Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol

Exploiting Radio Frequency Identification (RFID) technology in healthcare systems has become a common practice, as it ensures better patient care and safety. However, these systems are prone to security vulnerabilities that can jeopardize patient privacy and the secure management of patient credenti...

ver descrição completa

Detalhes bibliográficos
Main Authors: Muhammad Ayaz Khan, Subhan Ullah, Tahir Ahmad, Khwaja Jawad, Attaullah Buriro
Formato: Artigo
Idioma:English
Publicado em: MDPI AG 2023-06-01
Colecção:Sensors
Assuntos:
Acesso em linha:https://www.mdpi.com/1424-8220/23/12/5518
_version_ 1827735637253423104
author Muhammad Ayaz Khan
Subhan Ullah
Tahir Ahmad
Khwaja Jawad
Attaullah Buriro
author_facet Muhammad Ayaz Khan
Subhan Ullah
Tahir Ahmad
Khwaja Jawad
Attaullah Buriro
author_sort Muhammad Ayaz Khan
collection DOAJ
description Exploiting Radio Frequency Identification (RFID) technology in healthcare systems has become a common practice, as it ensures better patient care and safety. However, these systems are prone to security vulnerabilities that can jeopardize patient privacy and the secure management of patient credentials. This paper aims to advance state-of-the-art approaches by developing more secure and private RFID-based healthcare systems. More specifically, we propose a lightweight RFID protocol that safeguards patients’ privacy in the Internet of Healthcare Things (IoHT) domain by utilizing pseudonyms instead of real IDs, thereby ensuring secure communication between tags and readers. The proposed protocol has undergone rigorous testing and has been proven to be secure against various security attacks. This article provides a comprehensive overview of how RFID technology is used in healthcare systems and benchmarks the challenges faced by these systems. Then, it reviews the existing RFID authentication protocols proposed for IoT-based healthcare systems in terms of their strengths, challenges, and limitations. To overcome the limitations of existing approaches, we proposed a protocol that addresses the anonymity and traceability issues in existing schemes. Furthermore, we demonstrated that our proposed protocol had a lower computational cost than existing protocols and ensured better security. Finally, our proposed lightweight RFID protocol ensured strong security against known attacks and protected patient privacy using pseudonyms instead of real IDs.
first_indexed 2024-03-11T01:56:36Z
format Article
id doaj.art-02422589d73c4024bf396e29d60f50c9
institution Directory Open Access Journal
issn 1424-8220
language English
last_indexed 2024-03-11T01:56:36Z
publishDate 2023-06-01
publisher MDPI AG
record_format Article
series Sensors
spelling doaj.art-02422589d73c4024bf396e29d60f50c92023-11-18T12:32:16ZengMDPI AGSensors1424-82202023-06-012312551810.3390/s23125518Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID ProtocolMuhammad Ayaz Khan0Subhan Ullah1Tahir Ahmad2Khwaja Jawad3Attaullah Buriro4Department of Computer Science, Air University, Islamabad 44000, PakistanFaculty of Computer Science, National University of Computer and Emerging Sciences (NUCES-FAST), Islamabad 44000, PakistanCenter for Cybersecurity, Brunno Kessler Foundation, 38123 Trento, ItalyDepartment of Computer Science, Iqra National University, Swat 19200, PakistanFaculty of Engineering, Free University Bozen-Bolzano, 39100 Bolzano, ItalyExploiting Radio Frequency Identification (RFID) technology in healthcare systems has become a common practice, as it ensures better patient care and safety. However, these systems are prone to security vulnerabilities that can jeopardize patient privacy and the secure management of patient credentials. This paper aims to advance state-of-the-art approaches by developing more secure and private RFID-based healthcare systems. More specifically, we propose a lightweight RFID protocol that safeguards patients’ privacy in the Internet of Healthcare Things (IoHT) domain by utilizing pseudonyms instead of real IDs, thereby ensuring secure communication between tags and readers. The proposed protocol has undergone rigorous testing and has been proven to be secure against various security attacks. This article provides a comprehensive overview of how RFID technology is used in healthcare systems and benchmarks the challenges faced by these systems. Then, it reviews the existing RFID authentication protocols proposed for IoT-based healthcare systems in terms of their strengths, challenges, and limitations. To overcome the limitations of existing approaches, we proposed a protocol that addresses the anonymity and traceability issues in existing schemes. Furthermore, we demonstrated that our proposed protocol had a lower computational cost than existing protocols and ensured better security. Finally, our proposed lightweight RFID protocol ensured strong security against known attacks and protected patient privacy using pseudonyms instead of real IDs.https://www.mdpi.com/1424-8220/23/12/5518RFID protocolInternet of Healthcare ThingsRFID authenticationIoT security
spellingShingle Muhammad Ayaz Khan
Subhan Ullah
Tahir Ahmad
Khwaja Jawad
Attaullah Buriro
Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
Sensors
RFID protocol
Internet of Healthcare Things
RFID authentication
IoT security
title Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
title_full Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
title_fullStr Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
title_full_unstemmed Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
title_short Enhancing Security and Privacy in Healthcare Systems Using a Lightweight RFID Protocol
title_sort enhancing security and privacy in healthcare systems using a lightweight rfid protocol
topic RFID protocol
Internet of Healthcare Things
RFID authentication
IoT security
url https://www.mdpi.com/1424-8220/23/12/5518
work_keys_str_mv AT muhammadayazkhan enhancingsecurityandprivacyinhealthcaresystemsusingalightweightrfidprotocol
AT subhanullah enhancingsecurityandprivacyinhealthcaresystemsusingalightweightrfidprotocol
AT tahirahmad enhancingsecurityandprivacyinhealthcaresystemsusingalightweightrfidprotocol
AT khwajajawad enhancingsecurityandprivacyinhealthcaresystemsusingalightweightrfidprotocol
AT attaullahburiro enhancingsecurityandprivacyinhealthcaresystemsusingalightweightrfidprotocol