Thomas Hupperich’s research while affiliated with Ruhr University Bochum and other places

What is this page?


This page lists works of an author who doesn't have a ResearchGate profile or hasn't added the works to their profile yet. It is automatically generated from public (personal) data to further our legitimate goal of comprehensive and accurate scientific recordkeeping. If you are this author and want this page removed, please let us know.

Publications (1)


Figure 1: Common previous proposal: encryption and decryption with chip & pin.
Figure 2: Our proposal: time-independent encryption and decryption with transactioncodes
Figure 3: system architecture  
Figure 4: encryption protocol  
Figure 5: decryption protocol  
Flexible patient-controlled security for electronic health records
  • Article
  • Full-text available

January 2012

·

384 Reads

·

32 Citations

Thomas Hupperich

·

Hans Löhr

·

·

Electronic health records (EHR) are a convenient method to exchange medical information of patients between different healthcare providers. In many countries privacy laws require to protect the confidentiality of these data records and let the patient control the access to them. Existing approaches to protect the privacy of EHRs are either insufficient for these strict laws or they are too restrictive in their usage. For example, smartcard-based encryption systems require the patient to be always present to authorize access to medical records. However, this does not allow a physician to access an EHR of a patient who is unable to show up in person. In this paper, we propose a security architecture for EHR infrastructures that provides more flexibility but retains the security of patient-controlled encryption. In our proposal patients are able to authorize access to their records remotely (e.g. via phone) and time-independent for later processing by the physician. The security of our approach relies on modern cryptographic schemes and their incorporation into an EHR infrastructure. The adoption of our security architecture would allow to fulfill strict privacy laws while relaxing usage restrictions of existing security protections.

Download

Citations (1)


... A mechanism to reduce the linkability between patients and medical records is proposed by Li et al. [7]. Hupperich et al. [10] mentioned out that the existing privacy protection is either too strict and requires patients to be available to authorize access to medical records or is insufficient and does not truly realize privacy protection. Therefore, it is necessary to provide more flexibility for whole system to ensure that doctors can access medical records without the presence of patients. ...

Reference:

A Privacy-Preserving Medical Data Sharing Scheme Based on Blockchain
Flexible patient-controlled security for electronic health records