{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,31]],"date-time":"2026-01-31T17:13:25Z","timestamp":1769879605929,"version":"3.49.0"},"reference-count":31,"publisher":"MDPI AG","issue":"4","license":[{"start":{"date-parts":[[2021,3,31]],"date-time":"2021-03-31T00:00:00Z","timestamp":1617148800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Future Internet"],"abstract":"<jats:p>In the current Internet of things era, all companies shifted from paper-based data to the electronic format. Although this shift increased the efficiency of data processing, it has security drawbacks. Healthcare databases are a precious target for attackers because they facilitate identity theft and cybercrime. This paper presents an approach for database damage assessment for healthcare systems. Inspired by the current behavior of COVID-19 infections, our approach views the damage assessment problem the same way. The malicious transactions will be viewed as if they are COVID-19 viruses, taken from infection onward. The challenge of this research is to discover the infected transactions in a minimal time. The proposed parallel algorithm is based on the transaction dependency paradigm, with a time complexity O((M+NQ+N^3)\/L) (M = total number of transactions under scrutiny, N = number of malicious and affected transactions in the testing list, Q = time for dependency check, and L = number of threads used). The memory complexity of the algorithm is O(N+KL) (N = number of malicious and affected transactions, K = number of transactions in one area handled by one thread, and L = number of threads). Since the damage assessment time is directly proportional to the denial-of-service time, the proposed algorithm provides a minimized execution time. Our algorithm is a novel approach that outperforms other existing algorithms in this domain in terms of both time and memory, working up to four times faster in terms of time and with 120,000 fewer bytes in terms of memory.<\/jats:p>","DOI":"10.3390\/fi13040090","type":"journal-article","created":{"date-parts":[[2021,3,31]],"date-time":"2021-03-31T10:24:33Z","timestamp":1617186273000},"page":"90","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":33,"title":["A Parallelized Database Damage Assessment Approach after Cyberattack for Healthcare Systems"],"prefix":"10.3390","volume":"13","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-4384-4364","authenticated-orcid":false,"given":"Sanaa","family":"Kaddoura","sequence":"first","affiliation":[{"name":"College of Technological Innovation, Zayed University, Abu Dhabi 144534, United Arab Emirates"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6978-3627","authenticated-orcid":false,"given":"Ramzi A.","family":"Haraty","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Mathematics, Lebanese American University, Beirut 1102 2801, Lebanon"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Karam","family":"Al Kontar","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Mathematics, Lebanese American University, Beirut 1102 2801, Lebanon"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Omar","family":"Alfandi","sequence":"additional","affiliation":[{"name":"College of Technological Innovation, Zayed University, Abu Dhabi 144534, United Arab Emirates"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2021,3,31]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","unstructured":"Stapleton, J.J. (2014). Security without Obscurity: A Guide to Confidentiality, Authentication, and Integrity, Auerbach Publications. [1st ed.].","DOI":"10.1201\/b16885"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"308","DOI":"10.1016\/S0167-4048(03)00407-3","article-title":"Why we need a new definition of information security","volume":"22","author":"Anderson","year":"2003","journal-title":"Comput. Secur."