Preserving Privacy in Mobile Health Systems Using Non-Interactive Zero-Knowledge Proof and Blockchain

被引:31
|
作者
Tomaz, Antonio Emerson Barros [1 ]
Do Nascimento, Jose Claudio [2 ]
Hafid, Abdelhakim Senhaji [3 ]
De Souza, Jose Neuman [1 ]
机构
[1] Univ Fed Ceara, Comp Sci Dept, BR-60440900 Fortaleza, Ceara, Brazil
[2] Univ Fed Ceara, Elect Engn Dept, Campus Sobral, BR-62010560 Sobral, Brazil
[3] Univ Montreal, Network Res Lab, Montreal, PQ H3C 3J7, Canada
基金
加拿大自然科学与工程研究理事会;
关键词
Authentication; blockchain; resource-limited devices; Internet of Things; mobile health; privacy-preserving; AUTHENTICATION SCHEME; ACCESS-CONTROL; CHALLENGES; SECURITY; FRAMEWORK; FOG; TECHNOLOGIES; ARCHITECTURE; NETWORKS; INTERNET;
D O I
10.1109/ACCESS.2020.3036811
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The advent of miniaturized mobile devices with wireless communication capability and integrated with biosensors has revolutionized healthcare systems. The devices can be used by individuals as wearable accessories to collect health data regularly. This type of medical assistance supported by mobile devices to monitor patients and offer health services remotely is known as mobile health (mHealth). Although mHealth provides many benefits and has become popular, it can pose severe privacy risks. Many features in mHealth are managed through a smartphone. Thus, one of the most worrying issues involves communication between the monitoring devices and the smartphone. When communication uses Bluetooth, it is standard for a device to be paired with the smartphone; but generally, it is not exclusively associated with a specific mHealth app. This characteristic can allow a data theft attack by a malicious app or fake data injection by an illegitimate device. To address this issue, we present an authentication scheme based on Non-Interactive Zero-Knowledge Proof that is lightweight enough to run on mHealth devices with minimal resources. Our scheme ensures that legitimate devices interact exclusively with the official mHealth application. To ensure the patient's privacy-preserving throughout the system, we address the issues of storing, managing, and sharing data using blockchain. Since there is no privacy in the standard blockchain, we present a scheme in which the health data transmitted, stored, or shared are protected by Attribute-Based Encryption. The outcome is a system with fine-grained access control, entirely managed by the patient, and an end-to-end privacy guarantee.
引用
收藏
页码:204441 / 204458
页数:18
相关论文
共 50 条
  • [31] Non-interactive quantum perfect and statistical zero-knowledge
    Kobayashi, Hirotada (hirotada@qci.jst.go.jp), 1600, 21st Century COE Program: Information Research Center for Development of Knowledge Society Infrastructure; Casio Science Promotion Foundation; International Communications Foundation; Kansai Chapter of the Information Processing Society of Japan; Kansai Research Foundation for Technology Promotion; Telecommunications Advancement Foundation (Springer Verlag):
  • [32] Strong Batching for Non-interactive Statistical Zero-Knowledge
    Mu, Changrui
    Nassar, Shafik
    Rothblum, Ron D.
    Vasudevan, Prashant Nalini
    ADVANCES IN CRYPTOLOGY, PT VII, EUROCRYPT 2024, 2024, 14657 : 241 - 270
  • [33] Non-interactive Zero-Knowledge from LPN and MQ
    Dao, Quang
    Jain, Aayush
    Jin, Zhengzhong
    Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 2024, 14928 LNCS : 321 - 360
  • [34] Efficient Non-interactive Zero-Knowledge Proof for Graph 3-Coloring Problem
    Zhan, Haitao
    Bai, Dongyang
    Wang, Yuzhu
    Zhang, Mingwu
    FRONTIERS IN CYBER SECURITY, FCS 2023, 2024, 1992 : 370 - 386
  • [35] Non-interactive Zero-Knowledge Proofs to Multiple Verifiers
    Yang, Kang
    Wang, Xiao
    ADVANCES IN CRYPTOLOGY-ASIACRYPT 2022, PT III, 2022, 13793 : 517 - 546
  • [36] An unbounded simulation-sound non-interactive zero-knowledge proof system for NP
    Li, HD
    Li, B
    INFORMATION SECURITY AND CRYPTOLOGY, PROCEEDINGS, 2005, 3822 : 210 - 220
  • [37] Blockchain privacy protection algorithms based on zero-knowledge proof
    Li G.
    He D.
    Guo B.
    Lu S.
    Guo, Bing (guobing@scu.edu.cn), 1600, Huazhong University of Science and Technology (48): : 112 - 116
  • [38] Non-interactive quantum perfect and statistical zero-knowledge
    Kobayashi, H
    ALGORITHMS AND COMPUTATION, PROCEEDINGS, 2003, 2906 : 178 - 188
  • [39] Non-Interactive Zero-Knowledge Proofs for Composite Statements
    Agrawal, Shashank
    Ganesh, Chaya
    Mohassel, Payman
    ADVANCES IN CRYPTOLOGY - CRYPTO 2018, PT III, 2018, 10993 : 643 - 673
  • [40] Improving of Non-Interactive Zero-Knowledge Arguments Using Oblivious Transfer
    Frolov, Alexander
    NEW RESULTS IN DEPENDABILITY AND COMPUTER SYSTEMS, 2013, 224 : 153 - 171