arXiv · 1808.08403
Formal Analysis of an E-Health Protocol
Abstract
Given the sensitive nature of health data, security and privacy in e-health systems is of prime importance. It is crucial that an e-health system must ensure that users remain private - even if they are bribed or coerced to reveal themselves, or others: a pharmaceutical company could, for example, bribe a pharmacist to reveal information which breaks a doctor's privacy. In this paper, we first identify and formalise several new but important privacy properties on enforcing doctor privacy. Then we analyse the security and privacy of a complicated and practical e-health protocol (DLV08). Our analysis uncovers ambiguities in the protocol, and shows to what extent these new privacy properties as well as other security properties (such as secrecy and authentication) and privacy properties (such as anonymity and untraceability) are satisfied by the protocol. Finally, we address the found ambiguities which result in both security and privacy flaws, and propose suggestions for fixing them.
Explore related subjects
Keep this discovery
Naipeng Dong, Hugo Jonker, Jun Pang. 2018-08-25. Formal Analysis of an E-Health Protocol. https://arxiv.org/abs/1808.08403
Cite the original work for its findings. Save a collection to share your selection of sources.