{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,28]],"date-time":"2026-06-28T07:21:19Z","timestamp":1782631279309,"version":"3.54.5"},"reference-count":64,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2020,6,10]],"date-time":"2020-06-10T00:00:00Z","timestamp":1591747200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2020,6,10]],"date-time":"2020-06-10T00:00:00Z","timestamp":1591747200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"name":"Korea Health Technology R&D Project through the Korea Health Industry Development Institute (KHIDI), funded by the Ministry of Health & Welfare, Republic of Korea","award":["HI19C0811"],"award-info":[{"award-number":["HI19C0811"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["BMC Med Inform Decis Mak"],"published-print":{"date-parts":[[2020,12]]},"abstract":"<jats:title>Abstract<\/jats:title>\n                  <jats:sec>\n                    <jats:title>Background<\/jats:title>\n                    <jats:p>Infectious diseases that can cause epidemics, such as COVID-19, SARS-CoV, and MERS-CoV, constitute a major social issue, with healthcare providers fearing secondary, tertiary, and even quaternary infections. To alleviate this problem, telemedicine is increasingly being viewed as an effective means through which patients can be diagnosed and medications prescribed by doctors via untact Thus, concomitant with developments in information and communication technology (ICT), medical institutions have actively analyzed and applied ICT to medical systems to provide optimal medical services. However, with the convergence of these diverse technologies, various risks and security threats have emerged. To protect patients and improve telemedicine quality for patient safety, it is necessary to analyze these risks and security threats comprehensively and institute appropriate countermeasures.<\/jats:p>\n                  <\/jats:sec>\n                  <jats:sec>\n                    <jats:title>Methods<\/jats:title>\n                    <jats:p>The security threats likely to be encountered in each of seven telemedicine service areas were analyzed, and related data were collected directly through on-site surveys by a medical institution. Subsequently, an attack tree, the most popular reliability and risk modeling approach for systematically characterizing the potential risks of telemedicine systems, was examined and utilized with the attack occurrence probability and attack success probability as variables to provide a comprehensive risk assessment method.<\/jats:p>\n                  <\/jats:sec>\n                  <jats:sec>\n                    <jats:title>Results<\/jats:title>\n                    <jats:p>In this study, the most popular modelling method, an attack tree, was applied to the telemedicine environment, and the security concerns for telemedicine systems were found to be very large. Risk management and evaluation methods suitable for the telemedicine environment were identified, and their benefits and potential limitations were assessed.<\/jats:p>\n                  <\/jats:sec>\n                  <jats:sec>\n                    <jats:title>Conclusion<\/jats:title>\n                    <jats:p>This research should be beneficial to security experts who wish to investigate the impacts of cybersecurity threats on remote healthcare and researchers who wish to identify new modeling opportunities to apply security risk modeling techniques.