Blockchain-Based Smart Medical Privacy-Preserving Contract System for Secure Electronic Health Records Management

PDF (1403KB), PP.37-52

Views: 0 Downloads: 0

Author(s)

B. Vasantha Rani 1,2,* Parminder Singh 1

1. School of CSE, Lovely Professional University, Phagwara, Punjab-India

2. Vignan‘s Institute Of Engineering For Women, Kappujagarajupeta

* Corresponding author.

DOI: https://doi.org/10.5815/ijeme.2025.06.04

Received: 12 Jan. 2025 / Revised: 15 Apr. 2025 / Accepted: 22 Jun. 2025 / Published: 8 Dec. 2025

Index Terms

Electronic Health Records (EHR), Blockchain Smart Contracts, Homomorphic Encryption, Privacy Preservation, Cryptographic Computing

Abstract

The rising frequency of data breaches and unauthorized access in healthcare systems has heightened concerns over privacy protection in Electronic Health Records (EHRs), especially when third parties, such as insurance companies, are involved. Traditional EHR solutions are often inadequate in safeguarding data confidentiality during multi-user access. This paper presents the Blockchain-based Smart Medical Privacy-preserving Contract System (BSMPCS), a novel framework designed to address these privacy challenges. By integrating Bitcoin smart contracts and homomorphic encryption, BSMPCS ensures secure management of EHRs while restricting access to only authorized entities. The decentralized and immutable characteristics of blockchain enhance data integrity, while smart contracts prevent unauthorized disclosure of sensitive health information to insurance companies. Additionally, homomorphic encryption enables insurance claim verifications without exposing the actual health records, preserving both patient identity and medical privacy. Unlike conventional systems, BSMPCS eliminates the need for third-party intermediaries, significantly reducing the risk of data leaks. Combining blockchain and advanced cryptographic methods, this framework provides a robust, privacy-preserving solution suitable for modern healthcare systems.

Cite This Paper

B. Vasantha Rani, Parminder Singh, "Blockchain-Based Smart Medical Privacy-Preserving Contract System for Secure Electronic Health Records Management", International Journal of Education and Management Engineering (IJEME), Vol.15, No.6, pp. 37-52, 2025. DOI:10.5815/ijeme.2025.06.04

