Can the User Authentication System for the Electronic Medical Record System Improve the Power to Secure in Medical Field? A Security Analysis

© 2022 by IJETT Journal
Volume-70 Issue-8
Year of Publication : 2022
Authors : Seonjae Been, Younsung Choi, Haewon Byeon
DOI : 10.14445/22315381/IJETT-V70I8P239

How to Cite?

Seonjae Been, Younsung Choi, Haewon Byeon, "Can the User Authentication System for the Electronic Medical Record System Improve the Power to Secure in Medical Field? A Security Analysis ," International Journal of Engineering Trends and Technology, vol. 70, no. 8, pp. 387-393, 2022. Crossref,

The electronic medical record is the set of individual patient health information stored in a digital format. This format can be shared across medical networks. This system enables the efficient transfer of medical records between institutions, patients and staff. The EMR contains personal health information; therefore, network access to patient-related data must be controlled to ensure that unlawful parties do not misuse personal information. Han et al. proposed several biometric-based authentication methods. However, Madhusudan et al. revealed that the biometric-based authentication method proposed by Han et al. had various weaknesses and proposed an authentication scheme with improved security suitable for the EMR system. In this paper, through security analysis, we analyse the operation process of the scheme by Madhusudhan et al. and reveal problems, including 𝐻(𝐵𝑖 ) recognition errors, no perfect forward secrecy, insider attacks (user identification guessing attacks), insider attacks (forgery attacks) and denial-of-service attacks.

Security Analysis, Authentication Scheme, EMR, Patient information, Medical Data.

