Eugene Tye Wee Chin, Intan Farahana Binti Kamsin, S. Amin, Nur Khairunnisha Binti Zainal
{"title":"电子医疗中的混合零知识访问控制系统","authors":"Eugene Tye Wee Chin, Intan Farahana Binti Kamsin, S. Amin, Nur Khairunnisha Binti Zainal","doi":"10.1109/DeSE58274.2023.10099775","DOIUrl":null,"url":null,"abstract":"Privacy and security of sensitive health information represents a significant issue within electronic health (e-Health). With breakthroughs in security and privacy in recent decades, the application of cloud technologies on health services have progressed forward. The aim of this research paper is to introduce an appropriate access control model for use in e-Health. To determine the requirements of a modern access control method, research was carried out on numerous scholarly articles sourced from the Google Scholar search engine. A survey which utilized sampling techniques will also be done to affirm the validity of the research. The target audience of the survey are large to medium scale healthcare providers. Qualitative data will be gathered as it better describes the different types of data obtained. As a result, the paper proposed a combination of Role-based Access Control and Attribute-based Access Control which utilizes zero-knowledge SNARK to ensure privacy of patients. Recommendations for future research include experimentation with other encryption algorithms in the proposed system, assessment on the use of different zero-knowledge proof methods for better efficiency and scalability, as well as modern access control methods that embrace expansions and simple authorization.","PeriodicalId":346847,"journal":{"name":"2023 15th International Conference on Developments in eSystems Engineering (DeSE)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-01-09","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Hybrid Zero-knowledge Access Control System in e-Health\",\"authors\":\"Eugene Tye Wee Chin, Intan Farahana Binti Kamsin, S. Amin, Nur Khairunnisha Binti Zainal\",\"doi\":\"10.1109/DeSE58274.2023.10099775\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Privacy and security of sensitive health information represents a significant issue within electronic health (e-Health). With breakthroughs in security and privacy in recent decades, the application of cloud technologies on health services have progressed forward. The aim of this research paper is to introduce an appropriate access control model for use in e-Health. To determine the requirements of a modern access control method, research was carried out on numerous scholarly articles sourced from the Google Scholar search engine. A survey which utilized sampling techniques will also be done to affirm the validity of the research. The target audience of the survey are large to medium scale healthcare providers. Qualitative data will be gathered as it better describes the different types of data obtained. As a result, the paper proposed a combination of Role-based Access Control and Attribute-based Access Control which utilizes zero-knowledge SNARK to ensure privacy of patients. Recommendations for future research include experimentation with other encryption algorithms in the proposed system, assessment on the use of different zero-knowledge proof methods for better efficiency and scalability, as well as modern access control methods that embrace expansions and simple authorization.\",\"PeriodicalId\":346847,\"journal\":{\"name\":\"2023 15th International Conference on Developments in eSystems Engineering (DeSE)\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-01-09\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2023 15th International Conference on Developments in eSystems Engineering (DeSE)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/DeSE58274.2023.10099775\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 15th International Conference on Developments in eSystems Engineering (DeSE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/DeSE58274.2023.10099775","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Hybrid Zero-knowledge Access Control System in e-Health
Privacy and security of sensitive health information represents a significant issue within electronic health (e-Health). With breakthroughs in security and privacy in recent decades, the application of cloud technologies on health services have progressed forward. The aim of this research paper is to introduce an appropriate access control model for use in e-Health. To determine the requirements of a modern access control method, research was carried out on numerous scholarly articles sourced from the Google Scholar search engine. A survey which utilized sampling techniques will also be done to affirm the validity of the research. The target audience of the survey are large to medium scale healthcare providers. Qualitative data will be gathered as it better describes the different types of data obtained. As a result, the paper proposed a combination of Role-based Access Control and Attribute-based Access Control which utilizes zero-knowledge SNARK to ensure privacy of patients. Recommendations for future research include experimentation with other encryption algorithms in the proposed system, assessment on the use of different zero-knowledge proof methods for better efficiency and scalability, as well as modern access control methods that embrace expansions and simple authorization.