Reference

[1]R. Cleve, ‘‘Limits on the security of coin flips when half the processors are faulty,’’ in Proc. 18th Annu. ACM Symp. Theory Comput. (STOC), 1986, pp. 364–369.
[2]J. Halpern and V. Teague, ‘‘Rational secret sharing and multiparty computation: Extended abstract,’’ in Proc. 36th Annu. ACM Symp. Theory Comput. (STOC), 2004, pp. 623–632.
[3]A. Lysyanskaya and N. Triandopoulos, ‘‘Rationality and adversarial behavior in multi- party computation,’’ in Advances in Cryptology— CRYPTO. Berlin, Germany: Springer, 2006, pp. 180–197.
[4]A. Groce and J. Katz, ‘‘Fair computation with rational players,’’ in Advances in Cryptology—EUROCRYPT. Berlin, Germany: Springer, 2012, pp. 81–98.
[5]M. Nojoumian and D. R. Stinson, ‘‘Socio-rational secret sharing as a new direction in rational cryptography,’’ in Decision and Game Theory for Security. Berlin, Germany: Springer 2012, pp. 18–37.
[6]G. Asharov, R. Canetti, and C. Hazay, ‘‘Towards a Game Theoretic View of Secure Computation,’’ in Advances in Cryptology—EUROCRYPT. Berlin, Germany: Springer 2011, pp. 426–445.
[7]S.Nakamoto.(2008).Bitcoin:A Peer-to-Peer Electronic Cash System. [Online]. Available: https://bitcoin.org/bitcoin.pdf
[8]M. Andrychowicz, S. Dziembowski, D. Malinowski, and Ł. Mazurek, ‘‘Fair two-party computations via Bitcoin deposits,’’ in Financial Cryptography and Data Security. Berlin, Germany: Springer, 2014, pp. 105–121.
[9]M. Andrychowicz, S. Dziembowski, D. Malinowski, and L. Mazurek, ‘‘Secure multiparty computations on Bitcoin,’’ in Proc. IEEE Symp. Secur. Privacy, May 2014, pp. 443–458.
[10]I. Bentov and R. Kumaresan, ‘‘How to Use Bitcoin to design fair protocols,’’ in Advances in Cryptology—CRYPTO. Berlin, Germany: Springer, 2014, pp. 421–439, 2014.
[11]R. Kumaresan and I. Bentov, ‘‘How to Use Bitcoin to incentivize correct computations,’’ in Proc. ACM SIGSAC Conf. Comput. Commun. Secur. (CCS), 2014, pp. 30–41.
[12]R. Kumaresan, T. Moran, and I. Bentov, ‘‘How to use Bitcoin to play decentralized poker,’’ in Proc. 22nd ACM SIGSAC Conf. Comput. Commun. Secur. (CCS), 2015, pp. 195–206.
[13]R. Kumaresan, V. Vaikuntanathan, and P. N. Vasudevan, ‘‘Improvements to secure computation with penalties,’’ in Proc. ACM SIGSAC Conf. Comput. Commun. Secur. (CCS), 2016, pp. 406–417.
[14]A. Kiayias, H.-S. Zhou, and V. Zikas, ‘‘Fair and robust multi-party computation using a global transaction ledger,’’ in Advances in Cryptology— EUROCRYPT. Berlin, Germany: Springer, 2016, pp. 705–734.
[15]Juan Perez. Facebook, google launch data portability programs to all, 2008.
[16]Latanya Sweeney. k-anonymity: A model for protecting privacy. International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems, 10(05):557–570, 2002.
[17]Ashwin Machanavajjhala, Daniel Kifer, Johannes Gehrke, and Muthu ramakrishnan Venkita subramaniam. l-diversity: Privacy beyond k-anonymity. ACM Transactions on Knowledge Discovery from Data (TKDD), 1(1):3, 2007. 
[18]Ninghui Li, Tiancheng Li, and Suresh Venkatasubramanian. t-closeness: Privacy beyond k-anonymity and l-diversity. In ICDE, volume 7, pages 106–115, 2007.
[19]Arvind Narayanan and Vitaly Shmatikov. How to break anonymity of the netflix prize dataset. arXiv preprint cs/0610105, 2006.
[20]Yves-Alexandre de Montjoye, Cesar A Hidalgo, Michel Verleysen, and ´ Vincent D Blondel. Unique in the crowd: The privacy bounds of human mobility. Scientific reports, 3, 2013.
[21]Cynthia Dwork. Differential privacy. In Automata, languages and programming, pages 1–12. Springer, 2006.
[22]Craig Gentry. Fully homomorphic encryption using ideal lattices. In STOC, volume 9, pages 169–178, 2009.
[23]Soujanya, D. and Ramana, K.V., 2021. Secured Surveillance Storage Model Using Blockchain. In Evolving             Technologies for Computing, Communication and Smart World (pp. 249-263). Springer, Singapore
[24]Al Omar, A.; Rahman, M.S.; Basu, A.; Kiyomoto, S. MediBchain: A blockchain based privacy preserving platform for healthcare data, Security, Privacy, and Anonymity in Computation, Communication, and Storage, Guangzhou, China, 12–15 December, 2017; Wang, G., Atiquzzaman, M., Yan, Z., Choo, K.K., Eds.; Springer: Cham, Switzerland, 2017.
[25]Li, H.; Zhu, L.; Shen, M.; Gao, F.; Tao, X.; Liu, S. Blockchain-Based Data Preservation System for Medical Data. J. Med. Syst. 2018, 42, 1–13.
