POSTER: Data Leakage Detection for Health Information System based on Memory Introspection

Sanoop Mallissery, Min Chieh Wu, Chun An Bau, Guan Zhang Huang, Chen Yu Yang, Wei Chun Lin, Yu Sung Wu*

*Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The abundance of highly sensitive personal information in the Health Information System (HIS) has made it a prime target of data breach attacks. However, securing the system with existing Data Leakage Prevention (DLP) solutions is difficult due to a lack of security perimeter and diverse composition of software components. We propose the use of hypervisor-based memory introspection for implementing data leakage detection in such an environment. The approach looks for the presence of sensitive raw data in the memory of both the client machines and the server machines, transcending the dependence of pre-existing security perimeters. It is inherently compatible with different types of application software and robust against transport or at-rest data encryption. A prototype has been built on the Bareflank hypervisor and the OpenEMR platform. The evaluation results confirmed the effectiveness of the approach.

Original languageEnglish
Title of host publicationProceedings of the 15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020
PublisherAssociation for Computing Machinery, Inc
Pages898-900
Number of pages3
ISBN (Electronic)9781450367509
DOIs
StatePublished - 5 Oct 2020
Event15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020 - Virtual, Online, Taiwan
Duration: 5 Oct 20209 Oct 2020

Publication series

NameProceedings of the 15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020

Conference

Conference15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020
CountryTaiwan
CityVirtual, Online
Period5/10/209/10/20

Keywords

  • convolutional neural networks
  • data privacy
  • electronic health record
  • health information system
  • memory inspection
  • virtualization

Fingerprint Dive into the research topics of 'POSTER: Data Leakage Detection for Health Information System based on Memory Introspection'. Together they form a unique fingerprint.

Cite this