• Title/Summary/Keyword: Data Privacy Model

Search Result 302, Processing Time 0.019 seconds

A Scalable Data Integrity Mechanism Based on Provable Data Possession and JARs

  • Zafar, Faheem;Khan, Abid;Ahmed, Mansoor;Khan, Majid Iqbal;Jabeen, Farhana;Hamid, Zara;Ahmed, Naveed;Bashir, Faisal
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.10 no.6
    • /
    • pp.2851-2873
    • /
    • 2016
  • Cloud storage as a service provides high scalability and availability as per need of user, without large investment on infrastructure. However, data security risks, such as confidentiality, privacy, and integrity of the outsourced data are associated with the cloud-computing model. Over the year's techniques such as, remote data checking (RDC), data integrity protection (DIP), provable data possession (PDP), proof of storage (POS), and proof of retrievability (POR) have been devised to frequently and securely check the integrity of outsourced data. In this paper, we improve the efficiency of PDP scheme, in terms of computation, storage, and communication cost for large data archives. By utilizing the capabilities of JAR and ZIP technology, the cost of searching the metadata in proof generation process is reduced from O(n) to O(1). Moreover, due to direct access to metadata, disk I/O cost is reduced and resulting in 50 to 60 time faster proof generation for large datasets. Furthermore, our proposed scheme achieved 50% reduction in storage size of data and respective metadata that result in providing storage and communication efficiency.

Cancer Registration in Korea: The Present and Furtherance (암 등록사업의 현황과 추진방향)

  • Ahn, Yoon-Ok
    • Journal of Preventive Medicine and Public Health
    • /
    • v.40 no.4
    • /
    • pp.265-272
    • /
    • 2007
  • It was not until 1975 that cancer registration was initiated in Korea; voluntary registration of cancer patients of training hospitals throughout the country began under the auspices of the Korean Cancer Society(KCS). However, an official cancer registration, the Korea Central Cancer Registry(KCCR), began on July 1st, 1980. Forty-five training and two non-training hospitals throughout the country initiated registration of patients in whom neoplasms had been found. Data related to case information specified are to be sent to the KCCR at the National Medical Center(it moved at National Cancer Center in 2000). The initial cancer registration of KCS was merged to the KCCR in 1980. Although the KCCR covers most all the large training hospitals in Korea, it cannot provide incidence data. It is, however, the only of its kind in the world, being neither hospital nor population based. The first population based cancer registry(PBCR) was launched in a small county, Kangwha(it has around 80,000 inhabitants), by Yonsei University Medical College in 1983. All data were collected by active methods, and incidence statistics for 1986-1992 appeared in Vol VII of the CI5. Another PBCR, Seoul Cancer Registry(SCR), started in 1991. It was supported by a civilian foundation, the Korean Foundation for Cancer Research. The basic idea of case registration of SCR was the incorporation of KCCR data to PBCR, e. g. dual sources of case registration, i.e., from the KCCR and also including cases diagnosed in small hospitals and other medical facilities. Assessing completeness and validity of case registration of SCR, the program and methodology used by the SCR was later extended to other large cities and areas in Korea, and the PBCR in each area was established. Cancer incidence statistics of Seoul for 1993-1997, Busan for 1996-1997, and Daegu for 1997-1998, as well as Kangwha for 1993-1997, appeared eventually in Vol VIII of the CI5. The Korean or 'pillar' model for a PBCR is a new one. The KCCR data file is a reliable basis, as a pillar, for a PBCR in each area. The main framework of the model for such a registry is the incorporation of a KCCR data file with data from additionally surveyed cases; the data related to cancer deaths, medical insurance claims, and visit-and surveillance of non-KCCR medical facilities. Cancer registration has been adopted as a national cancer control program by Korean government in 2004 as the Anti-Cancer Act was enacted. Since then, some officers have tried to launch a nation-wide PBCR covering whole country. In the meantime, however, cancer registration was interrupted and discontinued for years due to the Privacy Protection Law, which was solved by an amendment of the Anti-Cancer Act in 2006. It would be premature to establish the nation-wide PBCR in Korea. Instead, continuous efforts to improve the completeness of registration of the KCCR, to progress existing PBCRs, and to expand PBCRs over other areas are still to be devoted. The nation-wide PBCR in Korea will be established eventually with summation of the PBCRs of the Korean model.

