A privacy-preserving attribute-based authentication system for mobile health networks

Linke Guo, Chi Zhang, Jinyuan Sun, Yuguang Fang

Research output: Journal Publications and ReviewsRGC 21 - Publication in refereed journalpeer-review

118 Citations (Scopus)

Abstract

Electronic healthcare (eHealth) systems have replaced paper-based medical systems due to the attractive features such as universal accessibility, high accuracy, and low cost. As a major component of eHealth systems, mobile healthcare (mHealth) applies mobile devices, such as smartphones and tablets, to enable patient-to-physician and patient-to-patient communications for better healthcare and quality of life (QoL). Unfortunately, patients' concerns on potential leakage of personal health records (PHRs) is the biggest stumbling block. In current eHealth/mHealth networks, patients' medical records are usually associated with a set of attributes like existing symptoms and undergoing treatments based on the information collected from portable devices. To guarantee the authenticity of those attributes, PHRs should be verifiable. However, due to the linkability between identities and PHRs, existing mHealth systems fail to preserve patient identity privacy while providing medical services. To solve this problem, we propose a decentralized system that leverages users' verifiable attributes to authenticate each other while preserving attribute and identity privacy. Moreover, we design authentication strategies with progressive privacy requirements in different interactions among participating entities. Finally, we have thoroughly evaluated the security and computational overheads for our proposed schemes via extensive simulations and experiments. © 2002-2012 IEEE.
Original languageEnglish
Article number6560020
Pages (from-to)1927-1941
JournalIEEE Transactions on Mobile Computing
Volume13
Issue number9
DOIs
Publication statusPublished - Sept 2014
Externally publishedYes

Bibliographical note

Publication details (e.g. title, author(s), publication statuses and dates) are captured on an “AS IS” and “AS AVAILABLE” basis at the time of record harvesting from the data source. Suggestions for further amendments or supplementary information can be sent to [email protected].

Research Keywords

  • Authentication
  • homomorphic encryption
  • non-interactive witness-indistinguishable
  • non-interactive zero-knowledge proof

Fingerprint

Dive into the research topics of 'A privacy-preserving attribute-based authentication system for mobile health networks'. Together they form a unique fingerprint.

Cite this