{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,27]],"date-time":"2026-06-27T09:44:47Z","timestamp":1782553487993,"version":"3.54.5"},"reference-count":25,"publisher":"Springer Science and Business Media LLC","issue":"3-4","license":[{"start":{"date-parts":[[2020,3,7]],"date-time":"2020-03-07T00:00:00Z","timestamp":1583539200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2020,3,7]],"date-time":"2020-03-07T00:00:00Z","timestamp":1583539200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"name":"Amsterdam UMC"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Ann. Telecommun."],"published-print":{"date-parts":[[2020,4]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>In emergency care, fast and efficient treatment is vital. The availability of Electronic Medical Records (EMR) allows healthcare professionals to access a patient\u2019s data promptly, which facilitates the decision-making process and saves time by not repeating medical procedures. Unfortunately, the complete EMR of a patient is often not available during an emergency situation to all treatment teams. Cloud services emerge as a promising solution to this problem by allowing ubiquitous access to information. However, EMR storage and sharing through clouds raise several concerns about security and privacy. To this end, we propose a protocol through which all treatment teams involved in the emergency care can securely decrypt relevant data from the patient\u2019s EMR and add new information about the patient\u2019s status. Furthermore, our protocol ensures that treatment teams will only access the patient\u2019s EMR for the period during which the patient is under their care. Finally, we present a formal security analysis of our protocol and some initial experimental results.<\/jats:p>","DOI":"10.1007\/s12243-020-00759-2","type":"journal-article","created":{"date-parts":[[2020,3,7]],"date-time":"2020-03-07T09:02:57Z","timestamp":1583571777000},"page":"103-119","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":22,"title":["A break-glass protocol based on ciphertext-policy attribute-based encryption to access medical records in the cloud"],"prefix":"10.1007","volume":"75","author":[{"given":"Marcela","family":"T. de Oliveira","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Alexandros","family":"Bakas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Eugene","family":"Frimpong","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Adrien E. D.","family":"Groot","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Henk A.","family":"Marquering","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Antonis","family":"Michalas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Silvia D.","family":"Olabarriaga","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2020,3,7]]},"reference":[{"issue":"5","key":"759_CR1","doi-asserted-by":"publisher","first-page":"1103","DOI":"10.1377\/hlthaff.24.5.1103","volume":"24","author":"R Hillestad","year":"2005","unstructured":"Hillestad R, Bigelow J, Bower A, Girosi F, Meili R, Scoville R, Taylor R (2005) Can electronic medical record systems transform health care? Potential health benefits, savings, and costs. Health Aff 24(5):1103\u20131117","journal-title":"Health Aff"},{"issue":"4","key":"759_CR2","doi-asserted-by":"publisher","first-page":"1431","DOI":"10.1109\/JBHI.2014.2300846","volume":"18","author":"A Abbas","year":"2014","unstructured":"Abbas A, Khan SU (2014) A review on the state-of-the-art privacy-preserving approaches in the e-health clouds. IEEE J Biomed Health Inform 18(4):1431\u20131441","journal-title":"IEEE J Biomed Health Inform"},{"key":"759_CR3","doi-asserted-by":"crossref","unstructured":"Mashima D, Ahamad M (2012) Enhancing accountability of electronic health 660 record usage via patient-centric monitoring, in: Proceedings of the 2nd ACM SIGHIT International Health Informatics Symposium, ACM, pp 409\u2013418","DOI":"10.1145\/2110363.2110410"},{"key":"759_CR4","doi-asserted-by":"crossref","unstructured":"Zhang R, Liu L (2010) Security models and requirements for healthcare application clouds, in: 2010 IEEE 3rd International Conference on cloud Computing, IEEE, pp 268\u2013275","DOI":"10.1109\/CLOUD.2010.62"},{"issue":"1","key":"759_CR5","doi-asserted-by":"publisher","first-page":"263","DOI":"10.1161\/01.STR.0000196957.55928.ab","volume":"37","author":"JL