Understanding and Mitigating Security Risks of Network on Medical Cyber Physical System

被引:0
|
作者
Li, Zhangtan [1 ,2 ]
Cheng, Liang [2 ]
Zhang, Yang [2 ]
Feng, Dengguo [2 ]
机构
[1] Univ Chinese Acad Sci, Beijing, Peoples R China
[2] Chinese Acad Sci, Inst Software, TCA Lab, Beijing, Peoples R China
基金
国家重点研发计划;
关键词
Medical Cyber Physical System; Publish-subscribe; Network security; Access control;
D O I
10.1007/978-3-030-86130-8_10
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Medical Cyber-Physical System (MCPS) holds the promise of reducing human errors and optimizing healthcare by integrating medical devices, applications and network. MCPS utilizes high-level supervisory and low-level communication middleware to enable medical devices to interoperate efficiently. Despite the benefits provided by MCPS, the integration of clinical information also brings new threats for the clinical data. In this paper, we performed a study on security and safety risks in MCPS's networks. We systematically analyzed different attack surfaces on MCPS's networks based on misuse and abuse of clinical data. We successfully performed end-to-end attacks based on OpenICE, a popular MCPS prototype, and demonstrated the clinical risks of these attacks and the design flaws in OpenICE. We further proposed a Topic-based access control model with Break-The-Glass feature to provide fine-grained access control for clinical data. We implemented the model in two MCPS prototypes, and evaluated its effectiveness and efficiency.
引用
收藏
页码:123 / 134
页数:12
相关论文
共 50 条
  • [1] Medical Cyber Physical System Security-Mitigating Attacks Using Trust Model
    Priya, J. Sathya
    Rajagopalan, S. P.
    Ramakrishnan, M.
    JOURNAL OF MEDICAL IMAGING AND HEALTH INFORMATICS, 2016, 6 (07) : 1572 - 1575
  • [2] Mitigating Cyber-Security Risks using MILS
    Liguori, Angelo
    Benedetto, Francesco
    Liguori, Marco
    2017 40TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS AND SIGNAL PROCESSING (TSP), 2017, : 1 - 7
  • [3] Mitigating Cyber Risks in Smart Cyber-Physical Power Systems Through Deep Learning and Hybrid Security Models
    Dayarathne, M. A. S. P.
    Jayathilaka, M. S. M.
    Bandara, R. M. V. A.
    Logeeshan, V.
    Kumarawadu, S.
    Wanigasekara, Chathura
    IEEE ACCESS, 2025, 13 : 37474 - 37492
  • [4] Procurement's vital role in mitigating cyber security risks
    Snover C.
    Computer Fraud and Security, 2023, 2023 (12):
  • [5] Understanding the Cyber-Physical System in International Stadiums for Security in the Network from Cyber-Attacks and Adversaries using AI
    Bingjun Wan
    Chengwei Xu
    Rajendra Prasad Mahapatra
    P. Selvaraj
    Wireless Personal Communications, 2022, 127 : 1207 - 1224
  • [6] Security of Cyber Physical System
    Zheng, Yaowen
    Li, Hong
    Shi, Zhiqiang
    Sun, Limin
    ADVANCES IN WIRELESS SENSOR NETWORKS, 2015, 501 : 558 - 567
  • [7] Understanding the Cyber-Physical System in International Stadiums for Security in the Network from Cyber-Attacks and Adversaries using AI
    Wan, Bingjun
    Xu, Chengwei
    Mahapatra, Rajendra Prasad
    Selvaraj, P.
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 127 (02) : 1207 - 1224
  • [8] Mitigating Hardware Cyber-Security Risks in Error Correcting Decoders
    Hemati, Saied
    2016 9TH INTERNATIONAL SYMPOSIUM ON TURBO CODES AND ITERATIVE INFORMATION PROCESSING (ISTC), 2016, : 181 - 185
  • [9] Optimal Network Topologies for Mitigating Security and Epidemic Risks
    Hota, Ashish R.
    Sundaram, Shreyas
    2016 54TH ANNUAL ALLERTON CONFERENCE ON COMMUNICATION, CONTROL, AND COMPUTING (ALLERTON), 2016, : 1129 - 1136
  • [10] Information security risks management framework - A step towards mitigating security risks in university network
    Joshi, Chanchala
    Singh, Umesh Kumar
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2017, 35 : 128 - 137