About Us
Research Watch
•स्क्रिनमा देखिने चुरोट: सुर्तीजन्य हानि न्यूनीकरण नीतिमा दक्षिण एसियाले अझै के छुटाइरहेको छ•नेपालमा पिसाब नलीको संक्रमण र एन्टिबायोटिक प्रतिरोधको बढ्दो संकट•Frontline Perspectives on Nursing Leadership in Nepal•Protecting the Smallest Lungs from the Hidden Grip of RSV in Kathmandu•The Heavy Burden of Bullying on Student Wellbeing in Nepal•The Emerging Landscape of Thyroid Health in Central Nepal•How a Recent Western Nepal Study is Redefining Anemia Diagnosis•How H. Pylori is Impacting the Health of Karnali’s High-Altitude Communities•Sweet Poison, Bitter Reality: The Unseen Diabetes Epidemic Among Nepal’s Youth•How Missing Checklists and Protocols are Costing Lives in Nepal’s ERs•स्क्रिनमा देखिने चुरोट: सुर्तीजन्य हानि न्यूनीकरण नीतिमा दक्षिण एसियाले अझै के छुटाइरहेको छ•नेपालमा पिसाब नलीको संक्रमण र एन्टिबायोटिक प्रतिरोधको बढ्दो संकट•Frontline Perspectives on Nursing Leadership in Nepal•Protecting the Smallest Lungs from the Hidden Grip of RSV in Kathmandu•The Heavy Burden of Bullying on Student Wellbeing in Nepal•The Emerging Landscape of Thyroid Health in Central Nepal•How a Recent Western Nepal Study is Redefining Anemia Diagnosis•How H. Pylori is Impacting the Health of Karnali’s High-Altitude Communities•Sweet Poison, Bitter Reality: The Unseen Diabetes Epidemic Among Nepal’s Youth•How Missing Checklists and Protocols are Costing Lives in Nepal’s ERs

CYMEDSEC Cybersecurity Performance in Remote Patient Monitoring Systems in a Live Hospital Setting: Protocol for an Observational Study.

Researchers

Michela Falcone, Francesco Giuliani, Stephen Gilbert, Oscar Freyer, Francesco Ricciardi

Abstract

Remote patient monitoring (RPM) systems based on the Internet of Medical Things (IoMT) technologies are increasingly integrated into chronic disease management and telemedicine pathways. Despite their widespread adoption, cybersecurity performance, system resilience, and user behavior in real-world clinical environments remain underexplored. Existing evidence is fragmented, often limited to laboratory simulations or vendor-driven assessments, leaving a critical gap in understanding how cybersecurity risks across the full life cycle of RPM systems deployed in health care settings. This study aims to systematically analyze the cybersecurity posture, system resilience, and user behavior across the full life cycle of IoMT-enabled RPM systems in a real-world hospital and home-care environment. The study aims to generate empirical evidence on how technical safeguards, operational workflows, and human factors influence cybersecurity risks during procurement, integration, deployment, routine use, and decommissioning of these platforms. This observational study will analyze 2 independent RPM systems used for chronic disease monitoring in a real-world hospital setting. The assessment framework includes (1) system-log analytics to evaluate authentication events, device connectivity, update and patch management, and anomalous behaviors; (2) a controlled phishing simulation targeting health care professionals to assess susceptibility and response patterns; (3) an evaluation of update management processes and vendor-hospital interactions; (4) measurement of cybersecurity awareness and practices among patients and health care professionals using validated instruments; and (5) mapping of vulnerabilities across all life cycle phases, from procurement to decommissioning. Although the study includes cybersecurity training, preassessments/postassessments, and controlled phishing and update-management scenarios, these activities are part of the observational framework and are not designed as experimental interventions that have an impact on the clinical aspects of patient care. Quantitative data will be analyzed using descriptive and inferential statistics, while qualitative insights from operational workflows will be integrated to contextualize system performance. Ethical approval has been obtained from the institutional ethics committee. The CYMEDSEC (enhanced cybersecurity for networked medical devices through optimization of guidelines, standards, risk management, and security by design) project received funding from the European Union's Horizon Europe program (grant 101094218) and started on November 1, 2024. Ethical approval was obtained on December 18, 2025, and institutional authorization on January 29, 2026. Patient enrollment is scheduled to begin on April 1, 2026. At the time of paper submission, no patients were recruited. Data analysis will begin after completion of patient involvement, with results expected before the project end date in October 2027. This study will provide real-world evidence on the cybersecurity performance of IoMT-enabled RPM systems, capturing the interplay among technical safeguards, operational processes, and human factors. Findings are expected to support the development of security-by-design approaches, inform procurement and regulatory frameworks, and guide the safe integration of connected medical devices into routine care within the framework of the CYMEDSEC research project.
Source: PubMed (PMID: 42832774)View Original on PubMed