<\/jats:p>\n                  <\/jats:sec>","DOI":"10.1186\/s12911-020-01145-7","type":"journal-article","created":{"date-parts":[[2020,6,15]],"date-time":"2020-06-15T11:01:31Z","timestamp":1592218891000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":52,"title":["Risk management-based security evaluation model for telemedicine systems"],"prefix":"10.1186","volume":"20","author":[{"given":"Dong-won","family":"Kim","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jin-young","family":"Choi","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6385-0617","authenticated-orcid":false,"given":"Keun-hee","family":"Han","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2020,6,10]]},"reference":[{"key":"1145_CR1","doi-asserted-by":"publisher","unstructured":"Shaikh A, Memon M, Memon N, Misbahuddin M. The role of service oriented architecture in telemedicine healthcare system. In: International Conference on Complex, Intelligent and Software Intensive Systems. Fukuoka; 2009. p. 208\u201314. https:\/\/doi.org\/10.1109\/cisis.2009.181.","DOI":"10.1109\/cisis.2009.181"},{"key":"1145_CR2","unstructured":"Naked security by SOPHOS. Doctors disabled wireless in Dick Cheney\u2019s pacemaker to thwart hacking. Available from: https:\/\/nakedsecurity.sophos.com\/2013\/10\/22\/doctors-disabled-wireless-in-dick-cheneys-pacemaker-to-thwart-hacking\/. Accessed 5 Jan 2020."},{"key":"1145_CR3","volume-title":"Postmarket management of cybersecurity in medical devices","author":"Food and Drug Administration","year":"2016","unstructured":"Food and Drug Administration. Postmarket management of cybersecurity in medical devices. Silver Spring: Food and Drug Administration; 2016."},{"key":"1145_CR4","doi-asserted-by":"publisher","first-page":"1557","DOI":"10.1177\/193229681100500632","volume":"5","author":"N Paul","year":"2011","unstructured":"Paul N, Kohno T, Klonoff DC. A review of the security of insulin pump infusion systems. J Diabetes Sci Technol. 2011;5:1557\u201362. https:\/\/doi.org\/10.1177\/193229681100500632.","journal-title":"J Diabetes Sci Technol"},{"key":"1145_CR5","doi-asserted-by":"publisher","first-page":"231","DOI":"10.1007\/11555827_14","volume-title":"Computer security \u2013 ESORICS 2005. ESORICS 2005. Lecture notes in computer science","author":"I Ray","year":"2005","unstructured":"Ray I, Poolsapassit N. Using attack trees to identify malicious attacks from authorized insiders. In: di Vimercati SC, Syverson P, Gollmann D, editors. Computer security \u2013 ESORICS 2005. ESORICS 2005. Lecture notes in computer science, vol. 3679. Berlin: Springer; 2005. p. 231\u201346. https:\/\/doi.org\/10.1007\/11555827_14."},{"key":"1145_CR6","doi-asserted-by":"publisher","first-page":"175","DOI":"10.1016\/j.cose.2017.09.004","volume":"72","author":"H Abdo","year":"2018","unstructured":"Abdo H, Kaouk M, Flaus JM, Masse F. A safety\/security risk analysis approach of industrial control systems: a cyber bowtie\u2013combining new version of attack tree with bowtie analysis. Comput Secur. 2018;72:175\u201395. https:\/\/doi.org\/10.1016\/j.cose.2017.09.004.","journal-title":"Comput Secur."},{"key":"1145_CR7","doi-asserted-by":"publisher","unstructured":"Maciel R, Araujo J, Melo C, Dantas J, Maciel P. Impact assessment of multi-threats in computer systems using attack tree modeling. In: 2018 IEEE International Conference on Systems, Man, and Cybernetics (SMC). Miyazaki; 2018. p. 2448\u201353. https:\/\/doi.org\/10.1109\/smc.2018.00420.","DOI":"10.1109\/smc.2018.00420"},{"key":"1145_CR8","first-page":"1","volume":"1","author":"S Myagmar","year":"2005","unstructured":"Myagmar S, Lee AJ, Yurcik W. Threat modeling as a basis for security requirements. Symp Requir Eng Inf Secur. 