首页> 外文会议>Systems and Information Engineering Design Symposium >Security analysis of an IoT system used for indoor localization in healthcare facilities
【24h】

Security analysis of an IoT system used for indoor localization in healthcare facilities

机译:医疗保健设施室内定位的IOT系统的安全分析

获取原文

摘要

In today's world, the rapid advancement of technology allows us to find new solutions to old problems in critical areas, namely patient and staff tracking in healthcare facilities. The medical staff within these facilities are in an environment where they depend on immediately knowing the location of a patient or other medical staff. McAllister et al. [1] proposed a solution named LoCATE (Localization of Health Center Assets Through an IoT Environment) which uses existing technology to track all patients and medical staff in near real time. LoCATE makes use of the current wireless networks (e.g., WiFi) within a healthcare facility by using edge node technology as its tracking solution. It can locate an object within three to five feet of its calculated position. The ubiquity of WiFi infrastructure in healthcare facilities makes it an attractive option to use, as the backbone for a patient and staff tracking system. However, Internet of Things (IoT) devices and edge nodes create security holes in networks and leak data to the open world. This paper aims to analyze what security holes and data leaks LoCATE creates in a healthcare facility. In this paper, we show the dangers of using simple and default passwords, the need to physically secure edge nodes, and the importance of securing data before transmission. We exploit the system's weak security measures by forging edge node data, gaining unauthorized access, performing denial of service attack, and launching other attacks. We analyze the successfulness of these attacks to offer mitigation techniques for future devices located in other critical areas similar to the healthcare facilities.
机译:在今天的世界中,技术的快速进步使我们能够找到对关键领域的旧问题,即患者和医疗保健设施的员工追踪的新解决方案。这些设施中的医务人员在一个环境中,他们依赖于立即了解患者或其他医务人员的位置。麦卡斯特等人。 [1]提出了一个名为POCATE的解决方案(通过物联网环境的定位),该解决方案使用现有技术在近实时跟踪所有患者和医务人员。通过使用边缘节点技术作为其跟踪解决方案,找到在医疗保健设施内使用当前无线网络(例如,WiFi)。它可以在其计算位置的三到五英尺处定位一个物体。医疗保健设施中的WiFi基础设施的难以使用的选择,作为患者和员工跟踪系统的骨干。但是,事物互联网(IOT)设备和边缘节点在网络中创建安全漏洞并将数据泄漏到开放世界。本文旨在分析安全漏洞和数据泄漏在医疗保健设施中创建的内容。在本文中,我们展示了使用简单和默认密码的危险,需要物理安全的边缘节点,以及在传输之前保护数据的重要性。我们通过锻造边缘节点数据来利用系统的弱安全措施,从而获得未经授权的访问,执行拒绝服务攻击,并启动其他攻击。我们分析了这些攻击的成功,为未来的设备提供缓解技术,该设备位于与医疗保健设施类似的其他关键领域。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号