<?xml version="1.0" encoding="utf-8"?>
<journal>
<title>North Khorasan University of Medical Sciences</title>
<title_fa>مجله دانشگاه علوم پزشکی خراسان شمالی</title_fa>
<short_title>nkums</short_title>
<subject></subject>
<web_url>http://journal.nkums.ac.ir</web_url>
<journal_hbi_system_id>1</journal_hbi_system_id>
<journal_hbi_system_user>admin</journal_hbi_system_user>
<journal_id_issn>2008-8701</journal_id_issn>
<journal_id_issn_online>2008-8698</journal_id_issn_online>
<journal_id_pii></journal_id_pii>
<journal_id_doi>10.66224/nkums</journal_id_doi>
<journal_id_iranmedex></journal_id_iranmedex>
<journal_id_magiran></journal_id_magiran>
<journal_id_sid></journal_id_sid>
<journal_id_nlai></journal_id_nlai>
<journal_id_science></journal_id_science>
<language>fa</language>
<pubdate>
	<type>jalali</type>
	<year>1401</year>
	<month>2</month>
	<day>1</day>
</pubdate>
<pubdate>
	<type>gregorian</type>
	<year>2022</year>
	<month>5</month>
	<day>1</day>
</pubdate>
<volume>14</volume>
<number>1</number>
<publish_type>online</publish_type>
<publish_edition>1</publish_edition>
<article_type>fulltext</article_type>
<articleset>
	<article>