2005;1:1\u20138.","journal-title":"Symp Requir Eng Inf Secur"},{"key":"1145_CR9","doi-asserted-by":"publisher","first-page":"853","DOI":"10.1109\/tsmca.2010.2048028","volume":"40","author":"CW Ten","year":"2010","unstructured":"Ten CW, Manimaran G, Liu CC. Cybersecurity for critical infrastructures: attack and defense modeling. IEEE Trans Syst Man Cybern Syst Hum. 2010;40:853\u201365. https:\/\/doi.org\/10.1109\/tsmca.2010.2048028.","journal-title":"IEEE Trans Syst Man Cybern Syst Hum"},{"key":"1145_CR10","doi-asserted-by":"publisher","first-page":"21","DOI":"10.1002\/9781119183631.ch21","volume":"24","author":"B Schneier","year":"1999","unstructured":"Schneier B. Attack trees. Dr Dobbs J. 1999;24:21\u20139. https:\/\/doi.org\/10.1002\/9781119183631.ch21.","journal-title":"Dr Dobbs J"},{"key":"1145_CR11","doi-asserted-by":"publisher","unstructured":"Maji A, Mukhoty A, Majumdar A, Mukhopadhyay J, Sural S, Paul S, et al. Security analysis and implementation of web-based telemedicine services with a four-tier architecture. In: Proceedings of the Second International Conference on Pervasive Computing Technologies for Healthcare. Tampere; 2008. p. 46\u201354. https:\/\/doi.org\/10.4108\/icst.pervasivehealth2008.2518.","DOI":"10.4108\/icst.pervasivehealth2008.2518"},{"key":"1145_CR12","first-page":"27","volume":"1","author":"H She","year":"2007","unstructured":"She H, Lu Z, Jantsch A, Zheng LR, Zhou D. A network-based system architecture for remote medical applications. Asia-Pac Adv Netw. 2007;1:27\u201331.","journal-title":"Asia-Pac Adv Netw"},{"key":"1145_CR13","doi-asserted-by":"publisher","first-page":"48","DOI":"10.22648\/ETRI.2010.J.250406","volume":"25","author":"CY Park","year":"2012","unstructured":"Park CY. Trend of u-healthcare standardization technology. Electron Telecommun Trends. 2012;25:48\u201359. https:\/\/doi.org\/10.22648\/ETRI.2010.J.250406.","journal-title":"Electron Telecommun Trends"},{"key":"1145_CR14","doi-asserted-by":"publisher","first-page":"1239","DOI":"10.1001\/jama.2020.2648","volume":"323","author":"Z Wu","year":"2020","unstructured":"Wu Z, McGoogan JM. Characteristics of and important lessons from the coronavirus disease 2019 (COVID-19) outbreak in China: summary of a report of 72 314 cases from the Chinese Center for Disease Control and Prevention. JAMA. 2020;323:1239\u201342. https:\/\/doi.org\/10.1001\/jama.2020.2648.","journal-title":"JAMA."},{"key":"1145_CR15","doi-asserted-by":"publisher","unstructured":"Hollander JE, Carr BG. Virtually perfect? Telemedicine for Covid-19. N Engl J Med. 2020. https:\/\/doi.org\/10.1056\/NEJMp2003539.","DOI":"10.1056\/NEJMp2003539"},{"key":"1145_CR16","volume-title":"Cumulative Number of Reported Probable Cases of Severe Acute Respiratory Syndrome (SARS)","author":"World Health Organization","year":"2003","unstructured":"World Health Organization. Cumulative Number of Reported Probable Cases of Severe Acute Respiratory Syndrome (SARS). 2003. https:\/\/www.who.int\/csr\/sars\/country\/2003_05_20\/en\/. Accessed 5 Jan 2020."},{"key":"1145_CR17","doi-asserted-by":"publisher","first-page":"7790","DOI":"10.1128\/JVI.01244-13","volume":"87","author":"RJ Groot","year":"2013","unstructured":"Groot RJ, Baker SC, Baric RS. Middle East respiratory syndrome coronavirus (MERS-CoV): announcement of the coronavirus study group. J Virol. 2013;87:7790\u20132. https:\/\/doi.org\/10.1128\/JVI.01244-13.","journal-title":"J Virol"},{"key":"1145_CR18","doi-asserted-by":"publisher","first-page":"422","DOI":"10.6109\/jkiice.2015.19.2.422","volume":"19","author":"AS Oh","year":"2015","unstructured":"Oh AS. A study on home healthcare convergence for IEEE 11073 standard. J Korea Inst Inf Commun Eng. 2015;19:422\u20137. https:\/\/doi.org\/10.6109\/jkiice.2015.19.2.422.","journal-title":"J Korea Inst Inf Commun Eng"},{"key":"1145_CR19","doi-asserted-by":"publisher","DOI":"10.3403\/30125022u","volume-title":"Information security risk management. (second edition). ISO\/IEC 27005:2011","author":"International Organization for Standardization","year":"2011","unstructured":"International Organization for Standardization. Information security risk management. (second edition). ISO\/IEC 27005:2011; 2011. https:\/\/doi.org\/10.3403\/30125022u."