Safeguarding Healthcare: A Comprehensive Threat Analysis of Clinical Decision Support Systems

Aleksandra Ursula Charlotte Hamel, Bogdan-Cristian Zarcu, Andras-Gergely Csenteri, Tamara Pfliegler, Sajjad Khan, Davor Svetinovic

Publikation: Beitrag in Buch/KonferenzbandBeitrag in Konferenzband

Abstract

Using digital data gathering and analytics in healthcare brings benefits and risks to patients and practitioners. Smart Health Information Systems, such as Clinical Decision Support Systems (CDSSs), consolidate data from various sources, utilizing artificial intelligence for decision support. However, machine learning models in CDSSs are vulnerable to various attacks, leading to incorrect predictions with severe consequences. This paper systematically investigates security and privacy threats related to CDSSs. First, we leverage the data flow and sequence diagrams to identify the critical use cases that might lead to security or privacy breaches. Second, we identify and classify threats imminent to the CDSSs using Security Cards and STRIDE. Lastly, the persona non-grata who pose a significant threat to the integrity of the CDSSs are identified. Implementing our method can assist teams in addressing security threats to CDSSs by considering their unique vulnerabilities. This research contributes to developing comprehensive security strategies for CDSSs.
OriginalspracheEnglisch
Titel des Sammelwerks2023 IEEE Intl Conf on Dependable, Autonomic and Secure Computing, Intl Conf on Pervasive Intelligence and Computing, Intl Conf on Cloud and Big Data Computing, Intl Conf on Cyber Science and Technology Congress (DASC/PiCom/CBDCom/CyberSciTech)
Untertitel des Sammelwerks14-17 November 2023 : Abu Dhabi, United Arab Emirates
ErscheinungsortNew York
VerlagIEEE
Seiten478-485
ISBN (elektronisch)979-8-3503-0460-2
ISBN (Print)979-8-3503-0461-9
DOIs
PublikationsstatusVeröffentlicht - 25 Dez. 2023

Publikationsreihe

ReiheIEEE Xplore
ISSN2837-0724

Österreichische Systematik der Wissenschaftszweige (ÖFOS)

  • 102001 Artificial Intelligence

Zitat