},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Ahmed, A.A., and Ahmed, W.A. (2019). An Effective Multifactor Authentication Mechanism Based on Combiners of Hash Function over Internet of Things. Sensors, 19.","DOI":"10.3390\/s19173663"},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Kure, H.I., Islam, S., and Razzaque, M.A. (2018). An Integrated Cyber Security Risk Management Approach for a Cyber-Physical System. Appl. Sci., 8.","DOI":"10.3390\/app8060898"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Ondiege, B., Clarke, M., and Mapp, G. (2017). Exploring a New Security Framework for Remote Patient Monitoring Devices. Computers, 6.","DOI":"10.3390\/computers6010011"},{"key":"ref_6","doi-asserted-by":"crossref","unstructured":"Papamartzivanos, D., Menesidou, S.A., Gouvas, P., and Giannetsos, T. (2021). A Perfect Match: Converging and Automating Privacy and Security Impact Assessment On-the-Fly. Future Internet, 13.","DOI":"10.3390\/fi13020030"},{"key":"ref_7","unstructured":"Hutchinson, B., Hutchinson, W., and Warren, M. (2001). Information Warfare: Corporate Attack and Defence in a Digital World, Butterworth-Heinemann. [1st ed.]."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Gao, Y., Peng, Y., Xie, F., Zhao, W., Wang, D., Han, X., Lu, T., and Li, Z. (2013, January 12\u201313). Analysis of Security Threats and Vulnerability for Cyber-Physical Systems. Proceedings of the 2013 3rd International Conference on Computer Science and Network Technology, Dalian, China.","DOI":"10.1109\/ICCSNT.2013.6967062"},{"key":"ref_9","unstructured":"Smith, T.T. (2021, February 28). Examining Data Privacy Breaches in Healthcare. Walden Dissertations and Doctoral Studies. Available online: https:\/\/scholarworks.waldenu.edu\/dissertations\/2623."},{"key":"ref_10","doi-asserted-by":"crossref","first-page":"287","DOI":"10.1007\/s10115-016-0940-1","article-title":"Information warfare: A lightweight matrix-based approach for database recovery","volume":"50","author":"Haraty","year":"2017","journal-title":"Knowl. Inf. Syst."},{"key":"ref_11","unstructured":"Boukhari, B. (2020). An Effective Hash Based Assessment and Recovery Algorithm for Healthcare Systems. [Master\u2019s Thesis, Lebanese American University]."},{"key":"ref_12","unstructured":"Gudes, E., and Shenoi, S. (2003). Analyzing Transaction Logs for Effective Damage Assessment. Research Directions in Data and Applications Security, Springer. IFIP\u2014The International Federation for Information Processing."},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Panda, B., and Haque, K.A. (2002, January 10\u201314). Extended Data Dependency Approach: A Robust Way of Rebuilding Database. Proceedings of the 2002 ACM Symposium on Applied Computing (SAC \u201902), Association for Computing Machinery, New York, NY, USA.","DOI":"10.1145\/508866.508875"},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"1665","DOI":"10.1109\/TNSM.2019.2939221","article-title":"A Novel Ad-Hoc Mobile Edge Cloud Offering Security Services Through Intelligent Resource-Aware Offloading","volume":"16","author":"Dbouk","year":"2019","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Dbouk, T., Mourad, A., Otrok, H., and Talhi, C. (2016, January 12\u201314). Towards ad-hoc cloud-based approach for mobile intrusion detection. Proceedings of the 12th International Conference on Wireless and Mobile Computing, Networking and Communications (WiMob), Marrakech, Morocco.","DOI":"10.1109\/WiMOB.2016.7763251"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"1435","DOI":"10.1109\/TNSM.2019.2946467","article-title":"Latency and Reliability Aware Workload Assignment in IoT Networks with Mobile Edge Clouds","volume":"16","author":"Kherraf","year":"2019","journal-title":"IEEE Trans. Netw. Serv. Manag."},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"2623","DOI":"10.1016\/j.adhoc.2013.06.006","article-title":"Security, privacy and trust management in the internet of things","volume":"11","author":"Sicari","year":"2013","journal-title":"Ad Hoc Netw."},{"key":"ref_18","doi-asserted-by":"crossref","unstructured":"Bai, K., and Liu, P. (2009, January 23\u201326). A data damage tracking quarantine and recovery (DTQR) scheme for mission-critical database systems. Proceedings of the 12th International Conference on Extending Database Technology: Advances in Database Technology, Association for Computing Machinery, Saint-Petersburg, Russia.","DOI":"10.1145\/1516360.1516443"},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Panda, B., and Yalamanchili, R. (2001, January 11\u201314). Transaction Fusion in the Wake of Information Warfare. Proceedings of the 2001 ACM Symposium on Applied Computing, Association for Computing Machinery, Las Vegas, NV, USA.","DOI":"10.1145\/372202.372333"},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"1167","DOI":"10.1109\/TKDE.2002.1033782","article-title":"Recovery from malicious transactions","volume":"14","author":"Ammann","year":"2002","journal-title":"IEEE Trans. Knowl. Data Eng."