Islam, Shareeful and Abba, Abdulrazaq and Ismail, Umar and Mouratidis, Haralambos and Papastergiou, Spyridon (2022) Vulnerability prediction for secure healthcare supply chain service delivery. Integrated Computer Aided Engineering, 29 (4). pp. 389-409. DOI https://doi.org/10.3233/ica-220689
Islam, Shareeful and Abba, Abdulrazaq and Ismail, Umar and Mouratidis, Haralambos and Papastergiou, Spyridon (2022) Vulnerability prediction for secure healthcare supply chain service delivery. Integrated Computer Aided Engineering, 29 (4). pp. 389-409. DOI https://doi.org/10.3233/ica-220689
Islam, Shareeful and Abba, Abdulrazaq and Ismail, Umar and Mouratidis, Haralambos and Papastergiou, Spyridon (2022) Vulnerability prediction for secure healthcare supply chain service delivery. Integrated Computer Aided Engineering, 29 (4). pp. 389-409. DOI https://doi.org/10.3233/ica-220689
Abstract
Healthcare organisations are constantly facing sophisticated cyberattacks due to the sensitivity and criticality of patient health care information and wide connectivity of medical devices. Such attacks can pose potential disruptions to critical services delivery. There are number of existing works that focus on using Machine Learning (ML) models for predicting vulnerability and exploitation but most of these works focused on parameterized values to predict severity and exploitability. This paper proposes a novel method that uses ontology axioms to define essential concepts related to the overall healthcare ecosystem and to ensure semantic consistency checking among such concepts. The application of ontology enables the formal specification and description of healthcare ecosystem and the key elements used in vulnerability assessment as a set of concepts. Such specification also strengthens the relationships that exist between healthcare-based and vulnerability assessment concepts, in addition to semantic definition and reasoning of the concepts. Our work also makes use of Machine Learning techniques to predict possible security vulnerabilities in health care supply chain services. The paper demonstrates the applicability of our work by using vulnerability datasets to predict the exploitation. The results show that the conceptualization of healthcare sector cybersecurity using an ontological approach provides mechanisms to better understand the correlation between the healthcare sector and the security domain, while the ML algorithms increase the accuracy of the vulnerability exploitability prediction. Our result shows that using Linear Regression, Decision Tree and Random Forest provided a reasonable result for predicting vulnerability exploitability.
Item Type: | Article |
---|---|
Uncontrolled Keywords: | Healthcare supply chain service, ontology, vulnerability exploitability prediction, machine learning, cyber security |
Divisions: | Faculty of Science and Health Faculty of Science and Health > Computer Science and Electronic Engineering, School of |
SWORD Depositor: | Unnamed user with email elements@essex.ac.uk |
Depositing User: | Unnamed user with email elements@essex.ac.uk |
Date Deposited: | 22 Nov 2022 15:20 |
Last Modified: | 30 Oct 2024 20:49 |
URI: | http://repository.essex.ac.uk/id/eprint/34007 |
Available files
Filename: Shareeful_et_al_2022-2.pdf