首页> 外文会议>Systems and Information Engineering Design Symposium >Security analysis of an IoT system used for indoor localization in healthcare facilities
【24h】

Security analysis of an IoT system used for indoor localization in healthcare facilities

机译:用于医疗机构室内本地化的IoT系统的安全性分析

获取原文

摘要

In today's world, the rapid advancement of technology allows us to find new solutions to old problems in critical areas, namely patient and staff tracking in healthcare facilities. The medical staff within these facilities are in an environment where they depend on immediately knowing the location of a patient or other medical staff. McAllister et al. [1] proposed a solution named LoCATE (Localization of Health Center Assets Through an IoT Environment) which uses existing technology to track all patients and medical staff in near real time. LoCATE makes use of the current wireless networks (e.g., WiFi) within a healthcare facility by using edge node technology as its tracking solution. It can locate an object within three to five feet of its calculated position. The ubiquity of WiFi infrastructure in healthcare facilities makes it an attractive option to use, as the backbone for a patient and staff tracking system. However, Internet of Things (IoT) devices and edge nodes create security holes in networks and leak data to the open world. This paper aims to analyze what security holes and data leaks LoCATE creates in a healthcare facility. In this paper, we show the dangers of using simple and default passwords, the need to physically secure edge nodes, and the importance of securing data before transmission. We exploit the system's weak security measures by forging edge node data, gaining unauthorized access, performing denial of service attack, and launching other attacks. We analyze the successfulness of these attacks to offer mitigation techniques for future devices located in other critical areas similar to the healthcare facilities.
机译:在当今世界,技术的飞速发展使我们能够找到关键领域中旧问题的新解决方案,即对医疗机构中的患者和员工进行跟踪。这些设施中的医务人员所处的环境取决于他们立即知道患者或其他医务人员的位置。 McAllister等。 [1]提出了一种名为LoCATE(通过IoT环境对医疗中心资产进行本地化)的解决方案,该解决方案使用现有技术来近乎实时地跟踪所有患者和医护人员。 LoCATE通过使用边缘节点技术作为其跟踪解决方案来利用医疗保健机构中的当前无线网络(例如,WiFi)。它可以将物体定位在其计算位置三到五英尺内。 WiFi基础设施在医疗保健机构中无处不在,使其成为一种有吸引力的选择,可以用作患者和员工跟踪系统的骨干。但是,物联网(IoT)设备和边缘节点会在网络中造成安全漏洞,并将数据泄露给开放世界。本文旨在分析LoCATE在医疗机构中造成的安全漏洞和数据泄漏。在本文中,我们显示了使用简单密码和默认密码的危险,物理保护边缘节点的需求以及在传输之前保护数据的重要性。我们通过伪造边缘节点数据,获得未经授权的访问,执行拒绝服务攻击以及发起其他攻击来利用系统的弱安全措施。我们分析了这些攻击的成功性,为位于其他关键区域(如医疗机构)的未来设备提供了缓解技术。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号