Spanakis Emmanouil G, Bonomi Silvia, Sfakianakis Stelios, Santucci Giuseppe, Lenti Simone, Sorella Mara, Tanasache Florin D, Palleschi Alessia, Ciccotelli Claudio, Sakkalis Vangelis, Magalini Sabina
Annu Int Conf IEEE Eng Med Biol Soc. 2020 Jul;2020:5705-5708. doi: 10.1109/EMBC44109.2020.9176698.
Due to the advent of novel technologies and digital opportunities allowing to simplify user lives, healthcare is increasingly evolving towards digitalization. This represent a great opportunity on one side but it also exposes healthcare organizations to multiple threats (both digital and not) that may lead an attacker to compromise the security of medial processes and potentially patients' safety. Today technical cybersecurity countermeasures are used to protect the confidentiality, integrity and availability of data and information systems - especially in the healthcare domain. This paper will report on the current state of the art about cyber security in the Healthcare domain with particular emphasis on current threats and methodologies to analyze and manage them. In addition, it will introduce a multi-layer attack model providing a new perspective for attack and threat identification and analysis.
由于新技术的出现和数字机遇使得用户生活得以简化,医疗保健正日益朝着数字化方向发展。这一方面代表着巨大的机遇,但也使医疗保健组织面临多种威胁(包括数字威胁和非数字威胁),这些威胁可能导致攻击者破坏医疗流程的安全性,并可能危及患者安全。如今,技术层面的网络安全对策被用于保护数据和信息系统的保密性、完整性和可用性——尤其是在医疗保健领域。本文将报告医疗保健领域网络安全的当前技术水平,特别强调当前的威胁以及分析和管理这些威胁的方法。此外,还将引入一种多层攻击模型,为攻击和威胁的识别与分析提供新的视角。