{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,2]],"date-time":"2026-06-02T12:25:59Z","timestamp":1780403159659,"version":"3.54.1"},"publisher-location":"Cham","reference-count":32,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030411022","type":"print"},{"value":"9783030411039","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-41103-9_11","type":"book-chapter","created":{"date-parts":[[2020,2,14]],"date-time":"2020-02-14T15:04:59Z","timestamp":1581692699000},"page":"268-291","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["Optimizing Investments in Cyber Hygiene for Protecting Healthcare Users"],"prefix":"10.1007","author":[{"given":"Sakshyam","family":"Panda","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Emmanouil","family":"Panaousis","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"George","family":"Loukas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Christos","family":"Laoudias","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2020,2,15]]},"reference":[{"key":"11_CR1","doi-asserted-by":"crossref","unstructured":"Mohammadi, F., Panou, A., Ntantogian, C., Karapistoli, E., Panaousis, E., Xenakis, C.: CUREX: seCUre and pRivate hEalth data eXchange. In: IEEE\/WIC\/ACM International Conference on Web Intelligence, vol. 24800, pp. 263\u2013268 (2019)","DOI":"10.1145\/3358695.3361753"},{"key":"11_CR2","doi-asserted-by":"publisher","first-page":"113160","DOI":"10.1016\/j.dss.2019.113160","volume":"128","author":"A Vishwanath","year":"2019","unstructured":"Vishwanath, A., et al.: Cyber hygiene: the concept, its measure, and its initial tests. Decis. Supp. Syst. 128, 113160 (2019)","journal-title":"Decis. Supp. Syst."},{"key":"11_CR3","doi-asserted-by":"publisher","first-page":"13","DOI":"10.1016\/j.dss.2016.02.012","volume":"86","author":"A Fielder","year":"2016","unstructured":"Fielder, A., Panaousis, E., Malacaria, P., Hankin, C., Smeraldi, F.: Decision support approaches for cyber security investment. Decis. Supp. Syst. 86, 13\u201323 (2016)","journal-title":"Decis. Supp. Syst."},{"issue":"1","key":"11_CR4","doi-asserted-by":"publisher","first-page":"1","DOI":"10.3233\/THC-161263","volume":"25","author":"CS Kruse","year":"2017","unstructured":"Kruse, C.S., Frederick, B., Jacobson, T., Monticone, D.K.: Cybersecurity in healthcare: a systematic review of modern threats and trends. Technol. Health Care 25(1), 1\u201310 (2017)","journal-title":"Technol. Health Care"},{"key":"11_CR5","series-title":"TELe-Health","doi-asserted-by":"publisher","first-page":"49","DOI":"10.1007\/978-3-319-28661-7_4","volume-title":"New Perspectives in Medical Records","author":"O Solans Fern\u00e1ndez","year":"2017","unstructured":"Solans Fern\u00e1ndez, O., et al.: Shared medical record, personal health folder and health and social integrated care in catalonia: ICT services for integrated care. In: Rinaldi, G. (ed.) New Perspectives in Medical Records. T, pp. 49\u201364. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-28661-7_4"},{"key":"11_CR6","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1016\/j.maturitas.2018.04.008","volume":"113","author":"L Coventry","year":"2018","unstructured":"Coventry, L., Branley, D.: Cybersecurity in healthcare: a narrative review of trends, threats and ways forward. Maturitas 113, 48\u201352 (2018)","journal-title":"Maturitas"},{"issue":"6","key":"11_CR7","doi-asserted-by":"publisher","first-page":"22","DOI":"10.1109\/MC.2016.185","volume":"49","author":"D Kotz","year":"2016","unstructured":"Kotz, D., Gunter, C.A., Kumar, S., Weiner, J.P.: Privacy and security in mobile health: a research agenda. Computer 49(6), 22\u201330 (2016)","journal-title":"Computer"},{"key":"11_CR8","volume-title":"Cyber-Physical Attacks: A Growing Invisible Threat","author":"G Loukas","year":"2015","unstructured":"Loukas, G.: Cyber-Physical Attacks: A Growing Invisible Threat. Butterworth-Heinemann, Oxford (2015)"},{"issue":"8","key":"11_CR9","doi-asserted-by":"publisher","first-page":"347","DOI":"10.3928\/00220124-20160715-03","volume":"47","author":"L Billingsley","year":"2016","unstructured":"Billingsley, L., McKee, S.A.: Cybersecurity in the clinical setting: Nurses\u2019 role in the expanding \u201cinternet of things\". J. Contin. Educ. Nurs. 47(8), 347\u2013349 (2016)","journal-title":"J. Contin. Educ. Nurs."