Skip to main content
Erschienen in: Health Services and Outcomes Research Methodology 3/2022

21.01.2022

Ephemeral pseudonym based de-identification system to reduce impact of inference attacks in healthcare information system

verfasst von: Bipin Kumar Rai

Erschienen in: Health Services and Outcomes Research Methodology | Ausgabe 3/2022

Einloggen, um Zugang zu erhalten

Abstract

As healthcare data is extremely sensitive, it poses a risk of invading individuals' privacy if stored or exported without proper security measures. De-identification entails pseudonymization or anonymization of data, which are methods for temporarily or permanently removing an individual's identity. These methods are most suitable to keep user healthcare data private. Inference attacks are a commonly overlooked weakness of de-identification techniques. In this paper, I discuss a method for de-identifying Electronic Healthcare Records (EHR) using chained hashing to generate short-lived pseudonyms to reduce the impact of inference attacks, as well as a mechanism for re-identification based on information self-determination. It also removes the weaknesses of existing de-identification algorithms and resolve them by using appropriate real-time de-identification algorithm, Ephemeral Pseudonym Generation Algorithm (EPGA).
Anhänge
Nur mit Berechtigung zugänglich
Literatur
Zurück zum Zitat Neubauer, T., Kolb, M.: “Technologies for the pseudonymization of medical data: a legal evaluation”, in. Fourth International Conference on Systems 2009, 7–12 (2009) Neubauer, T., Kolb, M.: “Technologies for the pseudonymization of medical data: a legal evaluation”, in. Fourth International Conference on Systems 2009, 7–12 (2009)
Zurück zum Zitat R. Peterson, “Encryption system for allowing immediate universal access to medical records while maintaining complete patient control over privacy.” Google Patents. 2003. R. Peterson, “Encryption system for allowing immediate universal access to medical records while maintaining complete patient control over privacy.” Google Patents. 2003.
Zurück zum Zitat B. K. Rai and T. Solanki, (2021) Access control mechanism in healthcare information system. In: Gautam Kumar, Om Prakash Singh, Hemraj Saini (eds) Cybersecurity Ambient Technologies IoT and Industry Implications. CRC Press, Boca Raton. p. 149. B. K. Rai and T. Solanki, (2021) Access control mechanism in healthcare information system. In: Gautam Kumar, Om Prakash Singh, Hemraj Saini (eds) Cybersecurity Ambient Technologies IoT and Industry Implications. CRC Press, Boca Raton. p. 149.
Zurück zum Zitat B. K. Rai and A. K. Srivastava (2014) Security and Privacy issues in healthcare Information System. International Journal of Emerging Trends & Technology in Computer Science (IJETTCS)(ISSN 2278–6858), 3(6), B. K. Rai and A. K. Srivastava (2014) Security and Privacy issues in healthcare Information System. International Journal of Emerging Trends & Technology in Computer Science (IJETTCS)(ISSN 2278–6858), 3(6),
Zurück zum Zitat B. K. Rai and A. K. Srivastava, “Prototype Implementation of Patient controlled Pseudonym-based mechanism for Electronic Health Record (PcPbEHR),” International Journal of Research in Engineering, IT and Social Sciences, ISSN 2250–0588, Impact Factor: 6.452, Volume 07 Issue 07, July 2017, Page 22–27, vol. 7, no. 7, p. 6, 2017. B. K. Rai and A. K. Srivastava, “Prototype Implementation of Patient controlled Pseudonym-based mechanism for Electronic Health Record (PcPbEHR),” International Journal of Research in Engineering, IT and Social Sciences, ISSN 2250–0588, Impact Factor: 6.452, Volume 07 Issue 07, July 2017, Page 22–27, vol. 7, no. 7, p. 6, 2017.
Zurück zum Zitat B. K. Rai, S. Sharma, A. Kumar, and A. Goyal, “Medical Prescription and Report Analyzer” Thirteenth International Conference on Contemporary Computing (IC3–2021) Association for Computing Machinery, New York, NY, USA, 286–295, 2021 DOI: https://doi.org/10.1145/3474124.3474165 B. K. Rai, S. Sharma, A. Kumar, and A. Goyal, “Medical Prescription and Report Analyzer” Thirteenth International Conference on Contemporary Computing (IC3–2021) Association for Computing Machinery, New York, NY, USA, 286–295, 2021 DOI: https://​doi.​org/​10.​1145/​3474124.​3474165
Zurück zum Zitat Rai, B.K., Srivastava, A.K.: Pseudonymization techniques for providing privacy and security in EHR. Int J Emer Trends Technol Comp Sci (IJETTCS) 5, 34–38 (2016) Rai, B.K., Srivastava, A.K.: Pseudonymization techniques for providing privacy and security in EHR. Int J Emer Trends Technol Comp Sci (IJETTCS) 5, 34–38 (2016)
Zurück zum Zitat Shukla, A., Sahni, M.K., Aggarwal, S., Rai, B.K.: Real-time de-identification of healthcare data using ephemeral pseudonyms. Int. J. Emer. Trends. Technol. Comp. Sci. (IJETTCS) 7(2), 21–25 (2018) Shukla, A., Sahni, M.K., Aggarwal, S., Rai, B.K.: Real-time de-identification of healthcare data using ephemeral pseudonyms. Int. J. Emer. Trends. Technol. Comp. Sci. (IJETTCS) 7(2), 21–25 (2018)
Zurück zum Zitat Thielscher, C., Gottfried, M., Umbreit, S., Boegner, F., Haack, J., Schroeders, N.: Patent: Data processing system for patient data. Int. Patent, WO 3(034294), A2 (2005) Thielscher, C., Gottfried, M., Umbreit, S., Boegner, F., Haack, J., Schroeders, N.: Patent: Data processing system for patient data. Int. Patent, WO 3(034294), A2 (2005)
Metadaten
Titel
Ephemeral pseudonym based de-identification system to reduce impact of inference attacks in healthcare information system
verfasst von
Bipin Kumar Rai
Publikationsdatum
21.01.2022
Verlag
Springer US
Erschienen in
Health Services and Outcomes Research Methodology / Ausgabe 3/2022
Print ISSN: 1387-3741
Elektronische ISSN: 1572-9400
DOI
https://doi.org/10.1007/s10742-021-00268-2

Weitere Artikel der Ausgabe 3/2022

Health Services and Outcomes Research Methodology 3/2022 Zur Ausgabe