Preserving Privacy in Mobile Health Systems Using Non-Interactive Zero-Knowledge Proof and Blockchain

被引:31
|
作者
Tomaz, Antonio Emerson Barros [1 ]
Do Nascimento, Jose Claudio [2 ]
Hafid, Abdelhakim Senhaji [3 ]
De Souza, Jose Neuman [1 ]
机构
[1] Univ Fed Ceara, Comp Sci Dept, BR-60440900 Fortaleza, Ceara, Brazil
[2] Univ Fed Ceara, Elect Engn Dept, Campus Sobral, BR-62010560 Sobral, Brazil
[3] Univ Montreal, Network Res Lab, Montreal, PQ H3C 3J7, Canada
基金
加拿大自然科学与工程研究理事会;
关键词
Authentication; blockchain; resource-limited devices; Internet of Things; mobile health; privacy-preserving; AUTHENTICATION SCHEME; ACCESS-CONTROL; CHALLENGES; SECURITY; FRAMEWORK; FOG; TECHNOLOGIES; ARCHITECTURE; NETWORKS; INTERNET;
D O I
10.1109/ACCESS.2020.3036811
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The advent of miniaturized mobile devices with wireless communication capability and integrated with biosensors has revolutionized healthcare systems. The devices can be used by individuals as wearable accessories to collect health data regularly. This type of medical assistance supported by mobile devices to monitor patients and offer health services remotely is known as mobile health (mHealth). Although mHealth provides many benefits and has become popular, it can pose severe privacy risks. Many features in mHealth are managed through a smartphone. Thus, one of the most worrying issues involves communication between the monitoring devices and the smartphone. When communication uses Bluetooth, it is standard for a device to be paired with the smartphone; but generally, it is not exclusively associated with a specific mHealth app. This characteristic can allow a data theft attack by a malicious app or fake data injection by an illegitimate device. To address this issue, we present an authentication scheme based on Non-Interactive Zero-Knowledge Proof that is lightweight enough to run on mHealth devices with minimal resources. Our scheme ensures that legitimate devices interact exclusively with the official mHealth application. To ensure the patient's privacy-preserving throughout the system, we address the issues of storing, managing, and sharing data using blockchain. Since there is no privacy in the standard blockchain, we present a scheme in which the health data transmitted, stored, or shared are protected by Attribute-Based Encryption. The outcome is a system with fine-grained access control, entirely managed by the patient, and an end-to-end privacy guarantee.
引用
收藏
页码:204441 / 204458
页数:18
相关论文
共 50 条
  • [41] BCTPV-NIZK: Publicly-Verifiable Non-interactive Zero-Knowledge Proof System from Minimal Blockchain Assumptions
    Mishra, Nimish
    Islam, S. K. Hafizul
    INFORMATION SYSTEMS SECURITY, ICISS 2023, 2023, 14424 : 380 - 395
  • [42] Non-interactive zero-knowledge proof scheme from RLWE-based key exchange
    Xie, Shaofen
    Yao, Wang
    Wu, Faguo
    Zheng, Zhiming
    PLOS ONE, 2021, 16 (08):
  • [43] Pairing-Based Non-interactive Zero-Knowledge Proofs
    Groth, Jens
    PAIRING-BASED CRYPTOGRAPHY-PAIRING 2010, 2010, 6487 : 206 - 206
  • [44] On Black-Box Extension of a Non-Interactive Zero-Knowledge Proof System for Secret Equality
    Yamashita, Kyosuke
    Tibouchi, Mehdi
    Abe, Masayuki
    PROGRESS IN CRYPTOLOGY - INDOCRYPT 2020, 2020, 12578 : 882 - 904
  • [45] Design of a Blockchain-Based Traceability System with a Privacy-Preserving Scheme of Zero-Knowledge Proof
    Xue, Yudai
    Wang, Jinsong
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [46] Privacy-Preserving Contact Tracing Protocol for Mobile Devices: A Zero-Knowledge Proof Approach
    Liu, Joseph K.
    Au, Man Ho
    Yuen, Tsz Hon
    Zuo, Cong
    Wang, Jiawei
    Sakzad, Amin
    Luo, Xiapu
    Li, Li
    Choo, Kim-Kwang Raymond
    INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2021, 2021, 13107 : 327 - 344
  • [47] Privacy-Preserving Energy Trading Using Blockchain and Zero Knowledge Proof
    Hou, Dongkun
    Zhang, Jie
    Huang, Sida
    Peng, Zitian
    Ma, Jieming
    Zhu, Xiaohui
    2022 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2022), 2022, : 412 - 418
  • [48] Group Signature Based on Non-interactive Zero-Knowledge Proofs
    Zhou Fucai
    Xu Jian
    Li Hui
    Wang Lanlan
    CHINA COMMUNICATIONS, 2011, 8 (02) : 34 - 41
  • [49] Succinct non-interactive zero-knowledge proofs with preprocessing for LOGSNP
    Kalai, Yael Tauman
    Raz, Ran
    47TH ANNUAL IEEE SYMPOSIUM ON FOUNDATIONS OF COMPUTER SCIENCE, PROCEEDINGS, 2006, : 355 - +
  • [50] A Survey on Zero-Knowledge Proof in Blockchain
    Sun, Xiaoqiang
    Yu, F. Richard
    Zhang, Peng
    Sun, Zhiwei
    Xie, Weixin
    Peng, Xiang
    IEEE NETWORK, 2021, 35 (04): : 198 - 205