Skip to main navigation Skip to search Skip to main content

Mitigating Ransomware Threats in Cloud-Based Healthcare: A Risk-Based Approach to Patient Data Security and Continuity

  • Northumbria University
  • British University in Dubai

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

With advancement in technology, the level of reliance on cloud-based healthcare system has increased. The safety of patient s data and continuity of healthcare is threatened by malicious software like ransomwares. Ransomware is a software that attacks the data storage of a hospital or healthcare system by taking advantage of loopholes in the cloud-based data infrastructure. To ensure safety of healthcare system s data, necessary and adequate measures must be put in place by healthcare organizations to prevent possible attacks in the future. This study employs a risk-based approach which integrates Patient Data Compromise Index (PDCI) and the Healthcare Disruption Index (HDI) to evaluate the impact of ransomware attacks on cloud-based hospital systems. Using Combined Impact Score (CIS), 50 anonymized UK hospital datasets were analysed to determine vulnerability severity and its effect on clinical operations. The study considered vulnerabilities with Common Vulnerability Scoring System (CVSS) ≥ 4.0, data exposure levels ≥ 0.70, and system downtimes ≥ 20 hours. The findings indicate that hospitals experiencing prolonged downtimes (≥ 40-hour) exhibited highseverity vulnerabilities (CVSS ≥ 8.0). Furthermore, lower CIS values correlated with reduced system susceptibility to ransomware-induced disruptions. The results highlight the necessity of implementing automated ransomware response mechanisms, Zero Trust Security Architecture, and data-driven threat detection to fortify cloud-based healthcare systems. This study advances healthcare cybersecurity by providing a structured, data-driven framework for detecting vulnerabilities and ensuring resilient healthcare operations against ransomware threats..

Original languageEnglish
Title of host publication3rd International Conference on Business Analytics for Technology and Security, ICBATS 2025
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9798331538279
DOIs
StatePublished - 2025
Event3rd International Conference on Business Analytics for Technology and Security, ICBATS 2025 - Hybrid, Dubai, United Arab Emirates
Duration: 1 May 20252 May 2025

Publication series

Name3rd International Conference on Business Analytics for Technology and Security, ICBATS 2025

Conference

Conference3rd International Conference on Business Analytics for Technology and Security, ICBATS 2025
Country/TerritoryUnited Arab Emirates
CityHybrid, Dubai
Period1/05/252/05/25

Keywords

  • Cloud-Based Healthcare
  • Cybersecurity
  • Healthcare Continuity
  • Patient Data Security
  • Ransomware
  • Risk Assessment

Fingerprint

Dive into the research topics of 'Mitigating Ransomware Threats in Cloud-Based Healthcare: A Risk-Based Approach to Patient Data Security and Continuity'. Together they form a unique fingerprint.

Cite this