评估和监测。
Sensors (Basel). 2023 Apr 18;23(8):4070. doi: 10.3390/s23084070.
6
Health Datasets as Assets: Blockchain-Based Valuation and Transaction Methods.作为资产的健康数据集:基于区块链的估值与交易方法
Blockchain Healthc Today. 2022 Mar 22;5. doi: 10.30953/bhty.v5.185. eCollection 2022.
7
Healthcare Breaches During COVID-19: The Effect of the Healthcare Entity Type on the Number of Impacted Individuals.新冠疫情期间的医疗保健漏洞:医疗保健实体类型对受影响人数的影响。
Perspect Health Inf Manag. 2022 Oct 1;19(4):1c. eCollection 2022 Fall.
8
Perceived Efficiency Outcomes, Sources and Awareness of Online Health Information among the Elderly during COVID-19.老年人在 COVID-19 期间对在线健康信息的感知效率结果、来源和认知。
Int J Environ Res Public Health. 2021 Jul 31;18(15):8121. doi: 10.3390/ijerph18158121.
9
Readiness for Health Information Technology is Associated to Information Security in Healthcare Institutions.医疗机构对健康信息技术的准备情况与信息安全相关。
Acta Inform Med. 2020 Dec;28(4):265-271. doi: 10.5455/aim.2020.28.265-271.
10
Data Handling for E-Mental Health Professionals.电子心理健康专业人员的数据处理
Indian J Psychol Med. 2020 Oct 8;42(5 Suppl):85S-91S. doi: 10.1177/0253717620956732. eCollection 2020 Oct.