},{"key":"1145_CR20","volume-title":"Hospital networks are leaking data, leaving critical devices vulnerable","author":"K Zetter","year":"2014","unstructured":"Zetter K. Hospital networks are leaking data, leaving critical devices vulnerable. 2014. Available from: https:\/\/www.wired.com\/2014\/06\/hospital-networks-leaking-data\/. Accessed 4 Jan 2020."},{"key":"1145_CR21","doi-asserted-by":"publisher","unstructured":"Kim TY, Youm S, Jung JJ, Kim EJ. Multi-hop WBAN construction for healthcare IoT systems. In: 2015 International Conference on Platform Technology and Service. Jeju; 2015. p. 27\u20138. https:\/\/doi.org\/10.1109\/platcon.2015.20.","DOI":"10.1109\/platcon.2015.20"},{"key":"1145_CR22","doi-asserted-by":"publisher","first-page":"261","DOI":"10.14400\/jdc.2016.14.3.261","volume":"14","author":"YS Jeong","year":"2016","unstructured":"Jeong YS. An efficient IoT healthcare service management model of location tracking sensor. J Digit Converg. 2016;14:261\u20137. https:\/\/doi.org\/10.14400\/jdc.2016.14.3.261.","journal-title":"J Digit Converg"},{"key":"1145_CR23","doi-asserted-by":"publisher","unstructured":"Zhang B, Wang XW, Huang M. A data replica placement scheme for cloud storage under healthcare IoT environment. In: 11th International Conference on Fuzzy Systems and Knowledge Discovery (FSKD). Xiamen; 2014. p. 542\u20137. https:\/\/doi.org\/10.1109\/fskd.2014.6980892.","DOI":"10.1109\/fskd.2014.6980892"},{"key":"1145_CR24","doi-asserted-by":"publisher","first-page":"24","DOI":"10.1109\/EMR.2019.2930702","volume":"47","author":"M Wehde","year":"2019","unstructured":"Wehde M. Healthcare 4.0. IEEE Eng Manag Rev. 2019;47:24\u20138. https:\/\/doi.org\/10.1109\/EMR.2019.2930702.","journal-title":"IEEE Eng Manag Rev"},{"key":"1145_CR25","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1109\/SYSCON.2019.8836715","volume-title":"Proceedings of the 2019 IEEE Int Syst Conf","author":"N Mohamed","year":"2019","unstructured":"Mohamed N, Al-Jaroodi J. The impact of Industry 4.0 on healthcare system engineering. In: Proceedings of the 2019 IEEE Int Syst Conf; 2019. p. 1\u20137. https:\/\/doi.org\/10.1109\/SYSCON.2019.8836715."},{"key":"1145_CR26","doi-asserted-by":"publisher","unstructured":"Alloghani M, Al-Jumeily D, Hussain A, Aljaaf AJ, Mustafina J, Petrov E. Healthcare services innovations based on the state of the art technology trend Industry 4.0. In: 2018 11th Int Conf developments in n eSystems engineering (DeSE), vol. 2018. Cambridge. p. 64\u201370. https:\/\/doi.org\/10.1109\/DeSE.2018.00016.","DOI":"10.1109\/DeSE.2018.00016"},{"key":"1145_CR27","doi-asserted-by":"publisher","first-page":"13","DOI":"10.1145\/1866914.1866917","volume-title":"Proceedings of the second annual workshop on security and privacy in medical and home-care systems","author":"JA Hansen","year":"2010","unstructured":"Hansen JA, Hansen NM. A taxonomy of vulnerabilities in implantable medical devices. In: Proceedings of the second annual workshop on security and privacy in medical and home-care systems. Chicago: ACM; 2010. p. 13\u201320. https:\/\/doi.org\/10.1145\/1866914.1866917."},{"key":"1145_CR28","doi-asserted-by":"publisher","first-page":"272","DOI":"10.1016\/j.jbi.2015.04.007","volume":"55","author":"C Camara","year":"2015","unstructured":"Camara C, Peris-Lopez P, Tapiador JE. Security and privacy issues in implantable medical devices: a comprehensive survey. J Biomed Inf. 2015;55:272\u201389. https:\/\/doi.org\/10.1016\/j.jbi.2015.04.007.","journal-title":"J Biomed Inf"},{"key":"1145_CR29","volume-title":"Medical device safety","author":"US Food and Drug Administration","year":"2017","unstructured":"US Food and Drug Administration. Medical device safety. 2017. https:\/\/www.fda.gov\/medical-devices\/medical-device-safety. Accessed 3 Oct 2019."