پدافند الکترونیکی و سایبری

پدافند الکترونیکی و سایبری

طرح تطبیق وظایف با حفظ حریم خصوصی کاربران بر اساس جستجوی شباهت جهت مشاوره پزشکی

نوع مقاله : مقاله پژوهشی

نویسندگان
1 گروه علوم داده ها و کامپیوتر، دانشکده علوم ریاضی، دانشگاه شهید بهشتی، تهران، ایران
2 پژوهشکده علوم اطلاعات، گروه پژوهشی زبان‌شناسی رایانشی، پژوهشگاه علوم و فناوری اطلاعات ایران (ایرانداک)، تهران، ایران
3 دانشکده علوم ریاضی، گروه علوم داده‌ها و کامپیوتر ، دانشگاه شهید بهشتی، تهران، ایران
چکیده
با گسترش روزافزون خدمات درمانی غیرحضوری، مدیریت و دسترسی به اطلاعات پزشکان و بیماران از طریق پرونده‌های الکترونیکی سلامت فراهم شده است. یکی از مهم‌ترین مزایای این سیستم‌ها، امکان تطابق بین بیماران و پزشکان بر اساس نیازهای خاص بیماران است که علاوه بر کاهش زمان انتظار، به بهبود کیفیت خدمات درمانی نیز کمک می‌کند. بااین‌حال، چالش‌های مرتبط با حفظ حریم خصوصی بیماران و پزشکان در فرآیند ذخیره‌سازی و انتقال داده پزشکی روی سرورها، متأثر از این نگرانی است که اطلاعات حساس بیماران درز پیدا کرده یا اطلاعات پزشکان دستخوش حملات مهاجمان قرار گیرد؛ بنابراین ایجاد سیستم تطابق کارآمدی که امنیت داده‌ها را تضمین کند، به یک نیاز اساسی تبدیل شده است. به‌منظور مقابله با این چالش‌ها، استفاده از ابزارهای رمزنگاری با هدف محافظت از داده‌ها قبل از بارگذاری آن‌ها روی سرورهای ابری یا سایر سیستم‌های ذخیره‌سازی، به‌عنوان راهکار مؤثری پیشنهاد شده است. با وجود این، روش‌های سنتی رمزنگاری به‌دلیل عدم امکان جست‌وجو و انجام عملیات روی داده‌های رمزگذاری‌شده، محدودیت‌هایی در ارائه خدمات بهینه ایجاد می‌کنند؛ بنابراین، در این مقاله، مکانیزم نوینی برای ایجاد تطابق امن و کارآمد بین بیماران و پزشکان ارائه‌شده است که با درنظرگرفتن نیازهای بیمار، امکان جست‌وجوی چند کلیدواژه روی داده‌های رمزگذاری‌شده فراهم می‌کند. در طرح پیشنهادی از روشی نوین بر پایه محاسبه ضرب داخلی برای تطابق و اندازه‌گیری شباهت بین دو بردار استفاده شده است که علاوه بر بهبود کارایی، دقت نتایج حاصل‌شده را نیز افزایش می‌دهد. سرعت جست‌وجو از دیگر مزایای طرح پیشنهادی است که باتوجه به پیچیدگی محاسباتی مرتبه O(n) طرح حاصل می‌شود و به بهبود تجربه کاربری پزشکان و افزایش رضایتمندی بیماران منجر می‌شود. تجزیه و تحلیل‌های امنیتی انجام‌شده نشان می‌دهند که طرح ارائه‌شده از حریم خصوصی داده‌های پزشکان و بیماران به‌طور مؤثری محافظت می‌کند و هیچ اطلاعاتی را فاش نمی‌سازد. در مقایسه با مدل [1] با پیچیدگی زمانی O(nmk)، مدل پیشنهادی با کاهش چشمگیر پیچیدگی به O(n)، دقت تطبیق بالاتر و سرعت جست‌وجوی بهینه‌تری را ارائه می‌دهد. همچنین، با پشتیبانی از بردارهای وزن‌دار، چندکلیدواژه و بهره‌گیری از ASPE، سطح امنیتی بالاتری در برابر حملات KPA و CPA فراهم می‌سازد.
کلیدواژه‌ها
موضوعات

عنوان مقاله English

Privacy-Preserving Task Matching Scheme Based on Similarity Search for Medical Consultation

نویسندگان English

Faezeh Nayyeri 1
Nasrollah Pakniat 2
Ziba Eslami 3
1 Department of Data and Computer Science, Faculty of Mathematical Sciences, Shahid Beheshti University, Tehran, Iran
2 Assistant Professor, Iranian Research Institute for Information Science and Technology of Iran (IranDoc), Tehran, Iran
3 Faculty of Mathematical Sciences, Department of Data and Computer Science, Shahid Beheshti University, Tehran, Iran
چکیده English

With the growing expansion of remote healthcare services, the management and access to patient and physician information through electronic health records (EHRs) have become increasingly feasible. One of the most significant advantages of such systems is the ability to match patients with physicians based on patients’ specific needs, which not only reduces waiting times but also improves the overall quality of medical services. However, privacy concerns related to the storage and transmission of sensitive medical data on servers pose serious challenges, including the risk of patient data leakage or exposure of physician information to malicious attacks. Consequently, the development of a secure and efficient matching system that ensures data confidentiality has become a critical necessity.

To address these challenges, the use of cryptographic tools for protecting data prior to uploading it to cloud servers or other storage platforms has been proposed as an effective solution. Nevertheless, conventional encryption methods impose limitations on service optimization due to their inability to support search and operations over encrypted data. Therefore, this paper proposes a novel mechanism for secure and efficient patient-physician matching, enabling multi-keyword search over encrypted data in accordance with patient-specific requirements.

The proposed scheme employs an innovative technique based on inner product computation to facilitate similarity measurement and matching between two vectors, which not only enhances efficiency but also improves the accuracy of the results. Another key advantage of the proposed design is its fast search capability, achieved through a computational complexity of O(n), which contributes to better user experience for physicians and higher patient satisfaction. Security analysis confirms that the proposed scheme effectively preserves the privacy of both patient and physician data without disclosing any sensitive information. Compared to the model presented in [1] with a time complexity of 𝑂(𝑛𝑚𝑘), the proposed scheme significantly reduces the computational complexity to 𝑂(𝑛) while achieving higher matching accuracy and more efficient search speed. Furthermore, by supporting weighted vectors, multi-keyword queries, and employing ASPE, it offers enhanced security against KPA and CPA attacks.

کلیدواژه‌ها English

Searchable Encryption
Task Matching
Privacy-Preserving
Similarity Search

مقالات آماده انتشار، پذیرفته شده
انتشار آنلاین از 09 اردیبهشت 1405

  • تاریخ دریافت 23 دی 1404
  • تاریخ بازنگری 04 اسفند 1404
  • تاریخ پذیرش 12 فروردین 1405
  • تاریخ انتشار 09 اردیبهشت 1405