Smart-Coord: Enhancing Healthcare IoT-based Security by Blockchain Coordinate Systems

  • Talal Saad Albalawi
    • International Journal of Computer Science & Network Security
    • /
    • v.24 no.8
    • /
    • pp.32-42
    • /
    • 2024
  • The Internet of Things (IoT) is set to transform patient care by enhancing data collection, analysis, and management through medical sensors and wearable devices. However, the convergence of IoT device vulnerabilities and the sensitivity of healthcare data raises significant data integrity and privacy concerns. In response, this research introduces the Smart-Coord system, a practical and affordable solution for securing healthcare IoT. Smart-Coord leverages blockchain technology and coordinate-based access management to fortify healthcare IoT. It employs IPFS for immutable data storage and intelligent Solidity Ethereum contracts for data integrity and confidentiality, creating a hierarchical, AES-CBC-secured data transmission protocol from IoT devices to blockchain repositories. Our technique uses a unique coordinate system to embed confidentiality and integrity regulations into a single access control model, dictating data access and transfer based on subject-object pairings in a coordinate plane. This dual enforcement technique governs and secures the flow of healthcare IoT information. With its implementation on the Matic network, the Smart-Coord system's computational efficiency and cost-effectiveness are unparalleled. Smart-Coord boasts significantly lower transaction costs and data operation processing times than other blockchain networks, making it a practical and affordable solution. Smart-Coord holds the promise of enhancing IoT-based healthcare system security by managing sensitive health data in a scalable, efficient, and secure manner. The Smart-Coord framework heralds a new era in healthcare IoT adoption, expertly managing data integrity, confidentiality, and accessibility to ensure a secure, reliable digital environment for patient data management.

Designing a Platform Model for Building MyData Ecosystem (마이데이터 생태계 구축을 위한 플랫폼 모델 설계)

  • Kang, Nam-Gyu;Choi, Hee-Seok;Lee, Hye-Jin;Han, Sang-Jun;Lee, Seok-Hyoung
    • Journal of Internet Computing and Services
    • /
    • v.22 no.2
    • /
    • pp.123-131
    • /
    • 2021
  • The Fourth Industrial Revolution was triggered by data-driven digital technologies such as AI and big data. There is a rapid movement to expand the scope of data utilization to the privacy area, which was considered only a protected area. Through the revision of the Data 3 Act, laws and systems were established that allow personal information to be freely transferred and utilized under their consent. But, it will be necessary to support the platform that encompasses the entire process from collecting personal information to managing and utilizing it. In this paper, we propose a platform model that can be applied to building mydata ecosystem using personal information. It describes the six essential functional requirements for building MyData platforms and the procedures and methods for implementing them. The six proposed essential features describe consent, sharing/downloading/ receipt of data, data collection and utilization, user authentication, API gateway, and platform services. We also illustrate the case of applying the MyData platform model to real-world, underprivileged mobility support services.

The Effects of Mobile Accommodation App Quality Perception on Continual Use Intention through Expectation Confirmation and Satisfaction

  • Arum Park;Sin-Bok Lee
    • International Journal of Advanced Culture Technology
    • /
    • v.11 no.2
    • /
    • pp.345-357
    • /
    • 2023
  • This research investigates the relationship between the information quality, service quality, and system quality of lodging apps and the users' expectations, level of satisfaction, and intent to continue using them. For this objective, 418 respondents participated in a survey. To evaluate the hypotheses, the collected data were examined using SPSS 22.0 and AMOS 22.0 statistical software. This study constructed a model using information quality, service quality, system quality, expectancy, satisfaction, and intention to continue using the pre- and post-use relationship of users of accommodation applications. The results of testing the hypotheses indicated that system quality had no significant effect on expectancy, system quality and service quality had no significant effect on satisfaction, and all other hypotheses had significant effects. The conclusion of this research is that the app's system quality, including access speed, access barriers, and privacy, does not satisfy pre- and post-use expectations. In addition, the system quality and service quality of the application have little effect on the app's satisfaction. The information quality of the application has a considerable impact on expectation confirmation and satisfaction, expectation confirmation has an impact on satisfaction, and expectation confirmation and satisfaction have an impact on intention to continue using.

Factors Influencing on the Intention to Use Serious Games for Healthcare: The Perspective of Valence Framework (건강 기능성 게임의 수용에 영향을 주는 요인: 감정가 프레임워크 관점)

  • Yong-Young Kim
    • Journal of Information Technology Applications and Management
    • /
    • v.31 no.1
    • /
    • pp.97-112
    • /
    • 2024
  • In order to verify the factors affecting the acceptance of Serious Games for Healthcare (SGHs), this study developed a hierarchical model of general and specific benefit and risk factors affecting the intention to use SGHs based on the valence framework. As a result based on 199 samples, it was revealed that perceived customization and perceived schedule flexibility had a positive effect on the perceived benefits, which, in turn, had a positive effect on the intention to use SGHs. However, among the specific risk factors, only privacy risk had a positive effect on perceived risk, but it did not have a effect on SGHs usage intention. The results related to the fact that the survey respondents were potential users of SGHs and the bias that may overestimate the benefits provided by SGHs called optimistic bias. Based on these findings, some implications were presented such as the spread and distribution of SGHs to the ordinary persons, improvement of negative perceptions of games, and the need for data-based services to refine customized services for SGHs.