},{"key":"1145_CR30","first-page":"1","volume-title":"Security standards: Technical safeguards","author":"HIPPA","year":"2007","unstructured":"HIPPA. Security standards: Technical safeguards, vol. 2; 2007. p. 1\u201317."},{"key":"1145_CR31","volume-title":"The challenges of conducting medical device studies","author":"S Shivshankar","year":"2007","unstructured":"Shivshankar S, Summerhayes K. The challenges of conducting medical device studies. Boston: Institute of Clinical Research; 2007. ISBN-10: 0954934555."},{"key":"1145_CR32","doi-asserted-by":"publisher","first-page":"25","DOI":"10.1145\/1516046.1516055","volume":"52","author":"K Fu","year":"2009","unstructured":"Fu K. Inside risks: reducing risks of implantable medical devices. Commun ACM. 2009;52:25\u20137. https:\/\/doi.org\/10.1145\/1516046.1516055.","journal-title":"Commun ACM"},{"key":"1145_CR33","doi-asserted-by":"publisher","unstructured":"Halperin D, Heydt-Benjamin TS, Ransford B, Clark SS, Defend B, Morgan W, et al. Pacemakers and implantable cardiac defibrillators: Software radio attacks and zero-power defenses. In: Proceedings of the 29th Annual IEEE Symposium on Security and Privacy. Oakland; 2008. p. 129\u201342. https:\/\/doi.org\/10.1109\/sp.2008.31.","DOI":"10.1109\/sp.2008.31"},{"key":"1145_CR34","doi-asserted-by":"publisher","unstructured":"Li C, Raghunathan A, Jha NK. Hijacking an insulin pump: Security attacks and defenses for a diabetes therapy system. In: 13th IEEE International Conference on e-Health Networking Applications and Services. Columbia; 2011. p. 150\u20136. https:\/\/doi.org\/10.1109\/health.2011.6026732.","DOI":"10.1109\/health.2011.6026732"},{"key":"1145_CR35","volume-title":"Implantable pacemaker and defibrillator information","author":"Medtronic","year":"2015","unstructured":"Medtronic. Implantable pacemaker and defibrillator information. 2015. https:\/\/medlineplus.gov\/pacemakersandimplantabledefibrillators.html Accessed 12 Dec 2019."},{"key":"1145_CR36","doi-asserted-by":"publisher","unstructured":"Nagaraju V, Fiondella L, Wandji T. A survey of fault and attack tree modeling and analysis for cyber risk management. In: 2017 IEEE International Symposium on Technologies for Homeland Security (HST). Waltham; 2017. p. 1\u20136. https:\/\/doi.org\/10.1109\/ths.2017.7943455.","DOI":"10.1109\/ths.2017.7943455"},{"key":"1145_CR37","doi-asserted-by":"publisher","unstructured":"Ekstedt M, Sommestad T. Enterprise architecture models for cyber security analysis, Power Systems Conference and Exposition. In, Seattle; 2009. p. 1\u20136. https:\/\/doi.org\/10.1109\/psce.2009.4840267.","DOI":"10.1109\/psce.2009.4840267"},{"issue":"5","key":"1145_CR38","doi-asserted-by":"crossref","first-page":"869","DOI":"10.1542\/peds.44.5.869","volume":"44","author":"H Kravitz","year":"1969","unstructured":"Kravitz H, Driessen G, Gomberg R, Korach A. Accidental falls from elevated surfaces in infants from birth to one year of age. Pediatrics. 1969;44(5):869\u201376.","journal-title":"Pediatrics."},{"key":"1145_CR39","volume-title":"Modeling and analysis of safety-critical cyber physical systems using state\/event fault trees","author":"M Roth","year":"2013","unstructured":"Roth M, Liggesmeyer P. Modeling and analysis of safety-critical cyber physical systems using state\/event fault trees. Toulouse: International Conference on Computer Safety, Reliability and Security; 2013."