Considerations on Digital Forensic Analysis of Medical Devices and Equipment

被引:0
作者
Constanzo, B. [1 ]
Di Iorio, A. H. [1 ]
Greco, F. [1 ]
Trigo, S. [1 ]
机构
[1] Univ FASTA, Fac Ingn, InFo Lab, Mar Del Plata, Argentina
来源
INTERNATIONAL CONFERENCE ON BIOMEDICAL AND HEALTH INFORMATICS 2022, ICBHI 2022 | 2024年 / 108卷
关键词
Digital forensics; incident response; cybersecurity; medical devices; medical equipment;
D O I
10.1007/978-3-031-59216-4_26
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Digital forensics is the branch of forensic sciences that deals with the analysis and examination of evidence obtained from digital devices. With the advent of "healthcare 4.0" and medical IoT wearables and devices, digital forensics will increasingly have to deal with medical equipment and devices. These new sources of digital evidence pose new challenges to the forensic examiners: a wide range of devices, from simple wearables that gather health-related signals, to implanted devices, robots that perform surgery, and complex imaging machinery, they are all potential sources of digital evidence. The data structures used by these systems to store information, and the protocols that they use to communicate are not always documented, occasionally forcing an examiner to reverse engineer the meaning behind the raw bytes found in the storage media or network dumps. Finally, devices used in healthcare use a variety of operating systems, some common but customized by the manufacturer, and some nice and relatively unknown. The systems software can potentially be and older, unmaintained version, which was certified in the past, and cannot be updated. To understand the data and information extracted from these devices and equipment, the digital forensics expert will need the aid of medical experts and could also potentially require help from engineers and technicians that know the inner workings, mechanisms, and physical, chemical, and biological phenomena that come into play in their operation and use. It is thus necessary to work on updating and adapting the existing guidelines for digital forensics analysts and incident responders to consider the specific issues they will encounter when working on medical devices and equipment. In this work we propose a starting point and considerations that can help lay the groundwork needed and lay the path forward for future work.
引用
收藏
页码:235 / 242
页数:8
相关论文
共 29 条
  • [1] Ab Rahman NH, 2016, IEEE CLOUD COMPUT, V3, P50, DOI 10.1109/MCC.2016.5
  • [2] [Anonymous], 2020, ISO/IEC 27043:2015
  • [3] [Anonymous], 2018, ISO/IEC 27037:2012
  • [4] [Anonymous], 2021, ISO/IEC 27042:2015
  • [5] [Anonymous], 2007, Good Practice Guide for Computer-Based Electronic Evidence
  • [6] Association of Chief Police Officers (ACPO), 1998, Good Practice Guide For Computer Based Evidence
  • [7] Burleson W, 2012, DES AUT CON, P12
  • [8] Carrier B., 2005, File System Forensic Analysis
  • [9] Carvey H., 2014, Windows Forensic Analysis Toolkit. Syngress., DOI [10.1016/C2013-0-04671-3, DOI 10.1016/C2013-0-04671-3]
  • [10] Casey E., 2010, Handook of Digital Forensics and Investigation, DOI [10.1016/C2009-0-01683-3, DOI 10.1016/C2009-0-01683-3]