Title
Are mHealth Apps Secure? A Case Study
Abstract
mHealth applications are becoming increasingly widespread since they have the potential to reduce the cost of health care by favoring self-management of chronic diseases or to improve fitness activities. By their very nature, health applications collect and manage health sensitive data, therefore several concerns exist about how privacy, security, and confidentiality are handled. In this paper, we analyze the security issues of mHealth apps from two different perspectives: first, we highlight the security and privacy requirements on health data defined by data protection laws such as the General Data Protection Regulation (GDPR) in the EU, or the Health Insurance Portability and Accountability Act (HIPAA) in US. Then, we consider the security issues from a technological point of view, discussing how the app may protect user data. However, by analyzing a fitness app, we show that, at the moment, none of the well-known practices to protect data is followed, thus often mHealth apps are insecure.
Year
DOI
Venue
2018
10.1109/COMPSAC.2018.10253
2018 IEEE 42nd Annual Computer Software and Applications Conference (COMPSAC)
Keywords
Field
DocType
security and privacy,m health app,gdpr
Health care,Internet privacy,Health Insurance Portability and Accountability Act,Confidentiality,Systems engineering,Computer science,mHealth,Data Protection Act 1998,General Data Protection Regulation
Conference
Volume
ISSN
ISBN
02
0730-3157
978-1-5386-2667-2
Citations 
PageRank 
References 
0
0.34
4
Authors
3
Name
Order
Citations
PageRank
Chiara Braghin11058.86
Stelvio Cimato240443.64
Alessio Della Libera300.34