Relationship-based Dynamic Access Control Model with Choosable Encryption for Social Network Service (소셜 네트워크 서비스를 위한 선별적 암호화 기능을 제공하는 관계 기반 동적 접근제어 모델)

  • Kwon, Keun;Jung, Youngman;Jung, Jaewook;Choi, Younsung;Jeon, Woongryul;Won, Dongho
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.1
    • /
    • pp.59-74
    • /
    • 2014
  • The social network service is a online service letting users express the personality and enhancing the human network. However, these features result in side effects which diffuse personal information and make users access to treacherous information. Therefore, various access control models have been proposed. However, the access control mechanisms which encrypt data are only able to be applied for controlling access from direct node, and the access control mechanisms without data encryption allow service provider to access all the information. Moreover, both mechanisms do not consider dynamic changes in reliability of the users. In this paper, we propose relationship-based dynamic access control model including encryption of sensitive data, which consider the characteristics of SNS and improves the security of SNS.

Secure Healthcare Data Management and Sharing Platform Based on Hyperledger Fabric (하이퍼레저 패브릭 기반의 안전한 헬스케어 데이터 관리 및 공유 플랫폼 개발 연구)

  • Choi, Ye-Jin;Kim, Kyoung-jin
    • Journal of Internet Computing and Services
    • /
    • v.21 no.1
    • /
    • pp.95-102
    • /
    • 2020
  • In this paper, we present a healthcare data integration management and sharing platform based on a permissioned blockchain-based system called the Hyperledger fabric. The Hyperledger fabric allows patients to easily access their data, share the data with agencies that need it, and also reward participants. The healthcare data is stored in the blockchain by a de-identification process. Privacy is protected by setting detailed access rights to the stored data. The proposed model provides higher security than other models using a public blockchain. This study confirms that patient data can be stored more securely, by comparing the data stored in the blockchain with that from existing information storage methods.

A Study on Factors Affecting the Reception Attitude toward Electronic Medical Record (전자의무기록 수용태도에 영향을 미치는 요인에 관한 연구)

  • Jin, Hye-Eun;Choi, Eun-Mi
    • Journal of Digital Convergence
    • /
    • v.10 no.4
    • /
    • pp.279-286
    • /
    • 2012
  • The purpose of this study was identified the influence of introducing Electronic Medical Records (EMR) on reception attitude, based on literature investigation, the study converted utility and serviceability from Davis TAM Model into awareness of effects in computerized database except attitude variable. The electronic survey for doctors, nurses, medical technicians of a general hospital located in Gangwon-do was performed for 4 weeks from Nov, 11th, 2009 to Dec, 2nd and the collected data was computerized through SPSS 12.0. The factors influencing reception attitude were divided into 4 categories; basic characteristics of the individual, awareness of privacy protection, awareness of effects in computerized database, technological preparation and measured detailed specific variables. As the result of this, the factors influencing reception intention were different depending on recognizing the effectiveness caused by computerization of medical information. Especially, in terms of the difference between basic characteristics of the individual and awareness of privacy protection, there were significant distinctions among 3 sectors; general, transactional, online information management. The significant effects were identified from information management related to business or online information management depending on experiencing security education.

Towards efficient sharing of encrypted data in cloud-based mobile social network

  • Sun, Xin;Yao, Yiyang;Xia, Yingjie;Liu, Xuejiao;Chen, Jian;Wang, Zhiqiang
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.10 no.4
    • /
    • pp.1892-1903
    • /
    • 2016
  • Mobile social network is becoming more and more popular with respect to the development and popularity of mobile devices and interpersonal sociality. As the amount of social data increases in a great deal and cloud computing techniques become developed, the architecture of mobile social network is evolved into cloud-based that mobile clients send data to the cloud and make data accessible from clients. The data in the cloud should be stored in a secure fashion to protect user privacy and restrict data sharing defined by users. Ciphertext-policy attribute-based encryption (CP-ABE) is currently considered to be a promising security solution for cloud-based mobile social network to encrypt the sensitive data. However, its ciphertext size and decryption time grow linearly with the attribute numbers in the access structure. In order to reduce the computing overhead held by the mobile devices, in this paper we propose a new Outsourcing decryption and Match-then-decrypt CP-ABE algorithm (OM-CP-ABE) which firstly outsources the computation-intensive bilinear pairing operations to a proxy, and secondly performs the decryption test on the attributes set matching access policy in ciphertexts. The experimental performance assessments show the security strength and efficiency of the proposed solution in terms of computation, communication, and storage. Also, our construction is proven to be replayable choosen-ciphertext attacks (RCCA) secure based on the decisional bilinear Diffie-Hellman (DBDH) assumption in the standard model.