Matches in SemOpenAlex for { <https://semopenalex.org/work/W94085437> ?p ?o ?g. }
Showing items 1 to 60 of
60
with 100 items per page.
- W94085437 abstract "Implantable medical devices and home monitors make use of wireless radio communication for both therapeutic functions and remote monitoring of patients’ vital signs. While our past work showed that lack of cryptographic protection results in disclosure of private medical data and manipulation of therapies [1], our present work shows that even using encryption is insufficient to protect the confidentiality of patient telemetry. Our experiment analyzes the security of data traffic patterns of two sets of real medical telemetry: a corpus from PhysioNet (an online biomedical research database) and a network trace of a live disaster drill using Harvard’s CodeBlue medical sensor network [2]. Our work shows that even if a wireless medical device uses encryption, patient data can leak to unauthorized parties who need not be near the patient. Our measurements show that data packet timing information and headers distinguish the types of medical and monitoring devices even if traditional cryptographic mechanisms are used. Furthermore, the highly repetitive nature of medical data, such as ECG or respiration signals, leads to additional privacy vulnerabilities that cannot be easily mitigated by means of encryption without significant modification. Data compression technology further exposes encrypted telemetry to cryptanalysis. The information leakage of telemetry could facilitate unauthorized tracking of a patient because an ECG is known to uniquely identify a person in a predetermined group [3]. Moreover, our study shows that data packet padding, encryption, authentication, and other common defenses against security threats require significant energy, storage, and computation that impose on the already scarce battery and space resources. Two of our experiments show how to automatically recover data from encrypted telemetry using Bayesian classifiers. In one experiment, we encrypted an ECG signal. By observing only the length of the digitally encrypted data, we were able to reconstruct sufficient information about the original ECG data that we determined the patient’s heart rate. Using similar techniques, we recovered a leaked respiration signal that visually matches the original signal. Our findings show the weakness of using common cryptographic techniques on highly periodic and often compressed medical telemetry. Our work further discusses techniques to mitigate these security and privacy risks in wireless medical telemetry systems. However, all known techniques require extra energy, computation, and bandwidth from the medical device. The lesson learned is that encryption is not enough to protect the privacy of medical telemetry, and that reasonable assurance for security and privacy will require an energy budget. Future design of medical devices will have to make difficult tradeoffs between battery life versus security and privacy. This work was supported by NSF grants CNS-0627529, CNS-0716386, and CNS-0831244. [1] Halperin, D., Heydt-Benjamin, T. S., Ransford, B., Clark, S. S., Defend, B., Morgan, W., Fu, K., Kohno, T., and Maisel, W. H., 2008, “Pacemakers and Implantable Cardiac Defibrillators: Software Radio Attacks and Zero-Power Defenses,” Proc. 29 th IEEE Symposium on Security and Privacy, IEEE," @default.
- W94085437 created "2016-06-24" @default.
- W94085437 creator A5009988860 @default.
- W94085437 creator A5038211634 @default.
- W94085437 date "2009-01-01" @default.
- W94085437 modified "2023-09-27" @default.
- W94085437 title "Privacy of Home Telemedicine: Encryption is Not Enough" @default.
- W94085437 cites W1576488973 @default.
- W94085437 cites W2143472559 @default.
- W94085437 cites W2170941890 @default.
- W94085437 hasPublicationYear "2009" @default.
- W94085437 type Work @default.
- W94085437 sameAs 94085437 @default.
- W94085437 citedByCount "5" @default.
- W94085437 countsByYear W940854372013 @default.
- W94085437 countsByYear W940854372015 @default.
- W94085437 crossrefType "journal-article" @default.
- W94085437 hasAuthorship W94085437A5009988860 @default.
- W94085437 hasAuthorship W94085437A5038211634 @default.
- W94085437 hasConcept C148730421 @default.
- W94085437 hasConcept C158379750 @default.
- W94085437 hasConcept C178489894 @default.
- W94085437 hasConcept C31258907 @default.
- W94085437 hasConcept C38652104 @default.
- W94085437 hasConcept C41008148 @default.
- W94085437 hasConcept C71745522 @default.
- W94085437 hasConceptScore W94085437C148730421 @default.
- W94085437 hasConceptScore W94085437C158379750 @default.
- W94085437 hasConceptScore W94085437C178489894 @default.
- W94085437 hasConceptScore W94085437C31258907 @default.
- W94085437 hasConceptScore W94085437C38652104 @default.
- W94085437 hasConceptScore W94085437C41008148 @default.
- W94085437 hasConceptScore W94085437C71745522 @default.
- W94085437 hasLocation W940854371 @default.
- W94085437 hasOpenAccess W94085437 @default.
- W94085437 hasPrimaryLocation W940854371 @default.
- W94085437 hasRelatedWork W1462352 @default.
- W94085437 hasRelatedWork W1973197195 @default.
- W94085437 hasRelatedWork W1977759267 @default.
- W94085437 hasRelatedWork W2006438529 @default.
- W94085437 hasRelatedWork W2038608119 @default.
- W94085437 hasRelatedWork W2042980854 @default.
- W94085437 hasRelatedWork W2121839028 @default.
- W94085437 hasRelatedWork W2168658694 @default.
- W94085437 hasRelatedWork W2562350058 @default.
- W94085437 hasRelatedWork W2626206840 @default.
- W94085437 hasRelatedWork W2656881249 @default.
- W94085437 hasRelatedWork W2756963370 @default.
- W94085437 hasRelatedWork W2889182335 @default.
- W94085437 hasRelatedWork W2962922098 @default.
- W94085437 hasRelatedWork W2992534069 @default.
- W94085437 hasRelatedWork W2993602103 @default.
- W94085437 hasRelatedWork W3048858217 @default.
- W94085437 hasRelatedWork W3148943480 @default.
- W94085437 hasRelatedWork W2557498768 @default.
- W94085437 hasRelatedWork W2618256618 @default.
- W94085437 isParatext "false" @default.
- W94085437 isRetracted "false" @default.
- W94085437 magId "94085437" @default.
- W94085437 workType "article" @default.