},{"key":"11_CR10","doi-asserted-by":"publisher","first-page":"101","DOI":"10.1016\/j.cose.2018.02.020","volume":"76","author":"R Heartfield","year":"2018","unstructured":"Heartfield, R., Loukas, G.: Detecting semantic social engineering attacks with the weakest link: Implementation and empirical evaluation of a human-as-a-security-sensor framework. Comput. Secur. 76, 101\u2013127 (2018)","journal-title":"Comput. Secur."},{"issue":"4","key":"11_CR11","doi-asserted-by":"publisher","first-page":"21","DOI":"10.1109\/MC.2018.2888766","volume":"52","author":"JM Such","year":"2019","unstructured":"Such, J.M., Ciholas, P., Rashid, A., Vidler, J., Seabrook, T.: Basic cyber hygiene: does it work? Computer 52(4), 21\u201331 (2019)","journal-title":"Computer"},{"issue":"12","key":"11_CR12","doi-asserted-by":"publisher","first-page":"e11210","DOI":"10.2196\/11210","volume":"6","author":"L Zhou","year":"2018","unstructured":"Zhou, L., Parmanto, B., Alfikri, Z., Bao, J.: A mobile app for assisting users to make informed selections in security settings for protecting personal health data: development and feasibility study. JMIR mHealth uHealth 6(12), e11210 (2018)","journal-title":"JMIR mHealth uHealth"},{"key":"11_CR13","first-page":"707","volume":"43","author":"S Furnell","year":"1997","unstructured":"Furnell, S., Sanders, P., Warren, M.: Addressing information security training and awareness within the european healthcare community. Stud. Health Technol. Inform. 43, 707\u2013711 (1997)","journal-title":"Stud. Health Technol. Inform."},{"issue":"3","key":"11_CR14","doi-asserted-by":"crossref","first-page":"37","DOI":"10.1145\/2835375","volume":"48","author":"R Heartfield","year":"2016","unstructured":"Heartfield, R., Loukas, G.: A taxonomy of attacks and a survey of defence mechanisms for semantic social engineering attacks. ACM Comput. Surv. 48(3), 37 (2016)","journal-title":"ACM Comput. Surv."},{"key":"11_CR15","doi-asserted-by":"publisher","first-page":"6910","DOI":"10.1109\/ACCESS.2016.2616285","volume":"4","author":"R Heartfield","year":"2016","unstructured":"Heartfield, R., Loukas, G., Gan, D.: You are probably not the weakest link: towards practical prediction of susceptibility to semantic social engineering attacks. IEEE Access 4, 6910\u20136928 (2016)","journal-title":"IEEE Access"},{"key":"11_CR16","doi-asserted-by":"crossref","unstructured":"Wash, R., Cooper, M.M.: Who provides phishing training?: facts, stories, and people like me. In Proceedings of the 2018 CHI Conference on Human Factors in Computing Systems, p. 492. ACM (2018)","DOI":"10.1145\/3173574.3174066"},{"issue":"4","key":"11_CR17","doi-asserted-by":"publisher","first-page":"438","DOI":"10.1145\/581271.581274","volume":"5","author":"LA Gordon","year":"2002","unstructured":"Gordon, L.A., Loeb, M.P.: The economics of information security investment. ACM Trans. Inf. Syst. Secur. (TISSEC) 5(4), 438\u2013457 (2002)","journal-title":"ACM Trans. Inf. Syst. Secur. (TISSEC)"},{"issue":"2","key":"11_CR18","doi-asserted-by":"publisher","first-page":"34","DOI":"10.3390\/g9020034","volume":"9","author":"A Fielder","year":"2018","unstructured":"Fielder, A., K\u00f6nig, S., Panaousis, E., Schauer, S., Rass, S.: Risk assessment uncertainties in cybersecurity investments. Games 9(2), 34 (2018)","journal-title":"Games"},{"key":"11_CR19","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"15","DOI":"10.1007\/978-3-642-55415-5_2","volume-title":"ICT Systems Security and Privacy Protection","author":"A Fielder","year":"2014","unstructured":"Fielder, A., Panaousis, E., Malacaria, P., Hankin, C., Smeraldi, F.: Game Theory Meets Information Security Management. In: Cuppens-Boulahia, N., Cuppens, F., Jajodia, S., Abou El Kalam, A., Sans, T. (eds.) SEC 2014. IAICT, vol. 428, pp. 15\u201329. Springer, Heidelberg (2014). https:\/\/doi.org\/10.1007\/978-3-642-55415-5_2"},{"issue":"1\u20132","key":"11_CR20","doi-asserted-by":"publisher","first-page":"405","DOI":"10.1007\/s10479-016-2209-1","volume":"248","author":"A Nagurney","year":"2017","unstructured":"Nagurney, A., Daniele, P., Shukla, S.: A supply chain network game theory model of cybersecurity investments with nonlinear budget constraints. Ann. Oper. Res. 248(1\u20132), 405\u2013427 (2017)","journal-title":"Ann. Oper. Res."