Regulations and Standards Aware Framework for Recording of mHealth App Vulnerabilities

Regulations and Standards Aware Framework for Recording of mHealth App Vulnerabilities

Zornitza Prodanoff, Cynthia White-Williams, Hongmei Chi
Copyright: © 2021 |Pages: 16
DOI: 10.4018/IJEHMC.20210501.oa1
Article PDF Download
Open access articles are freely available for download

Abstract

The authors describe a standards-based security framework for the purposes of recording security and privacy vulnerabilities discovered in mHealth apps. The proposed framework is compliant with the international standard for software architecture descriptions, ISO/IEC/IEEE 42010, relevant state-agency regulations, and US federal healthcare mandates, as well as computing standards for data interchange formats. Future real-life implementations are envisioned to consists of three key components: (1) design and implementation of a repository that links vulnerabilities to concepts from the taxonomy used by legislative and standardization bodies; (2) population of the repository with security vulnerability descriptions that follow a standard format, such as JavaScript Object Notation (JSON); and (3) implementation of a searchable user interface (e.g., Google's Firebase UI), which allows for aggregation statistics, data analytics, as well as public access to the repository. The proposed framework design promotes timely updates of regulations, standardization drafts, and app development platforms.
Article Preview
Top

1. Introduction

Mobile computing devices are the primary tool for disseminating and using commercial, health, medical, and military applications (Avancha, et al. 2012; West & Bleiberg, 2014). The International Telecommunication Union reports that in 2013 95% of people lived in an area that is covered by cellular networks, while mobile broadband networks (3G, 4G or above) were already accessible to 84% of the global population (ITU ICT Facts and Figures, 2013). The reported popularity of smartphones has been the main driver for increase in the development and adoption of mHealth apps (Wallis, Blessing, Dalwai, & Shin, 2017). The healthcare industry has experienced a significant increase in the utilization of mHealth applications. In 2017, there were about 325,000 mHealth apps available for download (Global mHealth, 2019). Another 2017 study reported that there have been 259,000 mHealth apps available for consumer download through the major app stores (Lee & Kim, 2017). It is estimated that by 2025, mHealth apps will generate approximately $111.1 billion revenue (Global mHealth, 2019). At the same time, chronic disease has been reported as the leading cause of death worldwide, while chronic disease management apps are projected at $15 billion, which is over 70 percent of the mHealth apps revenue (Mabo, Swar, & Aghili, 2018). For those reasons, mHealth apps have been instituted in general to mitigate the mortality rate associated with chronic diseases through overall disease management or prevention approaches. As depicted in Figure 1, mHealth apps are widely offered by both healthcare providers and third party developers alike. These devices range from communication capabilities, health information systems, informational resources, and clinical software applications (Ventola, 2014).

Figure 1.

Availability of mHealth Apps: Providers vs. 3-rd Party Developers (Pennic, 2016)

IJEHMC.20210501.oa1.f01

Complete Article List

Search this Journal:
Reset
Volume 15: 1 Issue (2024)
Volume 14: 1 Issue (2023)
Volume 13: 5 Issues (2022): 4 Released, 1 Forthcoming
Volume 12: 6 Issues (2021)
Volume 11: 4 Issues (2020)
Volume 10: 4 Issues (2019)
Volume 9: 4 Issues (2018)
Volume 8: 4 Issues (2017)
Volume 7: 4 Issues (2016)
Volume 6: 4 Issues (2015)
Volume 5: 4 Issues (2014)
Volume 4: 4 Issues (2013)
Volume 3: 4 Issues (2012)
Volume 2: 4 Issues (2011)
Volume 1: 4 Issues (2010)
View Complete Journal Contents Listing