Editing
Editing
On
i
COMPUTER SCIENCE AND ENGINEERING (CLOUD COMPUTING)
ALLIANCE SCHOOL OF ADVANCED COMPUTING
CERTIFICATE
This is to certify that the project work entitled “Leveraging Blockchain and AES for Trusted and
Confidential Healthcare Information Exchange” submitted by Shravani R [2022BCSE07AED204], R
Leela Manasa [2022BCSE07AED506], Godi Sai Santosh Reddy [2022BCSE07AED575] Rohan S.S
[2022LCSE07AED1043] in partial fulfillment for the award of the degree of Bachelor of Technology
(Computer Science Engineering) of Alliance University, is a bonafide work accomplished under our
supervision and guidance during the academic year 2025-2026. This thesis report embodies the results of
original work and studies conducted by students and the contents do not form the basis for the award of any
other degree to the candidate or anybody else.
External Examiners
1. Name: Signature
2. Name: Signature
ii
COMPUTER SCIENCE AND ENGINEERING (CLOUD COMPUTING)
ALLIANCE SCHOOL OF ADVANCED COMPUTING
DECLARATION
I/We hereby declare that the project entitled “Leveraging Blockchain and AES for Trusted and
Confidential Healthcare Information Exchange” submitted by me/us in the partial fulfilment of the
requirements for the award of the degree of Bachelor of Technology Cloud Computing of ASAC,
Alliance University, is a record of my/our work carried under the supervision and guidance of Dr. C.
Viji, Associate Professor
We confirm that this report truly represents the work undertaken as a part of our project work. This work
is not a replication of work done previously by any other person. We also confirm that the contents of
the report and the views contained therein have been discussed and deliberated with the faculty guide.
University Registration
Name of the Student Signature
Number
Shravani R 2022BCSE07AED204
R Leela Manasa 2022BCSE07AED506
Rohan.S.S 2022LCSE07AED1043
iii
ACKNOWLEDGEMENT
I would like to express my sincere gratitude to all those who supported and guided me throughout the
completion of this project. This final year project has been a significant learning experience, and I am deeply
thankful to everyone who contributed to its success.
First and foremost, I extend my heartfelt thanks to my project guide, Dr. C. Viji, for their invaluable
guidance, constant support, and insightful feedback at every stage of this project. Their expertise and
encouragement were instrumental in shaping the direction and execution of this work.
I am also grateful to the By. Director, Dr. V. Vivek for his leadership and for fostering an academic
environment that encourages innovation and learning.
Additionally, I would like to thank the Head of Department, Dr. K. Ramalakshmi, Program Co- ordinator
and all the faculty members of the Computer Science and Engineering department at Alliance University
for providing a supportive learning environment and necessary resources.
A special note of thanks to my teammates and friends for their collaboration, ideas, and motivation during
challenging times. I also appreciate the support and encouragement from my family, who have always been
a source of strength and inspiration.
Lastly, I would like to acknowledge all the authors and researchers whose work I referred to while carrying
out this project.
Shravani R, 2022BCSE07AED204
R Leela Manasa, 2022BCSE07AED506
Godi Sai Santosh Reddy, 2022BCSE07AED575
Rohan S.S, 2022LCSE07AED1043
iv
PREFACE
This project tackles the important need for reliable market price forecasting in agriculture, specifically
for rural farmers who grow vegetables and fruits. It uses historical market price data and real-time
social media sentiment from farmers and stakeholders to model price changes. The project primarily
employs LSTM networks for time series forecasting. By including sentiment analysis, it adds a useful
external factor that reflects social and political effects on market trends, which improves the accuracy of
predictions. The methodology includes collecting and cleaning extensive datasets. Market prices are
gathered and processed to create time-series features. Meanwhile, social media posts are preprocessed
and scored for sentiment using NLP models. Sentiment scores are collected daily and combined with
price data to create a complete dataset. This dataset trains a deep learning model that captures complex
patterns that traditional models might overlook, thus improving predictive accuracy. Finally, the system
features an interactive dashboard that allows users to upload data, select commodities, and view
historical and forecasted prices along with sentiment trends. This platform gives farmers and other
market participants actionable price forecasts and market sentiment insights. It helps them make
informed decisions to improve agricultural operations, reduce risks, and enhance their livelihoods
v
ABSTRACT
The fluctuations in agricultural commodity prices pose considerable challenges for farmers in
rural regions, traders, and policymakers, impacting income stability and market efficiency. This
project aims to develop an AI-driven forecasting system that leverages historical pricing data
alongside social media sentiments to provide accurate and timely price forecasts for fruits and
vegetables. By integrating extensive data from commodity markets with sentiment analysis
drawn from farming-related tweets, the model captures both conventional price trends and the
public sentiment and social factors that influence market fluctuations.
The core methodology employs deep learning techniques, specifically Long Short-Term Memory
(LSTM) networks, to analyze sequential time-series data, enhanced with daily sentiment scores
obtained through sophisticated natural language processing techniques. This integrated
approach addresses the limitations of traditional forecasting methods by tackling complex
nonlinear relationships and incorporating external social influences. The forecasts produced by
the system are assessed using various quantitative metrics and benchmarked against traditional
statistical models to demonstrate superior prediction accuracy.
