Introduction: Individuals and healthcare providers need to trust that the EHRs are protected and that the confidentiality of their personal information is not at stake.

Aim: Within CrowdHEALTH project, a security and privacy framework that ensures confidentiality, integrity, and availability of the data was developed.

Methods: The CrowdHEALTH Security and Privacy framework includes Privacy Enhancing Technologies (PETs) in order to comply with the GDPR EU laws of data protection. CrowdHEALTH deploys OpenID Connect, an authentication protocol to provide flexibility, scalability, and lightweight user authentication as well as the attribute-base access control (ABAC) mechanism which supports creating efficient access control policies.

Results: CrowdHEALTH integrates ABAC with OpenID Connect to build an effective and scalable base for end-users' authorization. CrowdHEALTH's security and privacy framework interacts with other CrowdHEALTH's components, for instance the Big Data Platform, that depends on user authentication and authorization. CrowdHEALTH users are able to access the CrowdHEALTH's database based on the result of an ABAC request. Moreover, due to the fact that the CrowdHEALTH system requires proofs during the interactions with data producers of low trust or low reputation level, the requirements for the Trust and Reputation Model have been identified.

Conclusion: The CrowdHEALTH Integrated Holistic Security and Privacy framework meets the security criteria for an e-health cross-border system, due to the adoption of security mechanisms, such as user authentication, user authorization, access control, data anonymization, trust management and reputation modelling. The implemented framework remains to be tested to ensure its robustness and to evaluate its performance. The holistic security and privacy framework might be adapted during the project's life circle according to new legislations.

Download full-text PDF

Source
http://www.ncbi.nlm.nih.gov/pmc/articles/PMC7085323PMC
http://dx.doi.org/10.5455/aim.2019.27.333-340DOI Listing

Publication Analysis

Top Keywords

security privacy
24
privacy framework
24
holistic security
12
user authentication
12
access control
12
integrated holistic
8
security
8
crowdhealth
8
crowdhealth project
8
openid connect
8

Similar Publications

Background: Radiomics holds great potential for the noninvasive evaluation of EGFR-TKIs and ICIs responses, but data privacy and model robustness challenges limit its current efficacy and safety. This study aims to develop and validate an encrypted multidimensional radiomics approach to enhance the stratification and analysis of therapeutic responses.

Materials And Methods: This multicenter study incorporated various data types from 506 NSCLC patients, which underwent preprocessing through anonymization methods and were securely encrypted using the AES-CBC algorithm.

View Article and Find Full Text PDF

Objective: Artificial intelligence (AI) could revolutionize the delivery of mental health care, helping to streamline clinician workflows and assist with diagnostic and treatment decisions. Yet, before AI can be integrated into practice, it is necessary to understand perspectives of these tools to inform facilitators and barriers to their uptake. We gathered data on clinician and community participant perspectives of incorporating AI in the clinical management of eating disorders.

View Article and Find Full Text PDF

GAN-based data reconstruction attacks in split learning.

Neural Netw

January 2025

Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, Wuhan 430072, China. Electronic address:

Due to the distinctive distributed privacy-preserving architecture, split learning has found widespread application in scenarios where computational resources on the client side are limited. Unlike clients in federated learning retaining the whole model, split learning partitions the model into two segments situated separately on the server and client ends, thereby preventing direct access to the complete model structure by either party and fortifying its resilience against attacks. However, existing studies have demonstrated that even with access restricted to partial model outputs, split learning remains susceptible to data reconstruction attacks.

View Article and Find Full Text PDF

eHealth literacy in the general population: a cross-sectional study in China.

BMC Public Health

January 2025

Department of Public Health and Primary Care, Leiden University Medical Centre, Hippocratespad 21, Leiden, Netherlands.

Background: eHealth literacy (eHL) is positively associated with health-related behaviors and outcomes. Previous eHL studies primarily collected data from online users and seldom focused on the general population in low- and middle-income countries (LMIC). Additionally, knowledge about factors that affect eHL is limited.

View Article and Find Full Text PDF

FedKD-CPI: Combining the federated knowledge distillation technique to accomplish synergistic compound-protein interaction prediction.

Methods

January 2025

School of Computer Science and Engineering, Central South University, Changsha 410083, China; Hunan Provincial Key Lab on Bioinformatics, Central South University, Changsha 410083, China.

Compound-protein interaction (CPI) prediction is critical in the early stages of drug discovery, narrowing the search space for CPIs and reducing the cost and time required for traditional high-throughput screening. However, CPI-related data are usually distributed across different institutions and their sharing is restricted because of data privacy and intellectual property rights. Constructing a scheme that enhances multi-institutional collaboration to improve prediction accuracy while protecting data privacy is essential.

View Article and Find Full Text PDF

Want AI Summaries of new PubMed Abstracts delivered to your In-box?

Enter search terms and have AI summaries delivered each week - change queries or unsubscribe any time!