An API for secure sharing of immunization records in a public blockchain

Electronic Health Records (EHRs) are faced with both confidentiality breach and accessibility problems. EHR systems with mediocre security can be vulnerable to malicious attacks that might lead to sensitive healthcare data being accessible to unauthorized users. In order to protect the privacy and c...

Full description

Saved in:
Bibliographic Details
Main Authors: Javier, Maria Patricia G., Lopez, Earth Wendell B., Marcelo, Gabriel Luis R.
Format: text
Language:English
Published: Animo Repository 2022
Subjects:
Online Access:https://animorepository.dlsu.edu.ph/etdb_comtech/13
https://animorepository.dlsu.edu.ph/context/etdb_comtech/article/1009/viewcontent/An_API_for_secure_sharing_of_immunization_records_in_a_public_blo_Redacted.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: De La Salle University
Language: English
id oai:animorepository.dlsu.edu.ph:etdb_comtech-1009
record_format eprints
spelling oai:animorepository.dlsu.edu.ph:etdb_comtech-10092023-09-12T02:55:14Z An API for secure sharing of immunization records in a public blockchain Javier, Maria Patricia G. Lopez, Earth Wendell B. Marcelo, Gabriel Luis R. Electronic Health Records (EHRs) are faced with both confidentiality breach and accessibility problems. EHR systems with mediocre security can be vulnerable to malicious attacks that might lead to sensitive healthcare data being accessible to unauthorized users. In order to protect the privacy and confidentiality of EHRs against malicious attacks, existing state-of-the-art security mechanisms of EHR systems cause difficulty of access in the records of patients as well as in the sharing process among healthcare players and peers. Integrating blockchain technology into EHRs can improve both accessibility and security of the EHR. However, most public blockchain implementations have limitations when it comes to preserving the privacy and confidentiality of the medical data inside the EHR during data sharing. In this work, an Application Programming Interface (API) with secure sharing functionalities to an existing public blockchain framework as a means to strengthen the privacy and confidentiality of healthcare data upon sharing was developed. The API allows for user registrations with designated roles, record additions, and secure sharing of said records with other users. The study focused on a specific type of EHR, particularly immunization records, and implemented a blockchain-based on BHEEM, a blockchain-based framework for securing health records. Additionally, the study implemented a suitable cryptographic algorithm, AES on the implemented existing framework to strengthen privacy and confidentiality when sharing immunization records. The API was tested for its functionalities: access permission, record sharing, and record retrieval through the use of a client application on a web application wherein the researchers were able to conclude that the API functionalities are working as intended. Additionally, a simple application that utilizes the API was also tested for its security with the use of OWASP ZAP, which resulted in finding five alerts with varying degrees of risk levels. Overall, the developed API was able to utilize blockchain technology for healthcare and provide a secure way of sharing sensitive data by using a combination of access control permissions and cryptography. However, the use of blockchain technology has its disadvantages as well, particularly on the smart contract’s limitation on the number of variables allowed to be processed in a transaction limits the information that can be stored in the blockchain, and its immutability with erroneous inputs. The possibility of using databases alongside blockchain could be a better system implementation that harnesses the strengths of both technologies to create a better overall system. 2022-12-12T08:00:00Z text application/pdf https://animorepository.dlsu.edu.ph/etdb_comtech/13 https://animorepository.dlsu.edu.ph/context/etdb_comtech/article/1009/viewcontent/An_API_for_secure_sharing_of_immunization_records_in_a_public_blo_Redacted.pdf Computer Technology Bachelor's Theses English Animo Repository Application program interfaces (Computer software) Medical records--Data processing Information storage and retrieval systems--Medical records Blockchain (Databases) Computer Sciences Databases and Information Systems
institution De La Salle University
building De La Salle University Library
continent Asia
country Philippines
Philippines
content_provider De La Salle University Library
collection DLSU Institutional Repository
language English
topic Application program interfaces (Computer software)
Medical records--Data processing
Information storage and retrieval systems--Medical records
Blockchain (Databases)
Computer Sciences
Databases and Information Systems
spellingShingle Application program interfaces (Computer software)
Medical records--Data processing
Information storage and retrieval systems--Medical records
Blockchain (Databases)
Computer Sciences
Databases and Information Systems
Javier, Maria Patricia G.
Lopez, Earth Wendell B.
Marcelo, Gabriel Luis R.
An API for secure sharing of immunization records in a public blockchain
description Electronic Health Records (EHRs) are faced with both confidentiality breach and accessibility problems. EHR systems with mediocre security can be vulnerable to malicious attacks that might lead to sensitive healthcare data being accessible to unauthorized users. In order to protect the privacy and confidentiality of EHRs against malicious attacks, existing state-of-the-art security mechanisms of EHR systems cause difficulty of access in the records of patients as well as in the sharing process among healthcare players and peers. Integrating blockchain technology into EHRs can improve both accessibility and security of the EHR. However, most public blockchain implementations have limitations when it comes to preserving the privacy and confidentiality of the medical data inside the EHR during data sharing. In this work, an Application Programming Interface (API) with secure sharing functionalities to an existing public blockchain framework as a means to strengthen the privacy and confidentiality of healthcare data upon sharing was developed. The API allows for user registrations with designated roles, record additions, and secure sharing of said records with other users. The study focused on a specific type of EHR, particularly immunization records, and implemented a blockchain-based on BHEEM, a blockchain-based framework for securing health records. Additionally, the study implemented a suitable cryptographic algorithm, AES on the implemented existing framework to strengthen privacy and confidentiality when sharing immunization records. The API was tested for its functionalities: access permission, record sharing, and record retrieval through the use of a client application on a web application wherein the researchers were able to conclude that the API functionalities are working as intended. Additionally, a simple application that utilizes the API was also tested for its security with the use of OWASP ZAP, which resulted in finding five alerts with varying degrees of risk levels. Overall, the developed API was able to utilize blockchain technology for healthcare and provide a secure way of sharing sensitive data by using a combination of access control permissions and cryptography. However, the use of blockchain technology has its disadvantages as well, particularly on the smart contract’s limitation on the number of variables allowed to be processed in a transaction limits the information that can be stored in the blockchain, and its immutability with erroneous inputs. The possibility of using databases alongside blockchain could be a better system implementation that harnesses the strengths of both technologies to create a better overall system.
format text
author Javier, Maria Patricia G.
Lopez, Earth Wendell B.
Marcelo, Gabriel Luis R.
author_facet Javier, Maria Patricia G.
Lopez, Earth Wendell B.
Marcelo, Gabriel Luis R.
author_sort Javier, Maria Patricia G.
title An API for secure sharing of immunization records in a public blockchain
title_short An API for secure sharing of immunization records in a public blockchain
title_full An API for secure sharing of immunization records in a public blockchain
title_fullStr An API for secure sharing of immunization records in a public blockchain
title_full_unstemmed An API for secure sharing of immunization records in a public blockchain
title_sort api for secure sharing of immunization records in a public blockchain
publisher Animo Repository
publishDate 2022
url https://animorepository.dlsu.edu.ph/etdb_comtech/13
https://animorepository.dlsu.edu.ph/context/etdb_comtech/article/1009/viewcontent/An_API_for_secure_sharing_of_immunization_records_in_a_public_blo_Redacted.pdf
_version_ 1778174392561303552