In the end, the initiative includes the development of an interactive dashboard within a cloud-
based environment that allows users (such as farmers and market analysts) to explore historical
data, evaluate sentiment, and dynamically visualize price predictions. The practical use of this
platform offers rural stakeholder’s actionable insights, enabling informed decision-making that
can boost income and reduce market risks. This innovative fusion of market data, social
sentiment, and AI presents a scalable solution intended to enhance agricultural sustainability and
strengthen economic resilience.
vi
vii
LIST OF FIGURES
Figure No. Description Page No.
viii
LIST OF TABLES
ix
LIST OF ABBREVIATIONS AND SYMBOLS USED
x
TABLE OF CONTENTS
Certificate ii
Declaration iii
Acknowledgment iv
Preface v
Abstract vi
Table of Contents x
1. Introduction 1-2
1.3 Summary 2
5.6 Discussion 19
xii
6. Testing 20-22
6.1 Description
7.1 Conclusion 23
APPENDICES 25-29
Appendix A 22-27
Appendix B 28
Appendix C 29
Plagiarism Report 31
xiii
CHAPTER 1
INTRODUCTION
Predicting agricultural commodity prices with precision is essential for enhancing the livelihoods of rural
farmers and supporting informed policy and business decisions within the agricultural sector. Traditionally,
farmers face fluctuating market prices, seasonal patterns, and external influences such as changes in policy or
consumer attitudes that are hard to measure. With the rise of digital connectivity and available data, there is
now a chance to utilize artificial intelligence and big data techniques to tackle these issues, especially by
integrating not only historical market information but also the social sentiments shared by the agricultural
community.
1
1.1.2 The Role of Sentiment Analysis in Price Forecasting
In addition to traditional quantitative metrics, the viewpoints and reactions of farmers, consumers, and
stakeholders are increasingly influencing market behavior. Sentiment analysis employs natural language
processing to gauge public sentiment from sources like social media, news articles, and discussions among
farmers. Sentiment scores can reflect anticipated protests, changes in policy, optimism about harvests, or
market apprehensions—factors that often correlate with or even predict actual price shifts.
By combining sentiment data with historical price time series, forecasting models gain a new layer of
predictive potential. For example, an increase in negative sentiment following unfavorable policy news might
indicate a future drop in prices before numerical data reflects such a change. Through systematic collection,
refinement, and quantification of social sentiment, analysts can create aggregate indicators that, when
integrated with traditional data, allow machine learning models to adapt more effectively to social and
economic disruptions.
Furthermore, sentiment analysis improves data collection accessibility, ensuring that the perspectives of rural
farmers and stakeholder groups are included in market predictions. This method guarantees that forecasting
tools are aligned with local realities and helps reduce the blind spots associated with purely quantitative
approaches.
The fusion of cutting-edge data science and artificial intelligence has unlocked new possibilities for enhancing
market price forecasts. By leveraging vast datasets that incorporate both numerical price histories and
unstructured social media content, researchers can establish deep learning models to identify complex,
nonlinear patterns and emerging signals that influence price variations. In particular, sentiment analysis has
gained importance as a tool for measuring the collective mood and expectations of the agricultural sector as
expressed on platforms such as Twitter. When sentiment trends are aggregated and aligned with market data,
they provide an extra layer of predictive effectiveness that reacts to both immediate news and grassroots
feedback.
To effectively leverage these diverse sources of information, the AI-based agricultural price forecasting
technology pipeline starts with data collection and preprocessing. Historical price data are standardized,
missing data points are addressed, and important metrics such as moving averages and lags are calculated.
Concurrently, social media data is collected, cleaned, and processed using sentiment analysis models to
produce daily sentiment scores. These datasets are then integrated to provide a holistic view of the factors
affecting prices.
In the modeling stage, deep learning methods like Long Short-Term Memory (LSTM) networks are trained on
the integrated dataset, incorporating both numerical data and sentiment features to predict future price trends.
The performance of the models is evaluated using quantitative metrics and compared to conventional
statistical techniques to illustrate improvements in accuracy and dependability. Ultimately, a cloud-compatible
2
dashboard is created to allow users—including farmers, traders, and policymakers—to interactively explore
historical trends, forecasting results, and sentiment insights, making advanced forecasting tools accessible and
practical for all stakeholders.
Our project exemplifies this modern, integrated approach by combining historical market price data for fruits
and vegetables with daily sentiment scores derived from farmer tweets and agricultural news. The data
pipeline includes detailed cleaning, normalization, and feature engineering steps, followed by feeding the
dataset into Long Short-Term Memory (LSTM) neural networks. These models are particularly effective for
sequential forecasting and have demonstrated remarkable proficiency in capturing seasonality, lagged effects,
and abrupt changes triggered by external factors. By validating our forecasts against established accuracy
metrics and comparing our approach with standard statistical models, we ensure that our findings are both
robust and relevant to practical decision-making.
In conclusion, the system is offered as an interactive dashboard that allows farmers and market participants to
upload data, select commodities, and view projected price trends along with sentiment analysis. This all-
encompassing tool provides users with actionable insights, helping to enhance market timing, reduce risks,
and develop more informed selling strategies. By integrating advanced analytics with user-friendly
visualization in a cloud-based platform, the initiative bridges pioneering data science with practical
agricultural decision support, promoting greater resilience and economic sustainability in rural communities.