Saver","year":"2006","unstructured":"Saver JL (2006) Time is brain-quantified. Stroke 37(1):263\u2013266","journal-title":"Stroke"},{"key":"759_CR6","doi-asserted-by":"crossref","unstructured":"Li M, Yu S, Ren K, Lou W (2010) Securing personal health records in cloud computing: patient-centric and fine-grained data access control in multi-owner settings. In: International conference on security and privacy in communication systems. Springer, pp 89\u2013106","DOI":"10.1007\/978-3-642-16161-2_6"},{"key":"759_CR7","doi-asserted-by":"crossref","unstructured":"Brucker AD, Petritsch H, Weber SG (2010) Attribute-based encryption with break-glass. In: IFIP International Workshop on Information Security Theory and Practices. Springer, pp 237\u2013244","DOI":"10.1007\/978-3-642-12368-9_18"},{"key":"759_CR8","doi-asserted-by":"publisher","first-page":"567","DOI":"10.1016\/j.ins.2018.02.005","volume":"479","author":"Y Yang","year":"2019","unstructured":"Yang Y, Zheng X, Guo W, Liu X, Chang V (2019) Privacy-preserving smart iot-based healthcare big data storage and self-adaptive access control system. Inf Sci 479:567\u2013592","journal-title":"Inf Sci"},{"key":"759_CR9","doi-asserted-by":"crossref","unstructured":"Scafuro A (2019) Break-glass encryption. In: IACR International Workshop on Public Key Cryptography. Springer, pp 34\u201362","DOI":"10.1007\/978-3-030-17259-6_2"},{"key":"759_CR10","doi-asserted-by":"crossref","unstructured":"Povey D (1999) Optimistic security: a new access control paradigm. In: Proceedings of the 1999 workshop on New security paradigms. ACM, pp 40\u201345","DOI":"10.1145\/335169.335188"},{"key":"759_CR11","doi-asserted-by":"crossref","first-page":"197","DOI":"10.1145\/1542207.1542239","volume-title":"Proceedings of the 14th ACM Symposium on Access Control Models and Technologies","author":"AD Brucker","year":"2009","unstructured":"Brucker AD, Petritsch H (2009) Extending access control models with break-glass. In: Proceedings of the 14th ACM Symposium on Access Control Models and Technologies. SACMAT \u201909, ACM, New York, pp 197\u2013206"},{"key":"759_CR12","doi-asserted-by":"crossref","unstructured":"Zhang T, Chow SS, Sun J (2016) Password-controlled encryption with accountable break-glass access. In: Proceedings of the 11th ACM on Asia Conference on Computer and Communications Security. ACM","DOI":"10.1145\/2897845.2897869"},{"key":"759_CR13","doi-asserted-by":"crossref","unstructured":"Marinovic S, Craven R, Ma J, Dulay N (2011) Rumpole: a flexible break-glass access control model. In: Proceedings of the 16th ACM symposium on Access control models and technologies. ACM","DOI":"10.1145\/1998441.1998453"},{"key":"759_CR14","doi-asserted-by":"crossref","unstructured":"Wallner D, Harder E, Agee R et al (1999) Key management for multicast: issues and architectures. Tech. rep., RFC 2627","DOI":"10.17487\/rfc2627"},{"key":"759_CR15","doi-asserted-by":"crossref","unstructured":"Canetti R, Garay J, Itkis G, Micciancio D, Naor M, Pinkas B (1999) Multicast security: a taxonomy and some efficient constructions. In: IEEE INFOCOM\u2019 99. Conference on Computer Communications. Proceedings. Eighteenth Annual Joint Conference of the IEEE Computer and Communications Societies. The Future is Now (Cat. No. 99CH36320), vol 2. IEEE, pp 708\u2013716","DOI":"10.1109\/INFCOM.1999.751457"},{"issue":"3","key":"759_CR16","doi-asserted-by":"publisher","first-page":"309","DOI":"10.1145\/937503.937506","volume":"35","author":"S Rafaeli","year":"2003","unstructured":"Rafaeli S, Hutchison D (2003) A survey of key management for secure group communication. ACM Comput Surv (CSUR) 35(3):309\u2013329","journal-title":"ACM Comput Surv (CSUR)"},{"key":"759_CR17","doi-asserted-by":"publisher","first-page":"321","DOI":"10.1109\/SP.2007.11","volume-title":"Proceedings of the 2007 IEEE Symposium on Security and Privacy, SP\u201907","author":"J Bethencourt","year":"2007","unstructured":"Bethencourt J, Sahai A, Waters B (2007) Ciphertext-policy attribute-based encryption. In: Proceedings of the 2007 IEEE Symposium on Security and Privacy, SP\u201907. IEEE Computer Society, Washington, DC, pp 321\u2013334. https:\/\/doi.org\/10.1109\/SP.2007.11"},{"key":"759_CR18","doi-asserted-by":"crossref","unstructured":"Michalas