Koppel Ross, Kuziemsky Craig
University of Pennsylvania, Philadelphia, PA, USA.
Telfer School of Management, University of Ottawa, Ottawa, ON, Canada.
Stud Health Technol Inform. 2019;257:218-222.
Healthcare data are attractive to cyber-criminals because they contain financial and personal data, can be used for blackmail, and most valuable, are ideal for fraudulent billing. They are also remarkably vulnerable to penetration because of the fluid and always-evolving nature of a patient's medical care and because of the number of clinicians, facilities and transactions required to connect patient care across multiple settings. The addition of mobile healthcare devices and connected healthcare delivery systems (e.g., wearables, monitoring devices, cell phone images) makes healthcare data more attractive but also more vulnerable. Wide variations of digital health use patterns complicates design security solutions for each context or clinician. In this paper we propose a set of connected healthcare patterns, and then discuss security challenges and potential solutions for each of the connected health patterns.
医疗保健数据对网络犯罪分子具有吸引力,因为它们包含财务和个人数据,可用于敲诈勒索,而且最有价值的是,它们是欺诈性计费的理想选择。由于患者医疗护理的流动性和不断变化的性质,以及跨多个环境连接患者护理所需的临床医生、设施和交易数量,医疗保健数据也极易受到渗透。移动医疗设备和联网医疗交付系统(如可穿戴设备、监测设备、手机图像)的增加,使医疗保健数据更具吸引力,但也更易受到攻击。数字健康使用模式的广泛差异使得为每个环境或临床医生设计安全解决方案变得复杂。在本文中,我们提出了一组联网医疗模式,然后讨论了每种联网健康模式的安全挑战和潜在解决方案。