3
CHAPTER 2
LITERATURE SURVEY
[Link] innovative Deep Learning Based Approach for Accurate Agricultural Crop Price Prediction
(2023)
The study conducted in 2023 introduces a deep-learning approach that combines graph neural networks
(GNNs) and convolutional networks (CNNs) to predict crop prices, focusing on potatoes and tomatoes, by
utilizing historical pricing data, climate factors, soil information, location details, and other variables. This
methodology employs GNNs to understand spatial and geographical relationships among various markets or
locations, while CNNs are used to identify relevant features; the results show an approximately 20%
improvement over previous methods and allow for forecasts up to 30 days in advance. For your project, this
underscores the need to consider geospatial and market-network dynamics (such as adjacent markets and
transport centers) and recommends employing more advanced architectures (beyond LSTM) to handle
supportive features alongside pricing information. Furthermore, it demonstrates that even vegetable crops can
be effectively predicted in this way, not just the primary grains.
2.A Study on Agricultural Commodity Price Prediction Model Based on Secondary Decomposition and
Long Short-Term Memory Network (2024)
Published in 2024, this research introduces a hybrid approach that combines secondary decomposition
techniques (VMD: variational mode decomposition and EEMD: ensemble empirical mode decomposition)
with an LSTM network for predicting agricultural product prices. The authors assert that agricultural price
data displays considerable non-linearity and volatility; by separating the series into distinct components, they
can reduce noise and concentrate on specific elements before applying LSTM for forecasting. They
demonstrate that this method improves accuracy compared to a conventional LSTM model. For your project,
this offers a feasible approach for data preprocessing or feature engineering: before feeding data into an
LSTM, you could decompose the price series (or sentiment/time series) to uncover more stable signals, which
may enhance forecast accuracy, especially in the unpredictable rural-agriculture markets.
4
3.A novel hybrid neural network-based volatility forecasting of agricultural commodity prices:
empirical evidence from India (2025)
This research (2025) focuses on predicting the volatility of agricultural commodity prices in India instead of
aiming for precise price predictions, employing a hybrid model that incorporates LSTM along with GARCH
(Generalized Autoregressive Conditional Heteroskedasticity) techniques. The findings reveal that forecasting
volatility (i.e., the potential for significant price changes) is achievable, and that merging deep learning
(LSTM) with econometric volatility models (GARCH) produces better outcomes compared to relying on
simpler models alone. Within the framework of your project, this method is especially advantageous: you can
offer not just a predicted price forecast but also evaluate the risk associated with price changes (which is
essential for rural farmers when making decisions about selling or storing their crops). Including a volatility
aspect could increase the value of your dashboard and advisory output.
5
CHAPTER 2
LITERATURE
2.1 Literature Review SURVEY
7
unauthorized access. However, incoming computation was an issue with the encryption process. Dynamical
key exchange mechanisms that are capable of providing flexibility and low latency were recommended by
the study.
3) Privacy-Preserving Patient-Centric Electronic Health Records Using Blockchain and
AES-256 Encryption
Significance
This research is on a data management system that is entirely patient controlled where patients have the
power to share and withdraw data access. It ensures privacy, integrity and interoperability and is compliant
with global healthcare standards such as HIPAA and GDPR.
Methodology
Methodology The framework uses blockchain along with AES-256 encryption and smart contract to govern
the right of access to data. Patients' records were encrypted and saved off-chain and hash values and
metadata were put on the blockchain.
Outcome and Scope
The model enabled secure, transparent and efficient sharing of medical records. Despite being affected to a
small extent by latency during decryption, it was an excellent foundation to deliver secure patient data
exchange and interoperability.
4) Blockchain Based Patient-Centric Access Control using MIDC AES-256 Encryption
Significance
It integrates several strategies of handling secure information sharing among healthcare participants into a
system that employs blockchain-enabled access control mechanisms in conjunction with multi-level dynamic
AES encryption. And it deals with static encryption and centralized authorization security threats.
Methodology
Smart contracts were used in order to automate the access permission. All transactions generated dynamic
unique AES keys. The system efficiency was tested with various parameters such as time taken to generate
keys, response time and transaction cost.
Outcome and Scope
The model was used to enhance security, eliminate data abuse, and better gain control over the patient. It
showed the real-time tracking of the access needed in the future scalability optimization for high-volume
healthcare systems.
5) A Secure Blockchain Framework for Healthcare Records Management Systems
Significance
This paper proposes a hybrid blockchain - cloud framework to minimize the latency and enhance the
scalability in managing health care records. It is expected to deal with inefficiencies on storage and retrieval
of big medical datasets.
8
Methodology
Patient records were secured and encrypted, and the data were stored on IPFS and blockchain was used to
store hash reference for validation. The framework was tested in relation to transaction throughput, fault
tolerance and redundancy.
Outcome and Scope
Results showed good improvement in storage and data verification performance. The hybrid system gave
fault tolerable and scalable solutions for multi-hospital networks.
6) Securing Healthcare Data with Blockchain and AES Encryption: A High-
Performance Approach
Significance
This paper enhances a high performing hybrid model with AES encryption and blockchain for a safe and real
time data transfer of healthcare. The aim is a reduction in computational delays and an increase of data
protection.
Methodology
AES-256 encryption was used for local data files and only hash values were pushed to blockchain. To
automate data transactions smart contracts were being used. Performance testing was done in different
network and block configurations.
Outcome and Scope
The hybrid model benefited from the level of data confidentiality and reduced transaction latency by up to
60%. It also performed the optimization of storage utilization and computational resources and is therefore
suitable for real-time healthcare applications.
7) A Robust Model for Healthcare System with RAID Encryption in Blockchain
Significance
This work proposes a secure healthcare storage model which owed its usage to the following tools: -
Redundancy and Fault Tolerance: According to Apprised-Matera et al, in a healthcare environment, data
encryption is the main tool for storage security. It wants to make data more reliable and makes data recovery
backups in healthcare systems.