},{"key":"1145_CR40","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/BF01447859","volume":"97","author":"S Bernstein","year":"1927","unstructured":"Bernstein S. Sur l\u2019extension du th\u00e9or\u00e9me limite du calcul des probabilit\u00e9s aux sommes de quantit\u00e9s d\u00e9pendantes [On the extension of the limit theorem of calculating probabilities to sums of dependent quantities]. Math Ann. 1927;97:1\u201359. https:\/\/doi.org\/10.1007\/BF01447859.","journal-title":"Math Ann"},{"key":"1145_CR41","doi-asserted-by":"publisher","first-page":"985","DOI":"10.1002\/j.1538-7305.1959.tb01585.x","volume":"38","author":"C Lee","year":"1959","unstructured":"Lee C. Representation of switching circuits by binary-decision programs. Bell Syst Tech J. 1959;38:985\u201399. https:\/\/doi.org\/10.1002\/j.1538-7305.1959.tb01585.x.","journal-title":"Bell Syst Tech J"},{"key":"1145_CR42","doi-asserted-by":"publisher","DOI":"10.1038\/183220d0","volume-title":"Bell telephone laboratories launch control safety study. In: bell telephone laboratories","author":"H Watson","year":"1961","unstructured":"Watson H. Bell telephone laboratories launch control safety study. In: bell telephone laboratories. Nature: Murray Hill; 1961. https:\/\/doi.org\/10.1038\/183220d0."},{"key":"1145_CR43","volume-title":"Fault Tree Handbook","author":"W Vesely","year":"1981","unstructured":"Vesely W, Goldberg F, Roberts N, Haasl D. Fault Tree Handbook. Washington: Systems and Reliability Research, Office of Nuclear Regulatory Research; 1981."},{"key":"1145_CR44","doi-asserted-by":"publisher","DOI":"10.3403\/30304351","volume-title":"Health informatics - Information security management in health using ISO\/IEC 27002. ISO\/DIS 27799:2014(E)","author":"International Organization for Standardization","year":"2015","unstructured":"International Organization for Standardization. Health informatics - Information security management in health using ISO\/IEC 27002. ISO\/DIS 27799:2014(E); 2015. https:\/\/doi.org\/10.3403\/30304351."},{"key":"1145_CR45","doi-asserted-by":"publisher","unstructured":"Arney D, Venkatasubramanian KK, Sokolsky O, Lee I. Biomedical devices and systems security. In: Annual International Conference of the IEEE Engineering in Medicine and Biology Society. Boston; 2011. p. 2376\u20139. https:\/\/doi.org\/10.1109\/IEMBS.2011.6090663.","DOI":"10.1109\/IEMBS.2011.6090663"},{"key":"1145_CR46","volume-title":"Medical devices operating in the 401\u2013406 MHz frequency band","author":"Industry Canada","year":"2010","unstructured":"Industry Canada. Medical devices operating in the 401\u2013406 MHz frequency band. 2010. http:\/\/www.ic.gc.ca\/eic\/site\/smt-gst.nsf\/vwapj\/rss243.pdf\/$FILE\/rss243.pdf Accessed 23 Nov 2019."},{"key":"1145_CR47","doi-asserted-by":"publisher","unstructured":"Denning T, Borning A, Friedman B, Gill BT, Kohno T, Maisel WH. Patients, pacemakers, and implantable defibrillators: human values and security for wireless implantable medical devices. In: Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. Atlanta; 2010. p. 917\u201326. https:\/\/doi.org\/10.1145\/1753326.1753462.","DOI":"10.1145\/1753326.1753462"},{"key":"1145_CR48","doi-asserted-by":"publisher","first-page":"772","DOI":"10.1109\/titb.2008.926434","volume":"12","author":"SD Bao","year":"2008","unstructured":"Bao SD, Poon CCY, Yuan-Ting Z, Shen LF. Using the timing information of heartbeats as an entity identifier to secure body sensor network. IEEE Trans Inf Technol Biomed. 2008;12:772\u20139. https:\/\/doi.org\/10.1109\/titb.2008.926434.","journal-title":"IEEE Trans Inf Technol Biomed"},{"key":"1145_CR49","doi-asserted-by":"publisher","unstructured":"Partala J, Ker\u00e4neny N, S\u00e4rest\u00f6niemi M, H\u00e4m\u00e4l\u00e4inen M, Iinatti J, J\u00e4ms\u00e4 T, Reponen J, Sepp\u00e4nen T. Security threats against the transmission chain of a medical health monitoring system. In: IEEE 15th International Conference on e-Health Networking, Applications and Services. Lisbon; 2013. p. 243\u20138. https:\/\/doi.org\/10.1109\/healthcom.2013.6720675.","DOI":"10.1109\/healthcom.2013.6720675"},{"key":"1145_CR50","doi-asserted-by":"publisher","DOI":"10.3403\/30246105u","volume-title":"Risk management. ISO 31000:2018","author":"International Organization for Standardization","year":"2018","unstructured":"International Organization for Standardization. Risk management. ISO 31000:2018; 2018. https:\/\/doi.org\/10.3403\/30246105u."