},{"key":"11_CR21","doi-asserted-by":"publisher","first-page":"101173","DOI":"10.1016\/j.pacfin.2019.101173","volume":"57","author":"SS Wang","year":"2019","unstructured":"Wang, S.S.: Integrated framework for information security investment and cyber insurance. Pac.-Basin Finance J. 57, 101173 (2019)","journal-title":"Pac.-Basin Finance J."},{"key":"11_CR22","doi-asserted-by":"publisher","first-page":"12175","DOI":"10.1109\/ACCESS.2017.2773366","volume":"6","author":"M Chronopoulos","year":"2017","unstructured":"Chronopoulos, M., Panaousis, E., Grossklags, J.: An options approach to cybersecurity investment. IEEE Access 6, 12175\u201312186 (2017)","journal-title":"IEEE Access"},{"key":"11_CR23","series-title":"IFIP Advances in Information and Communication Technology","doi-asserted-by":"publisher","first-page":"187","DOI":"10.1007\/978-3-319-99828-2_14","volume-title":"ICT Systems Security and Privacy Protection","author":"F Martinelli","year":"2018","unstructured":"Martinelli, F., Uuganbayar, G., Yautsiukhin, A.: Optimal security configuration for cyber insurance. In: Janczewski, L.J., Kuty\u0142owski, M. (eds.) SEC 2018. IAICT, vol. 529, pp. 187\u2013200. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-99828-2_14"},{"key":"11_CR24","volume-title":"Principles of Information Security","author":"ME Whitman","year":"2011","unstructured":"Whitman, M.E., Mattord, H.J.: Principles of Information Security. Cengage Learning, Boston (2011)"},{"key":"11_CR25","doi-asserted-by":"crossref","unstructured":"Smeraldi, F., Malacaria, P.: How to spend it: optimal investment for cyber security. In: Proceedings of the 1st International Workshop on Agents and CyberSecurity, p. 8. ACM (2014)","DOI":"10.1145\/2602945.2602952"},{"key":"11_CR26","volume-title":"A Course in Game Theory","author":"MJ Osborne","year":"1994","unstructured":"Osborne, M.J., Rubinstein, A.: A Course in Game Theory. MIT Press, Cambridge (1994)"},{"key":"11_CR27","doi-asserted-by":"publisher","DOI":"10.1515\/9781400829460","volume-title":"Theory of Games and Economic Behavior (60th Anniversary Commemorative Edition)","author":"J Neumann Von","year":"2007","unstructured":"Von Neumann, J., Morgenstern, O.: Theory of Games and Economic Behavior (60th Anniversary Commemorative Edition). Princeton University Press, Princeton (2007)"},{"key":"11_CR28","doi-asserted-by":"crossref","unstructured":"Nash, J.F.: Equilibrium points in n-person games. In: Proceedings of the National Academy of Sciences, pp. 48\u201349 (1950)","DOI":"10.1073\/pnas.36.1.48"},{"key":"11_CR29","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-17197-0","volume-title":"Network Security: A Decision and Game-Theoretic Approach","author":"T Alpcan","year":"2010","unstructured":"Alpcan, T., Basar, T.: Network Security: A Decision and Game-Theoretic Approach. Cambridge University Press, Cambridge (2010)"},{"key":"11_CR30","volume-title":"Dynamic Noncooperative Game Theory","author":"T Basar","year":"1995","unstructured":"Basar, T., Olsder, G.J.: Dynamic Noncooperative Game Theory. Academic Press, London (1995)"},{"issue":"9","key":"11_CR31","doi-asserted-by":"publisher","first-page":"2271","DOI":"10.1016\/j.cor.2004.03.002","volume":"32","author":"D Pisinger","year":"2005","unstructured":"Pisinger, D.: Where are the hard knapsack problems? Comput. Oper. Res. 32(9), 2271\u20132284 (2005)","journal-title":"Comput. Oper. Res."},{"issue":"5","key":"11_CR32","doi-asserted-by":"publisher","first-page":"312","DOI":"10.3390\/e20050312","volume":"20","author":"S Rass","year":"2018","unstructured":"Rass, S., K\u00f6nig, S.: Password security as a game of entropies. Entropy 20(5), 312 (2018)","journal-title":"Entropy"}],"container-title":["Lecture Notes in Computer Science","From Lambda Calculus to Cybersecurity Through Program Analysis"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-41103-9_11","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,2,27]],"date-time":"2021-02-27T15:03:11Z","timestamp":1614438191000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-41103-9_11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030411022","9783030411039"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-41103-9_11","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"15 February 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}