Related Experiment Video
Updated: Apr 4, 2026

TBase - an Integrated Electronic Health Record and Research Database for Kidney Transplant Recipients
Published on: April 13, 2021
A Hash Based Remote User Authentication and Authenticated Key Agreement Scheme for the Integrated EPR Information
Chun-Ta Li1, Chi-Yao Weng2, Cheng-Chi Lee3,4
1Department of Information Management, Tainan University of Technology, No. 529, Zhongzheng Road, Tainan City, 71002, Taiwan. th0040@mail.tut.edu.tw.
Das's proposed electronic patient record (EPR) authentication scheme is vulnerable. We introduce a new, secure, and efficient scheme using lightweight hashing and XOR operations for remote medical services.
Area of Science:
- Computer Science
- Information Security
- Healthcare Informatics
Background:
- Remote user authentication is crucial for protecting patient privacy in electronic patient record (EPR) systems.
- Existing schemes, like Das's hash-based approach, aim to secure access to integrated EPR information systems.
- However, vulnerabilities in current methods necessitate improved security protocols.
Purpose of the Study:
- To identify and address security flaws in Das's remote user authentication scheme for EPR systems.
- To propose a novel, secure, and efficient authentication scheme for remote medical services.
- To enhance the protection of patient privacy and ensure authorized access to integrated EPR information.
Main Methods:
- Analysis of Das's hash-based remote user authentication scheme, identifying vulnerabilities to modification and user duplication attacks.
- Development of a new authentication scheme utilizing lightweight hash functions and bitwise exclusive-or (XOR) operations.
- Security proof and performance analysis of the proposed scheme.
Main Results:
- Das's authentication scheme was found to be vulnerable to specific active attacks.
- The proposed scheme demonstrates enhanced security against identified vulnerabilities.
- The new scheme offers improved efficiency and suitability for remote healthcare services.
Conclusions:
- The proposed lightweight hash and XOR-based authentication scheme provides a more secure and efficient solution for integrated EPR information systems.
- This enhanced security is vital for protecting patient privacy in remote medical services.
- The findings support the adoption of the new scheme in real-world healthcare applications.
Related Concept Videos
Methods of Documentation VII: EMR
Legal Guidelines for Documentation
Integrated Healthcare System
Guidelines and Strategies for Safe Computer Charting
Maintain Confidentiality and Security:
Health Information Technology and Healthcare Information System
Health Information Technology, commonly called HIT, integrates advanced information systems and technology in healthcare settings. Its primary functions include:
Ethical Standards I
The Code of Ethics provisions outline the nurse's duty to the patient, the healthcare team, the profession, and society. The Code's fundamental principles include advocacy,...