},{"key":"1145_CR51","doi-asserted-by":"publisher","DOI":"10.3403\/bsisoiec15408","volume-title":"Information technology \u2013 Security techniques \u2013 Evaluation criteria for IT security Part 1: Introduction and general model. ISO\/IEC 15408\u20131:2009","author":"International Organization for Standardization","year":"2009","unstructured":"International Organization for Standardization. Information technology \u2013 Security techniques \u2013 Evaluation criteria for IT security Part 1: Introduction and general model. ISO\/IEC 15408\u20131:2009; 2009. https:\/\/doi.org\/10.3403\/bsisoiec15408."},{"key":"1145_CR52","doi-asserted-by":"publisher","DOI":"10.3403\/30325408","volume-title":"Refining software vulnerability analysis under ISO\/IEC 15408 and ISO\/IEC 18045. ISO\/IEC 18045","author":"International Organization for Standardization","year":"2015","unstructured":"International Organization for Standardization. Refining software vulnerability analysis under ISO\/IEC 15408 and ISO\/IEC 18045. ISO\/IEC 18045; 2015. https:\/\/doi.org\/10.3403\/30325408."},{"key":"1145_CR53","doi-asserted-by":"publisher","DOI":"10.6028\/nist.sp.800-37r1","volume-title":"Guide for applying the risk management framework to federal information systems: A security life cycle approach. NIST SP800\u201337 Rev. 1","author":"Joint Task Force Transformation Initiative","year":"2010","unstructured":"Joint Task Force Transformation Initiative. Guide for applying the risk management framework to federal information systems: A security life cycle approach. NIST SP800\u201337 Rev. 1; 2010. https:\/\/doi.org\/10.6028\/nist.sp.800-37r1."},{"key":"1145_CR54","volume-title":"Guide for mapping types of information and information systems to security categories. NIST SP800\u201364 Rev. 4","author":"KM Stine","year":"2008","unstructured":"Stine KM, Kissel RL, Barker WC, Lee A, Fahlsing J, Gulick J. Guide for mapping types of information and information systems to security categories. NIST SP800\u201364 Rev. 4; 2008."},{"key":"1145_CR55","doi-asserted-by":"publisher","DOI":"10.1002\/9781118312575.ch12","volume-title":"Failure mode, effects and criticality analysis. FMECA MIL-P-1629","author":"FMECA","year":"2007","unstructured":"FMECA. Failure mode, effects and criticality analysis. FMECA MIL-P-1629; 2007. https:\/\/doi.org\/10.1002\/9781118312575.ch12."},{"key":"1145_CR56","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11628-019-00408-2","volume":"14","author":"SM Lee","year":"2020","unstructured":"Lee SM, Lee D. \u201cUntact\u201d: a new customer service strategy in the digital age. Serv Bus. 2020;14:1\u201322. https:\/\/doi.org\/10.1007\/s11628-019-00408-2.","journal-title":"Serv Bus"},{"key":"1145_CR57","doi-asserted-by":"publisher","first-page":"555","DOI":"10.1007\/s00500-019-03972-x","volume":"24","author":"S Al-Janabi","year":"2020","unstructured":"Al-Janabi S, Alkaim AF. A nifty collaborative analysis to predicting a novel tool (DRFLLS) for missing values estimation. Soft Comput. 2020;24:555\u201369. https:\/\/doi.org\/10.1007\/s00500-019-03972-x.","journal-title":"Soft Comput"},{"key":"1145_CR58","doi-asserted-by":"publisher","first-page":"512","DOI":"10.1504\/IJGUC.2019.102021","volume":"10","author":"S Al-Janabi","year":"2019","unstructured":"Al-Janabi S, Mahdi M. Evaluation prediction techniques to achievement an optimal biomedical analysis. Int J Grid Utility Comput. 2019;10:512\u201327. https:\/\/doi.org\/10.1504\/IJGUC.2019.102021.","journal-title":"Int J Grid Utility Comput"},{"key":"1145_CR59","doi-asserted-by":"publisher","unstructured":"Al-Janabi S, Mohammad M, Al-Sultan A. A new method for prediction of air pollution based on intelligent computation. Soft Comput. 