[26]Azaria, A.; Ekblaw, A.; Vieira, T.; Lippman, A. MedRec: Using blockchain for medical data access and permission management. In Proceedings of the 2016 2nd International Conference on Open and Big Data (OBD), Vienna, Austria, 22–24 August 2016; pp. 25–30.
[27]Fan, K.; Wang, S.; Ren, Y.; Li, H.; Yang, Y. MedBlock: Efficient and Secure Medical Data Sharing Via Blockchain. J. Med. Syst. 2018, 42, 1–11.
[28]Zhang, A.; Lin, X. Towards Secure and Privacy-Preserving Data Sharing in e-Health Systems via Consortium Blockchain. J. Med. Syst. 2018, 42, 1–18.
[29]Bingqing Shen , Jingzhi Guo  and Yilong Yang, MedChain: Efficient Healthcare Data Sharing via Blockchain, Journal of Applied Science (MDPI), Volume 9(6), 1207, https://doi.org/10.3390/app9061207, 2019.
[30]Uddin, M.; Memon, M.S.; Memon, I.; Ali, I.; Memon, J.; Abdelhaq, M.; Alsaqour, R. Hyperledger Fabric Blockchain: Secure and Efficient Solution for Electronic Health Records. CMC Comput. Mater. Continua. 2021, 68, 2377–2397
[31]Peng, Z.; Xu, C.; Wang, H.; Huang, J.; Xu, J.; Chu, X. P2b-trace: Privacy-Preserving Blockchain-Based Contact Tracing to Combat Pandemics. In Proceedings of the 2021 International Conference on Management of Data, Xi’an, China, 20–25 June 2021; pp. 2389–2393.
[32]Alrebdi, N.; Alabdulatif, A.; Iwendi, C.; Lian, Z. SVBE: Searchable and verifiable blockchain-based electronic health records system. Sci. Rep. 2022, 12, 266. [CrossRef] [PubMed] 
[33]Mondal, S.; Shafi, M.; Gupta, S.; Gupta, S.K. Blockchain Based Secure Architecture for Electronic Healthcare Record Management. GMSARN Int. J. 2022, 16, 413–426.
[34]Alrebdi, N.; Alabdulatif, A.; Iwendi, C.; Lian, Z. SVBE: Searchable and verifiable blockchain-based electronic health records system. Sci. Rep. 2022, 12, 266. [CrossRef] [PubMed]
[35]Mondal, S.; Shafi, M.; Gupta, S.; Gupta, S.K. Blockchain Based Secure Architecture for Electronic Healthcare Record Management. GMSARN Int. J. 2022, 16, 413–426.
[36]Cerchione, R.; Centobelli, P.; Riccio, E.; Abbate, S.; Oropallo, E. Blockchain’s coming to hospital to digitalize healthcare services: Designing a distributed electronic health record ecosystem. Technovation 2023, 120, 798–805. [CrossRef]
[37]Chatterjee, A.; Pahari, N.; Prinz, A. HL7 FHIR with SNOMED-CT to Achieve Semantic and Structural Interoperability in Personal Health Data: A Proof-of-Concept Study. Sensors 2022, 22, 3756. [CrossRef] [PubMed]
[38]Jayabalan, J.; Jeyanthi, N. Scalable blockchain model using off-chain IPFS storage for healthcare data security and privacy. J. Parallel Distrib. Comput. 2022, 164, 152–167. [CrossRef]
[39]Ruan, P.; Dinh, T.T.A.; Lin, Q.; Zhang, M.; Chen, G.; Ooi, B.C. Revealing Every Story of Data in Blockchain Systems. ACM SIGMOD Rec. 2020, 49, 70–77. [CrossRef]
[40]Tith, D.; Lee, J.S.; Suzuki, H.; Wijesundara, W.M.A.B.; Taira, N.; Obi, T.; Ohyama, N. Application of blockchain to maintaining patient records in electronic health record for enhanced privacy, scalability, and availability. Healthc. Inform. Res. 2020, 26, 3–12.
[41]Mani, V.; Manickam, P.; Alotaibi, Y.; Alghamdi, S.; Khalaf, O.I. Hyperledger Healthchain: Patient-Centric IPFS-Based Storage of Health Records. Electronics 2021, 10, 3003. 
[42]Chenthara, S.; Ahmed, K.; Wang, H.; Whittaker, F.; Chen, Z. Healthchain: A novel framework on privacy preservation of electronic health records using blockchain technology. PLoS ONE 2020, 15, e0243043. 
[43]Sun, J.; Yao, X.; Wang, S.; Wu, Y. Blockchain-based secure storage and access scheme for electronic health records in IPFS. IEEE Access 2020, 8, 59389–59401. 
[44]Verdonck, M.; Poels, G. Decentralized Data Access with IPFS and Smart Contract Permission Management for Electronic Health Records. In International Conference on Business Process Management; Springer: Cham, Switzerland, 2020; pp. 5–16.
[45]Ashizawa, N.; Yanai, N.; Cruz, J.P.; Okamura, S. Eth2Vec: Learning contract-wide code representations for vulnerability detection on ethereum smart contracts. Blockchain Res. Appl. 2022, 1, 100101. 
[46]Chelsey C. Y. Hang, M. Batumalay, T D Subash, R. Thinakaran and B. Chitra, “Blockchain-based and IoT-based Health Monitoring App: Lowering Risks and Improving Security and Privacy” International Journal of Advanced Computer Science and Applications(IJACSA), 15(6), 2024. http://dx.doi.org/10.14569/IJACSA.2024.01506103
[47]Daraghmi, E.-Y.; Daraghmi, Y.-A.; Yuan, S.-M. MedChain: A Design of Blockchain-Based System for Medical Records Access and Permissions Management. IEEE Access 2019, 7, 164595–164613.