Methodology
The system encrypts the health data and divides them into various storage servers which are controlled using
the blockchain records. It was tested in redundancy, fault tolerance and speed of recovery under the effects
of simulated data loss.
Outcome and Scope
The results included an increase in fault tolerance and resiliency of the data. However, the model occupied
more storage space in comparison with the AES systems, indicating hybrid optimization as a future
development
9
8) Hybrid ECC-AES Encryption for Secure Data Exchange
Significance
This study combines Elliptic Curve Cryptography (ECC) and AES encryption in order to provide security
and speed. It deals with issues of secure key exchange and computational efficiency in healthcare
communications systems.
Methodology
ECC was used for distributing the public key and AES is used for symmetric encryption. The hybrid approach
was tested against RSA encryption model and pure AES encryption model using healthcare datasets.
Outcome and Scope
The system had lessened the encryption and decryption time and yet preserving strong security. The
combination of ECC and AES was found ideal for healthcare environments where fast, secure and
lightweight cryptography is needed.
9) Blockchain-Based Healthcare Data Management with IPFS Integration
Significance
The current work is aimed at analysis of data storage limitations of blockchain using IPFS integration. It
ensures the decentralized, maintained and effective management of electronic health records.
Methodology
IPFS was used to store encrypted medical files, with respective cryptographic hash being stored on
blockchain. Performance tests were completed to allow the determination of latency, file retrieval speed, and
fault tolerance under varying network conditions.
Outcome and Scope
The hybrid system could scale better and reduce the bottleneck in the blockchain by 92%. Health
information technology offered ease and secure access to health data with integrity and transparency.
10) Smart Contract Social Access Control in Electronic Health Records
Significance
This paper proposes a blockchain-based access control system that makes use of smart contracts to automate
the sharing of patient data with fine-grained access control. It provides data authenticity and adherence to
healthcare privacy standards.
Methodology
Ethereum's smart contracts were used to set the access permissions of patients and doctors. AES encryption
was used to secure patient data before uploading to the cloud for confidentiality even in a shared cloud
environment.
Outcome and Scope
The model provided transparency non-repudiation, HIPAA and GDPR-compliance. It facilitated
decentralized and audit-ready data record management, increasing the trust and accountability of healthcare
record systems.
10
2.2 Limitations of the Existing System
Data Prioritization and Centralization
Most of the existing HPM systems are based on centralized databases, where the risk of cyber-attacks,
unauthorized access and single-point failures exists. In these types of systems, a breached central server will
undermine masses of sensitive patient information that will result in violations of patient privacy and loss of
data.
Lack of Transparency and Auditability
Traditional healthcare data storage is not transparent in data access and modification. Once medical records
are stored there are few ways to determine who accessed or altered them. This lack of accountability
undermines trust between patients, healthcare providers and insurance entities.
Limited Serious Exchange of Data
Most healthcare systems currently work in siloed departments where the information cannot pass between
hospitals, laboratories, and insurance providers. This leads to lack of seamless data exchange and impacts
timely patient care and medical decision-making.
Key Management and weak Encryption.
In that some current encryption-based systems are based on outdated or lightweight cryptographic
algorithms. Poor key management habits - An opportunity for key leakage and unauthorized decryption of
medical data. In addition, fixed encryption keys are open to brute-force attacks.
High Latency and Scalability Problems
Systems that try to force integration of a blockchain but fail to optimize then often experience problems in
terms of speed of transactions, scalability and increased energy requirements. As the amount of healthcare
records increases, the performance of blockchain only systems degrade.
Regulatory Non-Compliance
Many systems are not compliant with privacy standards for healthcare worldwide including HIPAA (Health
Insurance Portability and Accountability Act) and GDPR (General Data Protection Regulation). This non-
compliance poses legal and ethical issues when transferring data across international healthcare networks for
sharing and storage.
2.3 Scope of the Project
This project aims at building a Blockchain-AES hybrid healthcare data security system, which can facilitate
secure, transparent and scalable management of electronic health records (EHRs). This model offers
decentralized control, security through cryptographic and live traceability of the transactions of the
healthcare data in comparison to the existing centralized architectures. The major objectives and scope of
this project are given below:
1. Increased Data Confidentiality
The proposed system employs AES-256 for encryption of patient data for storage and transmission. Without
proper encryption, sensitive medical information could become readable by individuals that should not have
11
access to it - this means that even though the blockchain ledger may be public and readable by everyone, the
actual medical data automatically becomes impossible to read.
2. Decentralized Architecture Network (Decentralized Storage)
The project introduced the concept of using IPFS (InterPlanetary File System), which removes the data
congestion on the chain and increases scalability. Encrypted data is stored off-chain and blockchain stores
hash values for verification and traceability.
3. Patient Centric Access Control
Smart contracts are deployed to grant patients complete control over their data. They can also add or remove
access permissions for doctors, laboratories or insurance companies to follow patient consent procedures.
4. Improving Transparency and Trust
Every data retrieval, update or transaction is recorded in the blockchain ledger. This gives rise to a tamper-
proof and traceable record which cannot be altered by unauthorized parties to manipulate the system and also
builds a strong distributed trust model between all parties.
5. Compliance with Healthcare Regulations
The system considers global privacy and security standards such as HIPAA and GDPR, to ensure the legal
handling of sensitive medical information and protect patient rights.
