A Secure Access Control Scheme in Electronic Health Systems Using Attribute-Based Encryption and dual-blockchain Architecture

Document Type : Original Article

Authors

Department of Computer Engineering, Faculty of Engineering, Shahed University, Tehran, Iran

Abstract

The rapid evolution of technology has introduced significant challenges to information security and privacy preservation in electronic healthcare (e-health) systems. Efficient management of patient health data storage, sharing, and access represents a critical challenge for these systems. Addressing security concerns necessitates a comprehensive analysis of e-health architectures and communication paradigms prior to intervention. This study identifies the core structural foundations of e-health systems through an analysis of architectural designs over the past decade. Various clinical scenarios were examined, and access conditions for all stakeholders in the e-health healthcare process were defined. A secure, dynamic access control scheme leveraging dual blockchain, attribute-based encryption (ABE), and group signatures is proposed. Evaluation results indicate that the proposed scheme not only satisfies security requirements but also demonstrates acceptable performance and implementability. Security analysis against known attacks on permissioned blockchains revealed full resistance to 68% of attacks, partial resistance to 14%, and vulnerability to 18%.

Keywords