A (2016) Sharing in the rain: secure and efficient data sharing for the cloud, in: 2016 11th International Conference for Internet Technology and Secured Transactions (ICITST). IEEE","DOI":"10.1109\/ICITST.2016.7856693"},{"issue":"3","key":"759_CR19","doi-asserted-by":"publisher","first-page":"405","DOI":"10.1109\/TCC.2016.2525991","volume":"5","author":"N Paladi","year":"2017","unstructured":"Paladi N, Gehrmann C, Michalas A (2017) Providing user security guarantees in public infrastructure clouds. IEEE Trans Cloud Comput 5(3):405\u2013419. https:\/\/doi.org\/10.1109\/TCC.2016.2525991","journal-title":"IEEE Trans Cloud Comput"},{"key":"759_CR20","doi-asserted-by":"crossref","unstructured":"Dolev D, Yao AC On the security of public key protocols, Information Theory, IEEE Transactions on 29(2)","DOI":"10.1109\/TIT.1983.1056650"},{"key":"759_CR21","doi-asserted-by":"publisher","first-page":"146","DOI":"10.1145\/3297280.3297297","volume-title":"Proceedings of the 34th ACM\/SIGAPP Symposium on Applied Computing, SAC \u201919","author":"A Michalas","year":"2019","unstructured":"Michalas A (2019) The lord of the shares: combining attribute-based encryption and searchable encryption for flexible data sharing. In: Proceedings of the 34th ACM\/SIGAPP Symposium on Applied Computing, SAC \u201919. ACM, New York, pp 146\u2013155. https:\/\/doi.org\/10.1145\/3297280.3297297"},{"key":"759_CR22","doi-asserted-by":"publisher","unstructured":"Oliveira MT, Michalas A, Groot AED, Marquering HA, Olabarriaga SD (2019) Red alert: break-glass protocol to access encrypted medical records in the cloud. In: HealthCom 2019- international conference on e-health networking, applications and services, IEEE. pp 1\u20137. https:\/\/doi.org\/10.1109\/HealthCom46333.2019.9009598","DOI":"10.1109\/HealthCom46333.2019.9009598"},{"key":"759_CR23","doi-asserted-by":"publisher","unstructured":"Bethencourt J, Sahai A, Waters B (2007) Ciphertext-policy attribute-based encryption. In: Proceedings - S and P 2007. Proceedings - IEEE Symposium on Security and Privacy, pp 321\u2013334. https:\/\/doi.org\/10.1109\/SP.2007.11","DOI":"10.1109\/SP.2007.11"},{"key":"759_CR24","doi-asserted-by":"publisher","unstructured":"Bakas A, Michalas A (2019) Modern family: a revocable hybrid encryption scheme based on attribute-based encryption, symmetric searchable encryption and SGX. In: Chen S, Choo KK, Fu X, Lou W, Mohaisen A (eds) Security and privacy in communication networks. securecomm 2019. Lecture notes of the institute for computer sciences, social informatics and telecommunications engineering, vol 305. Springer, Cham.\u00a0https:\/\/doi.org\/10.1007\/978-3-030-37231-6_28\u00a0","DOI":"10.1007\/978-3-030-37231-6_28"},{"key":"759_CR25","doi-asserted-by":"publisher","unstructured":"Michalas A, Bakas A, Dang HV, Zalitko A (2019) MicroSCOPE: enabling access control in searchable encryption with the use of attribute-based encryption and SGX. In: Askarov A, Hansen R, Rafnsson W (eds) Secure IT systems. NordSec 2019. Lecture notes in computer science, vol 11875. Springer, Cham.\u00a0https:\/\/doi.org\/10.1007\/978-3-030-35055-0_16","DOI":"10.1007\/978-3-030-35055-0_16"}],"container-title":["Annals of Telecommunications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12243-020-00759-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s12243-020-00759-2\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12243-020-00759-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,28]],"date-time":"2023-09-28T08:22:26Z","timestamp":1695889346000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s12243-020-00759-2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,3,7]]},"references-count":25,"journal-issue":{"issue":"3-4","published-print":{"date-parts":[[2020,4]]}},"alternative-id":["759"],"URL":"https:\/\/doi.org\/10.1007\/s12243-020-00759-2","relation":{},"ISSN":["0003-4347","1958-9395"],"issn-type":[{"value":"0003-4347","type":"print"},{"value":"1958-9395","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,3,7]]},"assertion":[{"value":"5 July 2019","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"1 December 2019","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"7 March 2020","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}