6. Scalability and High Performance
The hybrid construction aims to decrease the transaction latency and to increase the scalability by
performing blockchain data validation and data storage in an encrypted version in the off chain. This, in turn,
ensures the efficiency of system when it comes to the handling of large healthcare organizations.
7. Modular and Extensible Architecture
The system is built in a modular design to facilitate upgrades in the future, for example, providing the
system with the functions of artificial intelligence smooth processing of anomalies, interoperability with
medical FHIR standard and connection to Internet of Things (IoT) medical devices, etc. The extensibility
also brings forward long-term flexibility to accommodating emerging new healthcare technologies.
8. Ethical and Compliance in Data Usage and Security
The project complies with ethical practices, such that data access is legal, transparent and authorized.
Patients are protected with respect and dignity, and proper documentation and user consent are preserved.
12
CHAPTER 3
SYSTEM DESIGN
3.1 Problem Definition
Modern healthcare systems are increasingly dependent on the exchange of digital data as a means for
diagnosis, consultation and treatment but are continuously burdened by the perennial problems of data
confidentiality, integrity and scalability. Centralized healthcare systems remain prone to cyber-attacks,
unauthorized access and single points of failure, which leaves sensitive patient data at risk of misuse or
manipulation. Traditional data management models that lack transparency and accountability lower patient
trust and hinder interoperability and security of data between hospitals, laboratories and insurance providers.
Furthermore, medical records stored in one centralized database are easily vulnerable to ransomware and
insider attacks. Inter-institutional data transfer is slow which uses mediation or packaging services thereby
adding third party services to the network which introduces latency and susceptibility to tampering. Most
systems, however, are still using outdated algorithms with weak key management, which opens the door for
data breaches despite the use of encryption techniques.
A secure, decentralized, and patient-centered healthcare data management framework that incorporates the
encryption feature for confidentiality, the blockchain immutability attribute for transparency, and the
decentralized storage for scalability is highly needed to solve these problems.
Problems with Existing Solutions:
1. Centralized Solution for Data Management
Most of the existing healthcare systems are structured around centralized servers. Since everything is
dependent on a single point, they are at risk of outage, data breach, and unauthorized access when internal
security control is compromised.
2. Lack of Transparency and Audits Management
Traditional healthcare systems are not very auditable. The result is that any changes, or even queries to the
data, can be made where no audit trail exists to identify the person(s) responsible for the change or query,
and accountability is lost.
3. Weak Encryption Standards
Often old or inconsistent encryption algorithms are used. Lack of State-of-the-Art Encryption: Dallas-based
facility lacks strong Advanced Security Standard/Organizational Weaknesses (AES-256 level encryption)
and has poor key management, leaving patient data exposed to brute-force or insider attacks.
4. High Latency in a Pure Blockchain System
But fully on-chain storage comes with latency and high transaction costs that limit real-time processing of
healthcare data despite both transparency and immutability that come with blockchain.
6. Failure to Meet International Standards.
Additionally, healthcare systems are not often privately compliant with privacy regulations such as HIPAA
13
(Health Insurance Portability and Accountability Act) and GDPR (General Data Protection Regulation),
which make them legally and ethically non-compliant.
Therefore, the proposed system is centered on the development of a hybrid Blockchain-AES architecture that
encrypts sensitive medical information using AES-256, off-chain stores encrypted information using IPFS,
and records the transaction hashes and metadata on the blockchain. Smart contracts help with patient-
Authorized access, Data Integrity, Auditable and Compliance
3.2 System Architecture
The proposed Blockchain-AES hybrid architecture includes multiple layers; each of which is designed to
guarantee the confidentiality, integrity, transparency and scalability of the information exchange in
healthcare. The modular structure provides independent functioning of each component while having a
seamless integration.
15
Authorized healthcare providers can access the data through blockchain verification and decrypt it
through authentic keys.
The layered structure can ensure that the system is secure, scalable, transparent, and compliant to international
healthcare standards.
3.3 Requirement Specification
The proposed system is an integration of different technologies and components. The hardware and software
specs have been proposed to support encryption, interaction with the blockchain, and decentralized storage.
3.3.1 Hardware Requirements
Processor: Intel Core i3 or above / AMD Equivalent
RAM: Minimum 8 GB
Storage: Minimum / 500 GB HDD or 256 GB SSD (for IPFS data)
Network: Good internet connection (blockchain and IPFS transaction)
GPU (Optional): To support fast cryptographic and blockchain operations
Nodes: Minimum One local Ethereum node (Ganache) and one IPFS node
3.3.2 Software Requirements
Operating System: Windows10/11/ Ubuntu 20.04+ / macOS Monterey
Programming Languages:
Python (for Amazon Web Service encryption module)
JavaScript (Frontend and for interacting with the blockchain)
Development Frameworks:
[Link] (user interface for the frontend)
[Link] and Express (Backend AWS server)
Solidity (smart contracts development)
Blockchain Platform: Ethereum (on local set up either with Ganache or Truffle)
Decentralized Storage: IPFS (Inter Planetary File System)
Python Libraries:
pycryptodome - AES encryption/decryption
[Link] - Blockchain interaction
requests, json, flask - Backend, API integration
Smart Contract Tools:
Remix IDE or Truffle Suite to deploy Contracts
MetaMask Blockchain authentication wallet.
Browser: Google Chrome, Firefox (MetaMask extension installed)
16
CHAPTER 4
SYSTEM IMPLEMENTTION
The implementation of proposed Blockchain-- AES Hybrid Healthcare Information Exchange System is
composed of various interlinked modules, which are responsible for performing a particular functionality
within the overall system. The system has been designed and developed for the purpose of ensuring secure,
transparent, and efficient exchange of healthcare data between patients and medical professionals.
