当前位置: X-MOL 学术IEEE Commun. Surv. Tutor. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Security Vulnerabilities, Attacks, Countermeasures, and Regulations of Networked Medical Devices – A Review
IEEE Communications Surveys & Tutorials ( IF 34.4 ) Pub Date : 2019-01-01 , DOI: 10.1109/comst.2019.2914094
Tahreem Yaqoob , Haider Abbas , Mohammed Atiquzzaman

Over the last few years, healthcare administrations have been digitizing their provision of care that led to an increased number of networked medical devices and medical telemetry. Due to such digitization, medical devices have made phenomenal strides in the course of the last half-century. These networked medical devices have enhanced the quality and accessibility of health treatments by achieving pervasive healthcare vision. Moreover, these devices have transformed the canvas of medical treatments and improved the lives of the masses. Such innovation, as a result, assisted in paving the way for reliable healthcare facilities through the introduction of new areas of therapeutic and diagnostic treatments. Medical devices, nowadays, are portable, networked, and capable enough to facilitate human lives. The refined quality and variety of these devices put forward a promising future. However, on the other hand, the healthcare sector is experiencing the greatest amount of security breaches due to the presence of security flaws in medical devices. As these devices are no longer standalone systems and are network-connected, the attack surface has increased profoundly. Actually, devices in practice were designed, developed, and disseminated long ago. Therefore, they were not developed from the ground up with security as a vital design constraint. The flaws present in these devices have acquired the consideration of researchers from both industry and academia. In this paper, we studied security vulnerabilities present in state-of-the-art medical devices by studying security tests and the attacks demonstrated by the researchers on more than a hundred devices. Finally, some state-of-the-art solutions and countermeasures along with applicable regulations in literature were also studied and analyzed. Since these devices are life-critical and can even cause the death of a patient, therefore, this survey is significant as it can assist researchers to get an overview of loopholes present in medical devices and existing countermeasures. We concluded this survey paper with some open research areas that should be properly considered in order to secure these life-critical medical devices.

中文翻译:

联网医疗设备的安全漏洞、攻击、对策和监管——综述

在过去几年中,医疗保健管理部门一直在对其提供的护理进行数字化,这导致联网医疗设备和医疗遥测的数量不断增加。由于这种数字化,医疗设备在过去半个世纪中取得了惊人的进步。这些联网的医疗设备通过实现无处不在的医疗保健愿景,提高了健康治疗的质量和可及性。此外,这些设备改变了医疗的画布,改善了群众的生活。因此,此类创新通过引入治疗和诊断治疗的新领域,有助于为可靠的医疗保健设施铺平道路。如今,医疗设备具有便携性、联网性和功能,足以为人类生活提供便利。这些设备的优良品质和多样性预示着美好的未来。然而,另一方面,由于医疗设备中存在安全漏洞,医疗保健行业正在经历最多的安全漏洞。由于这些设备不再是独立的系统并且是联网的,因此攻击面已经大大增加。实际上,实践中的设备很早以前就已设计、开发和传播。因此,它们不是从头开始开发的,安全性是一个重要的设计约束。这些设备中存在的缺陷引起了工业界和学术界研究人员的关注。在本文中,我们通过研究安全测试和研究人员在一百多台设备上展示的攻击,研究了最先进的医疗设备中存在的安全漏洞。最后,还研究和分析了一些最先进的解决方案和对策以及文献中的适用法规。由于这些设备危及生命,甚至可能导致患者死亡,因此,这项调查意义重大,因为它可以帮助研究人员了解医疗设备中存在的漏洞和现有对策。我们总结了一些开放的研究领域,以确保这些对生命至关重要的医疗设备的安全,我们应该适当考虑这些领域。还研究和分析了一些最先进的解决方案和对策以及文献中的适用法规。由于这些设备危及生命,甚至可能导致患者死亡,因此,这项调查意义重大,因为它可以帮助研究人员了解医疗设备中存在的漏洞和现有对策。我们总结了一些开放的研究领域,以确保这些对生命至关重要的医疗设备的安全,我们应该适当考虑这些领域。还研究和分析了一些最先进的解决方案和对策以及文献中的适用法规。由于这些设备危及生命,甚至可能导致患者死亡,因此,这项调查意义重大,因为它可以帮助研究人员了解医疗设备中存在的漏洞和现有对策。我们总结了一些开放的研究领域,以确保这些对生命至关重要的医疗设备的安全,我们应该适当考虑这些领域。
更新日期:2019-01-01
down
wechat
bug