Dynamic risk assessment approach for analysing cyber security events in medical IoT networks

被引:0
|
作者
Czekster, Ricardo M. [1 ]
Webber, Thais [1 ]
Furstenau, Leonardo Bertolin [2 ]
Marcon, Cesar [3 ]
机构
[1] Aston Univ, Sch Comp Sci & Digital Technol, Aston St, Birmingham B4 7ET, England
[2] Univ Fed Rio Grande do Sul, Grad Program Ind Engn, UFRGS, BR-90035190 Porto Alegre, Brazil
[3] PUCRS Univ, Grad Program Comp Sci PPGCC, Ave Ipiranga 6681, BR-90619900 Porto Alegre, RS, Brazil
关键词
Medical Internet of Things (MIoT); Cyber security; Dynamic risk assessment; Simulation models; Data integration; Threat analysis; INTERNET; THINGS; ENVIRONMENT; CHALLENGES; DEVICES; ATTACK;
D O I
10.1016/j.iot.2024.101437
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Advancements in Medical Internet of Things (MIoT) technology ease remote health monitoring and effective management of medical devices. However, these developments also expose systems to novel cyber security risks as sophisticated threat actors exploit infrastructure vulnerabilities to access sensitive data or deploy malicious software, threatening patient safety, device reliability, and trust. This paper introduces a lightweight dynamic risk assessment approach using scenario-based simulations to analyse cyber security events in MIoT infrastructures and supplement cyber security activities within organisations. The approach includes synthetic data and threat models to enrich discrete-event simulations, offering a comprehensive understanding of emerging threats and their potential impact on healthcare settings. Our simulation scenario illustrates the model's behaviour in processing data flows and capturing the characteristics of healthcare settings. Our findings demonstrate its validity by highlighting potential threats and mitigation strategies. The insights from these simulations highlight the model's flexibility, enabling adaptation to various healthcare settings and supporting continuous risk assessment to enhance MIoT system security and resilience.
引用
收藏
页数:17
相关论文
共 50 条
  • [31] A Thermodynamic Assessment of the Cyber Security Risk in Healthcare Facilities
    Fernandes, Filipe
    Alves, Victor
    Machado, Joana
    Miranda, Filipe
    Vicente, Dinis
    Ribeiro, Jorge
    Vicente, Henrique
    Neves, Jose
    TRENDS AND INNOVATIONS IN INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 3, 2020, 1161 : 452 - 465
  • [32] Threat Analysis and Risk Assessment in Automotive Cyber Security
    Ward, David
    Ibarra, Ireri
    Ruddle, Alastair
    SAE INTERNATIONAL JOURNAL OF PASSENGER CARS-ELECTRONIC AND ELECTRICAL SYSTEMS, 2013, 6 (02): : 507 - 513
  • [33] Cyber Security Risk Assessment for Industrial Automation Platform
    Zheng, Yiling
    Zheng, Song
    2015 INTERNATIONAL CONFERENCE ON INTELLIGENT INFORMATION HIDING AND MULTIMEDIA SIGNAL PROCESSING (IIH-MSP), 2015, : 341 - 344
  • [34] A game theoretic approach to cyber security risk management
    Musman, Scott
    Turner, Andrew
    JOURNAL OF DEFENSE MODELING AND SIMULATION-APPLICATIONS METHODOLOGY TECHNOLOGY-JDMS, 2018, 15 (02): : 127 - 145
  • [35] Security Risk Assessment and Risk-oriented Defense Resource Allocation for Cyber-physical Distribution Networks Against Coordinated Cyber Attacks
    Shuheng Wei
    Zaijun Wu
    Junjun Xu
    Yanzhe Cheng
    Qinran Hu
    Journal of Modern Power Systems and Clean Energy, 2025, 13 (01) : 312 - 324
  • [36] Cyber and Physical Security Vulnerability Assessment for IoT-Based Smart Homes
    Ali, Bako
    Awad, Ali Ismail
    SENSORS, 2018, 18 (03):
  • [37] Security Risk Assessment and Risk-oriented Defense Resource Allocation for Cyber-physical Distribution Networks Against Coordinated Cyber Attacks
    Wei, Shuheng
    Wu, Zaijun
    Xu, Junjun
    Cheng, Yanzhe
    Hu, Qinran
    JOURNAL OF MODERN POWER SYSTEMS AND CLEAN ENERGY, 2025, 13 (01) : 312 - 324
  • [39] Risk Assessment of Cybersecurity IoT Anomalies Through Cyber Value at Risk (CVaR)
    Vajpayee, Prashant
    Hossain, Gahangir
    2024 IEEE 5TH ANNUAL WORLD AI IOT CONGRESS, AIIOT 2024, 2024, : 0077 - 0083
  • [40] An Integrated Cyber Security Risk Management Approach for a Cyber-Physical System
    Kure, Halima Ibrahim
    Islam, Shareeful
    Razzaque, Mohammad Abdur
    APPLIED SCIENCES-BASEL, 2018, 8 (06):