6 CONCLUSIONS AND FUTURE
WORK
Motivated by the increasing need for remote
monitoring of patients, in this paper, the authors
investigate whether it is practically possible to use
off-the-shelf vital sign measurement devices for
remote clinical use in a secure manner. A set of
devices (9 in total) were selected to measure the four
vital signs and weight. The devices and software
associated with them (Apps) were examined in detail.
In addition, usage terms and conditions and
regulatory compliance status were explored. With the
help of Node-Red and ESP32, the authors attempted
to intercept the data streams that were communicated
through Bluetooth.
Following review of the selected medical devices
in this paper, the practical use off-the-shelf vital signs
measurement products for remote clinical monitoring
of patients securely appears to be a difficult prospect
to achieve. This is due the fact that the reviewed
products are predominantly closed systems that have
regulatory challenges in terms of integration with
other clinical information systems. Despite this fact,
data from these sensor devices were able to be
intercepted relatively easily, thereby posing some risk
to individual privacy. The authors note there are
promising products in the market, but these still
require significant efforts to achieve practical
solutions.
As for future work, there is the plan to investigate
Bluetooth range testing to measure how far the
devices can maintain connectivity with Node-RED or
ESP32, providing a clearer indication of the
proximity requirements of these sensor devices in
their susceptibility to data interception or other
attacks.
REFERENCES
Chacko, A., & Hayajneh, T. (2018). Security and privacy
issues with IoT in healthcare. EAI Endorsed
Transactions on Pervasive Health and Technology,
4(14), e2-e2.
Fiddler Everywhere. (2022). https://www.telerik.com/
fiddler/fiddler-everywhere
Gerke, S., Shachar, C., Chai, P. R., & Cohen, I. G. (2020).
Regulatory, safety, and privacy concerns of home
monitoring technologies during COVID-19. Nature
medicine, 26(8), 1176-1182.
Github. (2022). Github - Micropython. https://github.
com/micropython/micropython-
lib/tree/master/micropython/bluetooth/aioble
Grand View Research. (2022). mHealth Market Size, Share
& Trends Analysis Report By Component, By Services
(Monitoring Services, Diagnosis Services), By
Participants (Mobile Operators, Devices Vendors), By
Region, And Segment Forecasts, 2022 - 2030.
https://www.grandviewresearch.com/industry-analysis
/mhealth-market
Grindrod, K., Boersema, J., Waked, K., Smith, V., Yang, J.,
& Gebotys, C. (2017). Locking it down: The privacy
and security of mobile medication apps. Canadian
Pharmacists Journal/Revue Des Pharmaciens Du
Canada, 150(1), 60-66.
Hendricks-Sturrup, R. (2022). Pulse Oximeter App Privacy
Policies During COVID-19: Scoping Assessment.
JMIR mHealth and uHealth, 10(1), e30361.
Holman, T. (2022). mHealth (mobile health). https://
www.techtarget.com/searchhealthit/definition/mHealth
Kandhare, A. (2019). Bluetooth Vs. Bluetooth Low
Energy: What’s The Difference? https://medium.
com/@akash.kandhare/bluetooth-vs-bluetooth-low-en
ergy-whats-the-difference-74687afcedb1
Kim, D.-w., Choi, J.-y., & Han, K.-h. (2020). Risk
management-based security evaluation model for
telemedicine systems. BMC Medical Informatics and
Decision Making, 20(1), 1-14.
Knorr, K., Aspinall, D., & Wolters, M. (2015). On the
privacy, security and safety of blood pressure and
diabetes apps. IFIP International Information Security
and Privacy Conference,
Leloglu, E. (2016). A review of security concerns in
Internet of Things. Journal of Computer and
Communications, 5(1), 121-136.
MicroPython. (2022). MicroPython.
https://micropython.org/
Muzny, M., Henriksen, A., Giordanengo, A., Muzik, J.,
Grøttland, A., Blixgård, H., Hartvigsen, G., & Årsand,
E. (2020). Wearable sensors with possibilities for data
exchange: Analyzing status and needs of different
actors in mobile health monitoring systems.
International journal of medical informatics, 133,
104017.
Nick, G. (2022). How Many IoT Devices Are There in
2022? [All You Need To Know]. Tech Jury.
https://techjury.net/blog/how-many-iot-devices-are-
there/#gref
NursingAnswers.net. (2018). Health Observation Lecture:
Measuring and Recording the Vital Signs.
https://nursinganswers.net/lectures/nursing/health-
observation/3-detailed.php
OAIC. (2022a). Health and medical research.
https://www.oaic.gov.au/privacy/the-privacy-
act/health-and-medical-research
OAIC. (2022b). Read the Australian Privacy Principles.
https://www.oaic.gov.au/privacy/australian-privacy-
principles/read-the-australian-privacy-principles
Pahlevanzadeh, B., Koleini, S., & Fadilah, S. I. (2021).
Security in IOT: Threats and vulnerabilities, layered
architecture, encryption mechanisms, challenges and
solutions. International Conference on Advances in
Cyber Security,