	<language>fa</language>
	<article_id_doi></article_id_doi>
	<title_fa>مخاطرات، محدودیت‌ها و تمهیدات افزون در مقابله با باج افزارها در زیرساخت‌های فناوری اطلاعات حوزه سلامت</title_fa>
	<title>Risks, Limitations and the Need for Additional Measures Against Ransomware in the Health Information Technology Infrastructure</title>
	<subject_fa>علوم پایه</subject_fa>
	<subject>Basic Sciences</subject>
	<content_type_fa>مقاله پژوهشی</content_type_fa>
	<content_type>Orginal Research</content_type>
	<abstract_fa>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-size:14px;&quot;&gt;&lt;span style=&quot;font-family:nasimYW;&quot;&gt;&lt;span style=&quot;line-height:normal&quot;&gt;&lt;span style=&quot;direction:rtl&quot;&gt;&lt;span style=&quot;unicode-bidi:embed&quot;&gt;&lt;span new=&quot;&quot; roman=&quot;&quot; times=&quot;&quot;&gt;&lt;b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt;مقدمه: &lt;/span&gt;&lt;/b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt;حتی قبل از پاندمی کووید 19 یکی از اهداف پرمنفعت برای مهاجمین پشت حملات باج&#8204;افزاری، دست&#8204;اندازی به استمرار خدمات در حوزه فناوری اطلاعات سلامت بود. در این پژوهش برای اولین بار ضمن معرفی، با تکیه بر آمار و مدل&#8204;سازی نشان داده می&#8204;شود که پیشگیری و مقابله با این حملات در زیرساخت&#8204;های فناوری اطلاعات حوزه سلامت، دارای اهمیت مضاعف در قیاس با سایر حوزه&#8204;ها بوده، تأثیر منفی متقابل داشته و در این حوزه نیاز به تمهیدات و اقداماتی متفاوت وجود دارد.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;span style=&quot;line-height:normal&quot;&gt;&lt;span style=&quot;direction:rtl&quot;&gt;&lt;span style=&quot;unicode-bidi:embed&quot;&gt;&lt;span new=&quot;&quot; roman=&quot;&quot; times=&quot;&quot;&gt;&lt;b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt;روش کار:&lt;/span&gt;&lt;/b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt; ابتدا با اتکا بر مرور آمارهای حاصل از ارائه خدمات امدادی در حوزه مقابله با حملات باج&#8204;افزاری در سطح کشور، پارامترهای اقتصادی حاصل بر مدل&#8204;های موجود در فضای مساله نگاشت می&#8204;شود. پس از آن با اعمال داده&#8204;های حاصل از ارائه خدمات امدادی در حوزه مقابله با حملات باج&#8204;افزاری در فضای بومی فناوری اطلاعات سلامت، در مدل ایجاد شده، تخمینی از برهم&#8204;کنش مخاطرات ارائه می&#8204;گردد.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;span style=&quot;line-height:normal&quot;&gt;&lt;span style=&quot;direction:rtl&quot;&gt;&lt;span style=&quot;unicode-bidi:embed&quot;&gt;&lt;span new=&quot;&quot; roman=&quot;&quot; times=&quot;&quot;&gt;&lt;b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt;یافته&#8204;ها:&lt;/span&gt;&lt;/b&gt;&lt;span b=&quot;&quot; nazanin=&quot;&quot;&gt; تحلیل اقتصادی-آماری نتایج کمی حاصل از مدلسازی، تخمین و تحلیل روش&#8204;مند آماری-اقتصادی داده&#8204;ها گواه بر آن است که مخاطرات ناشی از باج افزارها در زیرساخت&#8204;های حوزه سلامت می&#8204;تواند تفاوت&#8204;هایی بنیادین و تاثیری متقابل با آنچه در سایر حوزه&#8204;های کاربرد فناوری اطلاعات وجود دارد، داشته باشند.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;b&gt;&lt;span dir=&quot;RTL&quot; lang=&quot;AR-SA&quot;&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span arial=&quot;&quot;&gt;نتیجه گیری:&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span dir=&quot;RTL&quot; lang=&quot;AR-SA&quot;&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span arial=&quot;&quot;&gt; با استدلال&#8204;ها و نتایج عرضه شده در این پژوهش می&#8204;توان نیاز به تمهیدات و تدابیر متفاوت در زمینه فناوری اطلاعات حوزه بهداشت و درمان را به اثبات رساند و لزوم سرمایه&#8204;گذاری و اولویت&#8204;بندی جدید برای تمهیدات و اقدامات حفاظتی در این عرصه را نمایان نمود.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;</abstract_fa>
	<abstract>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family:Arial;&quot;&gt;&lt;span style=&quot;font-size:14px;&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt;&lt;b&gt;Introduction:&lt;/b&gt; Even before the Covid 19 pandemic, one of the lucrative targets for attackers behind ransomware attacks was Encroaching on the continuity of services in the field of health information technology. In this study, for the first time, while introducing, relying on statistics and modeling, it is shown that the prevention and counteraction of these attacks in the IT infrastructure of the healthcare sector are doubly essential compared to other areas and have a negative reciprocal effect so that this area requires different measures and actions.&lt;/span&gt;&lt;br&gt;
&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span calibri=&quot;&quot;&gt;&lt;b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt;Method:&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt; First, based on reviewing the statistics obtained from the rescue services in the country&amp;#39;s field of countering ransomware attacks, the resulting economic parameters are mapped on the existing models in the issue area. Then, by applying the data obtained from the rescue services against ransomware attacks in the native environment of health information technology, in the created model, an estimate of the interaction of risks is presented.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span calibri=&quot;&quot;&gt;&lt;b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt;Results:&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt; Economic-statistical analysis of quantitative results from modeling, methodological statistical-economic estimation, and data analysis indicate that the risks of ransomware in healthcare infrastructure can have fundamental differences and interactions with those in other areas of information technology application.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;br&gt;
&lt;b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt;Conclusion:&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;span style=&quot;line-height:107%&quot;&gt;&lt;span lt=&quot;&quot; optima=&quot;&quot; std=&quot;&quot;&gt; With the arguments and results presented in this study, it is possible to prove the need for different measures and tactics in the field of health information technology and indicate the need for investment and new prioritization for precautions and protective measures in this field.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;</abstract>
	<keyword_fa>زیرساخت‌های فناوری اطلاعات سلامت, امنیت اطلاعات, مدل‌سازی اقتصادی, حملات باج‌افزاری</keyword_fa>
	<keyword>Health Information System, Cyber Security, Economic Modelling, Ransomware Attack</keyword>
	<start_page>80</start_page>
	<end_page>86</end_page>
	<web_url>http://journal.nkums.ac.ir/browse.php?a_code=A-10-25-780&amp;slc_lang=fa&amp;sid=1</web_url>


<author_list>
	<author>
	<first_name>Mehran </first_name>
	<middle_name></middle_name>
	<last_name>Garmehi</last_name>
	<suffix></suffix>
	<first_name_fa>مهران</first_name_fa>
	<middle_name_fa></middle_name_fa>
	<last_name_fa>گرمه</last_name_fa>
	<suffix_fa></suffix_fa>
	<email>m.garme@ub.ac.ir</email>
	<code>100319475328460022811</code>
	<orcid>100319475328460022811</orcid>
	<coreauthor>Yes
</coreauthor>
	<affiliation>Assistant Professor University of Bojnord, University of Bojnord, Faculty of Engineering, Central Laboratories Building, APA-UBCERT LAB, Bojnord, Iran</affiliation>
	<affiliation_fa>استادیار، گروه مهندسی کامپیوتر و رئیس آزمایشگاه تخصصی آپا، دانشکده فنی و مهندسی، دانشگاه بجنورد، بجنورد، ایران</affiliation_fa>
	 </author>


</author_list>


	</article>
</articleset>
</journal>
