2015 IEEE Eighth International Conference on Software Testing, Verification and Validation Workshops (ICSTW) 2015
DOI: 10.1109/icstw.2015.7107459
|View full text |Cite
|
Sign up to set email alerts
|

Security testing for Android mHealth apps

Abstract: Mobile health (mHealth) apps are an ideal tool for monitoring and tracking long-term health conditions; they are becoming incredibly popular despite posing risks to personal data privacy and security. In this paper, we propose a testing method for Android mHealth apps which is designed using a threat analysis, considering possible attack scenarios and vulnerabilities specific to the domain. To demonstrate the method, we have applied it to apps for managing hypertension and diabetes, discovering a number of ser… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
45
0
1

Year Published

2015
2015
2023
2023

Publication Types

Select...
6
2
2

Relationship

0
10

Authors

Journals

citations
Cited by 32 publications
(46 citation statements)
references
References 11 publications
0
45
0
1
Order By: Relevance
“…Although most studies state that evaluation is orientated toward patient safety, our study revealed that most participants had only considered the potential for unhelpful or improper advice. Users and clinicians must remain cautious, as security and the development of adequate privacy (including location information), are not always a priority for mHealth app developers (Knorr & Aspinall, 2015;Buijink et al, 2013).…”
Section: Discussionmentioning
confidence: 99%
“…Although most studies state that evaluation is orientated toward patient safety, our study revealed that most participants had only considered the potential for unhelpful or improper advice. Users and clinicians must remain cautious, as security and the development of adequate privacy (including location information), are not always a priority for mHealth app developers (Knorr & Aspinall, 2015;Buijink et al, 2013).…”
Section: Discussionmentioning
confidence: 99%
“…First, evaluation of metainformation regarding information privacy practices, such as privacy notices or user interface characteristics [16,17]. Second, manual assessment conducted on technical aspects of apps, such as analyzing the source code or monitoring data connections [18,19,1,9,20,21,22,23]. Research on automated breach of confidentiality risk assessment is sparse.…”
Section: Related Workmentioning
confidence: 99%
“…identificaron además herramientas especializadas en pruebas de seguridad para Android [24], [25], [26] estas es particulares son interesantes ya que el número de usuarios con dispositivos móviles ha aumentado significativamente en los últimos años, y las aplicaciones móviles se están convirtiendo en herramientas integrales para la vida diaria.…”
Section: Seunclassified