Skip to main content

Research Repository

Advanced Search

Anonymity preserving and lightweight multi-medical server authentication protocol for telecare medical information system

Amin, Ruhul; Islam, SK Hafizul; Gope, Prosanta; Choo, Kim Kwang Raymond; Tapas, Nachiket

Authors

Ruhul Amin

SK Hafizul Islam

Prosanta Gope

Kim Kwang Raymond Choo

Nachiket Tapas



Abstract

Electronic health systems, such as Telecare Medical Information System (TMIS), allow patients to exchange their health information with a medical center/doctor for diagnosis in real-time, and across borders. Given the sensitive nature of health information/medical data, ensuring the security of such systems is crucial. In this paper, we revisit Das et al.'s authentication protocol, which is designed to ensure patient anonymity and untraceability. Then, we demonstrate that the security claims are invalid, by showing how both security features (i.e., patient anonymity and untraceability) can be compromised. We also demonstrate that the protocol suffers from smartcard launch attacks. To mitigate such design flaws, we propose a new lightweight authentication protocol using the cryptographic hash function for TMIS. We then analyze the security of the proposed protocol using AVISPA and Scyther, two widely used formal specification tools. The performance analysis demonstrates that our protocol is more efficient than other competing protocols.

Citation

Amin, R., Islam, S. H., Gope, P., Choo, K. K. R., & Tapas, N. (2019). Anonymity preserving and lightweight multi-medical server authentication protocol for telecare medical information system. IEEE Journal of Biomedical and Health Informatics, 23(4), 1749 - 1759. https://doi.org/10.1109/JBHI.2018.2870319

Journal Article Type Article
Acceptance Date Sep 12, 2018
Online Publication Date Sep 14, 2018
Publication Date 2019-07
Deposit Date Sep 18, 2018
Publicly Available Date Sep 21, 2018
Journal IEEE Journal of Biomedical and Health Informatics
Print ISSN 2168-2194
Publisher Institute of Electrical and Electronics Engineers
Peer Reviewed Peer Reviewed
Volume 23
Issue 4
Pages 1749 - 1759
DOI https://doi.org/10.1109/JBHI.2018.2870319
Keywords Biotechnology; Electrical and Electronic Engineering; Health Information Management; Computer Science Applications
Public URL https://hull-repository.worktribe.com/output/1057459
Publisher URL https://ieeexplore.ieee.org/document/8465967/
Contract Date Sep 19, 2018

Files

Article (894 Kb)
PDF

Copyright Statement
© 2018 IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works






You might also like



Downloadable Citations