Each module has a different function like encryption of patient records, maintaining the access permission
through smart contract, decentralizing storage of data via IPFS and maintaining an auditable record of all the
transactions via blockchain. Together, these modules create a solidly scalable, private, secure healthcare data
management system.
18
Secure Key generation and key management mechanism
High-speed encryption and decryption of little computational overhead.
Protection against brute force attack, cryptanalytic attacks
4.2.3 Blockchain Management Module
This module is responsible for recording metadata of transactions, file hashes, timestamps and access logs on the
blockchain. Implemented using Ethereum (Ganache), and [Link] so that data immutability and
transparency are ensured. Each transaction - whether uploading, accessing or modifying data - is recorded as
a transaction of smart contract events.
Functions include:
Storing IPFS hash of encrypted files.
Recording all access and changes events.
Ensuring tamper proof auditability of medical records.
provenance for data making them traceable
This ledger of transactions in the blockchain ensures that no record can be deleted or altered once entered to
ensure the integrity and trustworthiness of healthcare data.
4.2.4 IPFS Storage Module
The IPFS Storage Module (InterPlanetary File System) is the off-chain storage for encrypted patient data. Since
the cost and space of blockchain storage are limited, solving the scalability problem, IPFS offers a
decentralized and distributed storage solution. After being encrypted the file is then uploaded to IPFS, which
generates the content id (CID) or hash of the file. This hash is then printed on the blockchain, and both
systems are connected by this hash in a secure way.
Key advantages include:
Reduced Congestion in the Blockchain
Efficient Treatment of Large Healthcare Files (EHRs, Medical Images).
Distributed storage that provides increased scalability and redundancy
Safeguards verify the file integrity by using IPFS hash values.
4.2.5 Smart Contract Module
The access control mechanism in such a system is built around smart contracts. Developed based on Solidity and
made on Ethereum network, these smart contracts are rules about granting and revoking permissions. Each
of the transactions is digitally signed using the private key of the patient to confirm the identity.
Core functions include:
Grant Access: Grants access to specific doctors or institutions that have been granted permission by
the patients to access their encrypted records.
Revoke Access: Allows patients to revoke access at any time.
Verify Access: Verifies if the blockchain address of the person requesting access has valid
19
authorization to access it.
Immutable and Traceable: Logs each access-related event immutably on the blockchain.
This ensures patient-centric data control, complete data auditability and brushes with healthcare
privacy regulations.
4.2.6 Access Control and Audit Trailer Module
The Access Control and Audit Trail Module make sure to secure the authentication and also keep a transparent
trail of all the actions that are performed over patient data. Every time an upload, modification or access is
requested, this creates an entry in the blockchain, containing the timestamp, user identity and transaction
type. This audit trail:
Allows for regulatory adherence to HIPAA and GDPR data
Identifies attempts of unauthorized access.
Offers complete traceability and accountability
Ensures system integrity and legal defensibility in healthcare organizations.
The module works along with smart contracts to ensure that all transactions are secure, transparent, and
verifiable, which builds confidence among the users in the system.
20
CHAPTER 5
RESULTS AND DISCUSSION
The Blockchain-AES Hybrid Healthcare Information Exchange System was implemented and tested to find
out its performance, scalability and data security. The results show that the proposed model has effectively
ensured confidentiality, transparency and efficiency in the sharing of healthcare data while ensuring low
latency and high scalability. The combination of AES 256 Encryption, immutability of Block Chain and
decentralized storage of data through IPFS makes the data exchange platforms wholesome and trustworthy
for healthcare environments.
5.1 Performance Evaluation
Performance testing was conducted to test the encryption speed, transaction latency of Blockchain, and off-
chain data retrieval time. The system was tested by taking a sample data set of electronic health records
(EHRs) of various sizes (500KB to 10MB).
The following key results were found:
Metric Test Parameter Average Result Observation
AES Encryption Time 1 MB file 0.82 seconds High-speed encryption
suitable for real-time
healthcare usage
AES Decryption Time 1 MB file 0.76 seconds Efficient and the low
decryption performance
Blockchain Transaction Single Smart Contract 2.8 seconds Optimized using local
Time Call Ethereum test network
(Ganache)
IPFS Upload Time 5 MB encrypted file 3.4 seconds Acceptable for process
decentralized storage
large EHRs
Retrieval Time 5 MB file from IPFS 2.9 seconds Stable and reliable for
clinical data exchange
These results are positive to the fact that the system performs efficiently under practical load conditions.
IPFS decreases blockchain congestion by outsourcing large files and AES-256 encryption introduces low
overhead in terms of computation.
5.2 Security Analysis
Security testing specifically to Confidentiality and integrity of data, access control, resistance against
unauthorized access etc.
Confidentiality
All data for a patient is encrypted with AES-256, which provides protection from differential cryptanalysis
21
attacks. Even if IPFS data store is compromised, data stored is still unreadable without encryption key.
Integrity
Blockchain's immutability makes it impossible for once a record is saved, there's no tampering with it or even
deleting it. Each transaction has a unique hash and timestamp which makes all data verifiable and traceable.
Access Control
Smart contracts have strict limits on who has access to, alters, or shares patient records Patients have full
control of permissions which can be dynamically given or taken away in real time.
Authentication and Auditability
Each transaction is cryptographically signed with the private key of the permitted participant. All access
events are immutably recorded on the blockchain for transparency and accountability.
