Privacy Aspects of eHealth. Slamanig, D. & Stingl, C. In Proceedings of the International Conference on Availability, Reliability and Security (ARES), pages 1226-1233, 3, 2008. IEEE.
Privacy Aspects of eHealth [link]Website  abstract   bibtex   
A central aspect of eHealth is the electronic healthcare record (EHR) which integrates all relevant medical information of a person and represents a lifelong documentation of the medical history. By virtue of their sensitive character it is crucial that medical data can only be accessed by the patient herself and persons who are directly involved in the treatment of the patient. Since eHealth portals can be accessed via the Internet, security and privacy issues arise that have to be considered carefully. Besides traditional security properties, we mainly focus on additional threats, namely the trivial disclosure attack and the statistical analysis of metadata. Thereby a disclosure attack takes place if a person enforces another person to present her EHR, e.g. during a job interview. Additionally, by applying statistical analysis on the metadata of an eHealth portal, it is possible to determine relevant information (e.g. psychological treatment) which could have negative effects on the patient. In this paper we present a concept including pseudonymization of medical data, identity management, obfuscation of metadata and anonymous authentication to prevent disclosure attacks and statistical analysis.
@inProceedings{
 title = {Privacy Aspects of eHealth},
 type = {inProceedings},
 year = {2008},
 identifiers = {[object Object]},
 keywords = {anonymity,ehr,privacy},
 pages = {1226-1233},
 websites = {http://dx.doi.org/10.1109/ares.2008.115},
 month = {3},
 publisher = {IEEE},
 city = {Washington},
 id = {503d7338-22bb-3888-8a66-6e920dd36b02},
 created = {2018-07-12T21:31:42.803Z},
 file_attached = {false},
 profile_id = {f954d000-ce94-3da6-bd26-b983145a920f},
 group_id = {b0b145a3-980e-3ad7-a16f-c93918c606ed},
 last_modified = {2018-07-12T21:31:42.803Z},
 read = {false},
 starred = {false},
 authored = {false},
 confirmed = {true},
 hidden = {false},
 citation_key = {slamanig:privacy},
 source_type = {inproceedings},
 private_publication = {false},
 abstract = {A central aspect of eHealth is the electronic healthcare record (EHR) which integrates all relevant medical information of a person and represents a lifelong documentation of the medical history. By virtue of their sensitive character it is crucial that medical data can only be accessed by the patient herself and persons who are directly involved in the treatment of the patient. Since eHealth portals can be accessed via the Internet, security and privacy issues arise that have to be considered carefully. Besides traditional security properties, we mainly focus on additional threats, namely the trivial disclosure attack and the statistical analysis of metadata. Thereby a disclosure attack takes place if a person enforces another person to present her EHR, e.g. during a job interview. Additionally, by applying statistical analysis on the metadata of an eHealth portal, it is possible to determine relevant information (e.g. psychological treatment) which could have negative effects on the patient. In this paper we present a concept including pseudonymization of medical data, identity management, obfuscation of metadata and anonymous authentication to prevent disclosure attacks and statistical analysis.},
 bibtype = {inProceedings},
 author = {Slamanig, Daniel and Stingl, Christian},
 booktitle = {Proceedings of the International Conference on Availability, Reliability and Security (ARES)}
}

Downloads: 0