2019. https:\/\/doi.org\/10.1007\/s00500-019-04495-1.","DOI":"10.1007\/s00500-019-04495-1"},{"key":"1145_CR60","doi-asserted-by":"publisher","first-page":"107","DOI":"10.1016\/j.cose.2014.10.009","volume":"49","author":"A Patel","year":"2014","unstructured":"Patel A, Al-Janabi S, AlShourbaji I, Pedersen J. A novel methodology towards a trusted environment in mashup web applications. Comput Secur. 2014;49:107\u201322. https:\/\/doi.org\/10.1016\/j.cose.2014.10.009.","journal-title":"Comput Secur"},{"key":"1145_CR61","doi-asserted-by":"publisher","first-page":"1650007","DOI":"10.1142\/S0219649216500076","volume":"15","author":"S Al-Janabi","year":"2016","unstructured":"Al-Janabi S, AlShourbaji I. A study of cyber security awareness in educational environment in the Middle East. J Inf Knowl Manag. 2016;15:1650007. https:\/\/doi.org\/10.1142\/S0219649216500076.","journal-title":"J Inf Knowl Manag"},{"key":"1145_CR62","doi-asserted-by":"publisher","unstructured":"Al-Janabi S, Rawat S, Patel A, AlShourbaji I. Design and evaluation of a hybrid system for detection and prediction of faults in electrical transformers. Int J Electr Power Energy Syst. 2015;67. https:\/\/doi.org\/10.1016\/j.ijepes.2014.12.005.","DOI":"10.1016\/j.ijepes.2014.12.005"},{"key":"1145_CR63","doi-asserted-by":"publisher","unstructured":"Kalajdzic K, Al-Janabi S, Patel A. Rapid lossless compression of short text messages. Comput Standards Interfaces. 2014. https:\/\/doi.org\/10.1016\/j.csi.2014.05.005.","DOI":"10.1016\/j.csi.2014.05.005"},{"key":"1145_CR64","doi-asserted-by":"publisher","first-page":"320","DOI":"10.1007\/978-3-030-23672-4_23","volume-title":"International conference on big data and networks technologies","author":"M Mahdi","year":"2019","unstructured":"Mahdi M, Al-Janabi S. A novel software to improve healthcare base on predictive analytics and mobile services for cloud data centers. In: International conference on big data and networks technologies. Cham: Springer; 2019. p. 320\u201339. https:\/\/doi.org\/10.1007\/978-3-030-23672-4_23."}],"container-title":["BMC Medical Informatics and Decision Making"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s12911-020-01145-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1186\/s12911-020-01145-7\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1186\/s12911-020-01145-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,10,28]],"date-time":"2022-10-28T14:31:15Z","timestamp":1666967475000},"score":1,"resource":{"primary":{"URL":"https:\/\/bmcmedinformdecismak.biomedcentral.com\/articles\/10.1186\/s12911-020-01145-7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,6,10]]},"references-count":64,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2020,12]]}},"alternative-id":["1145"],"URL":"https:\/\/doi.org\/10.1186\/s12911-020-01145-7","relation":{"has-preprint":[{"id-type":"doi","id":"10.21203\/rs.2.24146\/v1","asserted-by":"object"},{"id-type":"doi","id":"10.21203\/rs.2.24146\/v2","asserted-by":"object"}]},"ISSN":["1472-6947"],"issn-type":[{"value":"1472-6947","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,6,10]]},"assertion":[{"value":"13 February 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"3 June 2020","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 June 2020","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"Not applicable.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics approval and consent to participate"}},{"value":"Not applicable.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Consent for publication"}},{"value":"The authors declare that they have no conflicts of interest.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}}],"article-number":"106"}}