},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"14019","DOI":"10.1007\/s00500-020-04779-x","article-title":"Information reconciliation through an agent-controlled graph model","volume":"24","author":"Haraty","year":"2020","journal-title":"Soft Comput."},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"812","DOI":"10.1007\/s12083-015-0361-z","article-title":"Data damage assessment and recovery algorithm from malicious attacks in healthcare data sharing systems","volume":"9","author":"Haraty","year":"2016","journal-title":"Peer Peer Netw. Appl."},{"key":"ref_23","first-page":"1","article-title":"Tracking and Repairing Damaged Healthcare Databases Using the Matrix","volume":"11","author":"Kaddoura","year":"2016","journal-title":"Int. J. Distrib. Sensors Netw."},{"key":"ref_24","doi-asserted-by":"crossref","first-page":"74","DOI":"10.4018\/IJSWIS.2017040105","article-title":"Transaction Dependency Based Approach for Database Damage Assessment Using a Matrix","volume":"13","author":"Haraty","year":"2017","journal-title":"Int. J. Semant. Web Inf. Syst."},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"801","DOI":"10.1016\/j.tele.2017.12.010","article-title":"Recovery of business intelligence systems: Towards guaranteed continuity of patient centric healthcare systems through a matrix-based recovery approach","volume":"35","author":"Haraty","year":"2018","journal-title":"Telemat. Inform."},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Kaddoura, S. (2015, January 17\u201320). Information matrix: Fighting back using a matrix. Proceedings of the 12th International Conference of Computer Systems and Applications (AICCSA), Marrakech, Morocco.","DOI":"10.1109\/AICCSA.2015.7507127"},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"51","DOI":"10.1007\/s10207-009-0095-0","article-title":"A column dependency-based approach for static and dynamic recovery of databases from malicious transactions","volume":"9","author":"Chakraborty","year":"2010","journal-title":"Int. J. Inf. Secur."},{"key":"ref_28","doi-asserted-by":"crossref","first-page":"35","DOI":"10.1080\/19393555.2013.781721","article-title":"Incorporation of Application Specific Information for Recovery in Database from Malicious Transactions","volume":"22","author":"Rao","year":"2013","journal-title":"Inf. Secur. J. A Glob. Perspect."},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Kurra, K., Panda, B., Li, W.-N., and Hu, Y. (2015, January 5\u20138). An Agent Based Approach to Perform Damage Assessment and Recovery Efficiently after a Cyber Attack to Ensure EGovernment Database Security. Proceedings of the 48th Hawaii International Conference on System Sciences, Kauai, HI, USA.","DOI":"10.1109\/HICSS.2015.272"},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"El Zarif, O., and Haraty, R.A. (2020). Toward information preservation in healthcare systems. Innovation in Health Informatics, Academic Press.","DOI":"10.1016\/B978-0-12-819043-2.00007-1"},{"key":"ref_31","unstructured":"Northwind Database (2021, March 26). In Codeplex. Available online: https:\/\/northwinddatabase.codeplex.com\/."}],"container-title":["Future Internet"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1999-5903\/13\/4\/90\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,13]],"date-time":"2025-10-13T13:55:48Z","timestamp":1760363748000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1999-5903\/13\/4\/90"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,3,31]]},"references-count":31,"journal-issue":{"issue":"4","published-online":{"date-parts":[[2021,4]]}},"alternative-id":["fi13040090"],"URL":"https:\/\/doi.org\/10.3390\/fi13040090","relation":{},"ISSN":["1999-5903"],"issn-type":[{"value":"1999-5903","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,3,31]]}}}