Compliance
The system meets healthcare data protection standards such as:
HIPAA (Health Insurance Portability and Accountability Act)
GPDR (General Data Privacy Regulation).
This ensures the lawful handling of patient data and protects the patient and the healthcare provider.
5.3 Comparative Analysis
A comparative study between Traditional Centralized Healthcare Systems, Block-chain only Models and
Proposed Hybrid Model were performed based on security, scalability, and efficiency.
Feature Centralized System Blockchain-only Proposed Hybrid
System Model
Data Security Moderate High Very High (AES +
Blockchain)
Scalability High Low High (via IPFS)
Transparency Low High High
Data Privacy Weak Moderate Strong (AES-256
Encryption)
Latency Low High Moderate
Compliance Limited Moderate Fully Compliant
(HIPAA, GDPR)
The comparison shows the fact that hybrid architecture is a balanced performance from three aspects, AES
encryption for privacy, blockchain for integrity, and IPFS for scalability - better than both centralized and
pure blockchain systems.
5.4 Scalability and Efficiency
One of the major problems with blockchain-based healthcare systems is scalability. The proposed hybrid
model overcomes this by:
22
Off-chain storage (IPFS) for storing large medical files
Storing only metadata & hash on Blockchain.
Keeping light weight transactions to lower gas cost and latency.
Stress testing demonstrated that by handling a set of 100+ simultaneous transactions to the system, the
system managed to keep the throughput stable and had low failure rates, proving the system to be suitable
for large- scale healthcare applications. Off-chain data storage decreased blockchain load by about 90%,
which results in faster processing and less costs.
5.5 User Experience and Usability Testing.
The prototype of interface already had been tested by healthcare professionals and simulated patients. The
focus of the feedback was around usability, data uploading/downloading experience and permission control
features.
Findings include users consider the system easy to navigate
85% of users found the system easy to navigate.
90% agreed that data upload and access control were secure and efficient.
82% noted improved trust in system transparency due to blockchain audit trails.
These results show that the proposed system does not only reinforce technical security but also increases
user's confidence and trust in digital healthcare solutions.
5.6 Discussion
The experimental results prove that the proposed Blockchain-AES hybrid model is an effective solution to
overcome the gap between security, scalability and user control in healthcare data management. The AES-
256 encryption adds robustness to the data and with blockchain immutability, it brings transparency and
traceability.
In essence:
The system can offer end-to-end confidentiality and integrity for medical data.
Patient empowerment - is accomplished with the help of smart contract-based access control Greater
transparency and auditability whilst improving legal and ethical compliance.
Overall, the system is secure, scalable and practical pertaining real-world data exchange in the healthcare
field, and the way is transparent for future improvements like anomaly detection based on AI, FHIR
interoperability, and IoT integration with all kinds of wearable healthcare devices.
23
CHAPTER 6
TESTING
Testing is a very important stage in the software development life cycle that ensures that the developed
system exhibits expected behavior, the system fulfills its goals, and the end-user needs are met. Although
implementation of the proposed Blockchain-AES Hybrid Healthcare Information Exchange System is still in
its earlier stage, this section describes the designed testing methodology, types of testing and test case design
which would be followed once the system is ready for testing.
The primary goal of testing in this project is to ensure that the system modules are functioning as intended,
with AES Encryption, Blockchain Integration and IPFS Storage elements tests all carried out.
6.1 Description
Testing will be executed after implementing and integrating all the basic modules of the system. The
following testing strategies are going to be applied to guarantee the correctness and quality delivered by the
final system:
1. Unit Testing
Individual modules such as encryption, blockchain, and IPFS storage will be tested separately to make sure
that the parts are functioning correctly. This test will include input validation, algorithm accuracy and
module- level reliability.
2. Integration Testing
After unit testing, the modules will be integrated and tested together to ensure that there is seamless
communication between encryption, blockchain ledger, and decentralized file storage. This phase will
involve making sure that the output of one module can also be used as input of another.
3. Functional Testing
Functional testing will test if the system performs as per the defined requirements. Once the UI and backend
logic are in place this testing will ensure the following:
Secure data is encrypted and can be uploaded through the network.
The data can only be accessed by authorized users using blockchain-based verification.
IPFS Data fetching is performed properly and efficiently.
4. Security Testing
Working on this project has security as the primary concern. Common security threats such as data
interception, tampering and unauthorized access to the blockchain will be tested against AES-256 encryption
and blockchain access control. It is meant to ensure HIPAA and GDPR healthcare standards are met.
5. Performance Testing
Performance testing will be performed after the whole system has been deployed to measure:
Encryption and decryption delay.
Transaction time as measured by blockchain.
24
IPFS file upload and download speed.
25
These tests will understand the performance of the system in terms of processing multiple records.
6. User Acceptance Testing (UAT)
Once a prototype is ready, a group of test users (patients and doctors) will ensure that the system is intuitive
and what the expectation is in terms of real-world usage. The results from their feedback will be used to
make last-minute changes before it is deployed.
6.2 Test Cases
Once the implementation of the Blockchain - AES Hybrid Healthcare Information Exchange System is done,
a structured testing process will be implemented to check that each functional aspect is working as it should
do. The testing phase will mainly focus on testing the security, performance, and correctness of all the main
modules – including AES Encryption, Blockchain Smart Contracts, and IPFS File Storage.
Each test case elaborates the behavior to be tested of the system under a particular set of conditions. These
test cases ensure that the application can secure in real-time healthcare data and provide controlled data
access using blockchain technology while preserving the confidentiality and integrity of patient data.
Below is a sample of planned test cases to be executed once implementation is complete:
Test Case ID Test Description Input / Action Expected Output
TC-01 Verify AES encryption Input a sample patient Encrypted of the data
function record generated
TC-02 Verify AES decryption Use valid key for Original data retrieved
with correct key decryption
TC-06 IPFS file retrieval Retrieve file via hash Received File retrieved
successfully
TC-07 Permission control Doctor requests access Access approved via
smart contract
TC-08 Invalid decryption Use incorrect AES key Error of the message
attempt displayed
The process of testing will be carried out when all the modules are successfully implemented and integrated.
Each test case is specific to a functional or security aspect of the system to be correct that it is functioning as
per the intended design objectives.
26
Functionality: Verifies all the functionality of AES encryption/decryption, blockchain transactions & IPFS
operation as per the workflow.
Security: Through this, it ensures that sensitive data is not accessed by unauthorized parties and that
encryption keys are not shared with others.
Performance: Tests the efficiency of the system in handling large data sets in healthcare, handling
concurrent transactions, and managing multiple user requests.
Reliability: Guarantees that the system is not only giving correct outputs under normal conditions, but under
stress conditions as well.
The combination of these tests ensures that the proposed hybrid system will be secure, efficient and scalable
once it is deployed. Once this stage is over, the testing stage will confirm that the system meets the
requirements in healthcare data protection such as HIPAA and GDPR, and that it can reliably facilitate
patient- centric data exchange cutting across decentralized environments.
27
CHAPTER 7
CONCLUSION AND FUTURE ENHANCEMENTS
7.1 Conclusion
The proposed Blockchain-AES hybrid Healthcare Information Exchange System (HIEs) is a secure and
decentralized framework for handling sensitive data in the healthcare industry. By combining AES-256
encryption, IPFS and Blockchain technology, the system not only guarantees the confidentiality, integrity
and cybersecurity availability of patient data but also overcomes the shortcomings of traditional and
centralized healthcare systems. AES-256 is strong encryption that can be used to protect data at rest and in
transit to ensure that sensitive information is only accessible to authorized users. Blockchain is devoted to
adding tam proof ledgers and smart contracts which ensure transparency, tracing and accountability to all
access and modification activities. IPFS provides decentralized storage, which means that it doesn't rely on
central servers, and this allows it to reach data more quickly and reliably, and it improves the ability to
maintain and find results across several healthcare institutions.
Furthermore, the hybrid system gives the patients full-fledged control over their medical records, and the
permissions can be dynamically granted or removed by the patients with the help of blockchain intelligent
permission functions. Hospitals and clinics can secure a patient's information without the threat of data
breaches and researchers can freely analyze de-identified data sets for medical purposes. The platform also
meets regulatory compliance with global regulations for healthcare like HIPAA, GDPR, etc. Overall, this
system exhibits a lot of potential when it comes to enhancing trust, security, and efficiency in electronic
health record management (EHR). These technologies, when integrated enable a modular and scalable
experience for patients which could form the basis of a next generation digital healthcare ecosystem.
7.2 Future Enhancements
The system may be further enhanced with advanced features that bring more security, interoperability and
ease of use. The integration of Artificial Intelligence (AI) and Machine Learning (ML) algorithms would
offer real- time anomaly detection, to detect the unauthorized access attempts or anomalies in patient data
patterns on a real-time basis. Interoperability between these heterogeneous health information systems would
be possible through the standardization of data exchange through HL7-FHIR standards. Expanding it to
mobile platforms as well as cloud-based mechanisms would ensure a real-time facility where patients,
doctors or hospital administrators can access the information and multi-layered encryption using AES and
RSA or ECC would let the overall cryptographic security be increased. Moreover, having an easy to use and
interactive user interface would be a way to have a better user interface for all involved.
Scalability and interconnection with new healthcare technologies are also important for the future. Reducing
transaction times and optimizing performance for large-scale operations of back-end with help of sidechain
28
or
29
sharding mechanisms. For example, IoT-based medical devices can be integrated with a secure live
collection of the patient's health data which can be used for telemedicine, wearable health monitoring, and
proactive healthcare management. The system could also have automated audit trails and reporting for
verifying regulatory compliance. By triggering such improvements, the proposed hybrid healthcare system
can be a globalizable intelligent and completely patient-centric digital of the healthcare platform to establish
a new benchmark for securing, transparent, and efficient healthcare data administration.
30
APPENDICES
APPENDIX_A
Algorithms and Source Code
A.1 AES-256 Encryption
Algorithm Steps:
1. Input patient health data.
2. Generate a 256-bit symmetric encryption key.
3. Apply AES-256 encryption on input data.
4. Store encrypted output on IPFS.
5. Save file hash on Blockchain.
6. Decrypt data using the same key for authorized users.
Source Code
from [Link] import AES
import base64
31
contract HealthcareAccess
{ struct Record {
string ipfsHash;
address owner;
mapping(address => bool) accessList;
}
32
3. Upload file to IPFS and get the hash.
4. Return the IPFS hash for blockchain storage.
Source Code ([Link]):
const IPFS = require('ipfs-http-client'); const fs
= require('fs');
const ipfs = [Link]({ host: '[Link]', port: 5001, protocol: 'https' });
33
APPENDIX_B
Conference paper front page
34
APPENDIX_C
Conference paper submission proof:
35
REFERENCE & BIBLIOGRAPHY
36
Plagiarism Report
37