Skip to content

Beyond the Headset: A Systematization of Knowledge on Extended Reality Privacy and Security in Healthcare

Nov 2025 · Virtual Reality Software and Technology · 4 citations · ⚡ 2 influential · 126 references
Computer Science

TL;DR

This SoK surveys 65 peer‐reviewed works published between 2017 and 2024 across leading XR, security, and privacy venues, synthesizing a unified threat taxonomy that spans device, network, user and cloud layers and introduces a quantitative evaluation framework XR-PRISM (Privacy and Risk Impact Scoring Metric).

Abstract

Extended reality (XR) systems offer transformative potential for healthcare in domains ranging from surgical planning to remote rehabilitation and mental‐health therapy. The rich streams of sensor, biometric, and environmental data that enable these applications, however, also create novel and poorly understood privacy and security vulnerabilities: adversaries can exploit unencrypted signaling, sensor side‐channels, and application‐layer flaws to infer sensitive patient information or disrupt clinical workflows. Nevertheless, there aren’t many thorough Systematization of Knowledge (SoK) that examine XR for healthcare at the moment. In this SoK, we survey 65 peer‐reviewed works published between 2017 and 2024 across leading XR, security, and privacy venues, synthesizing a unified threat taxonomy that spans device, network, user and cloud layers. We introduce a quantitative evaluation framework XR-PRISM (Privacy and Risk Impact Scoring Metric), drawing on adapted risk scores, detection performance, and usability assessments to rigorously assess the level of security and privacy risks. Our analysis reveals critical gaps: over 70% of countermeasures lack standardized risk evaluations, fewer than 15% include high prerequisites to launch an attack, and reproducibility is hampered by scarce artifact releases. Finally, we chart a research roadmap advocating for open benchmark suites with shared datasets, artifact disclosure policies, cloud‐layer protections, and robust detection and recovery mechanisms. By quantifying “what works—and by how much,” this SoK provides a data‐driven foundation for developing secure, privacy‐preserving, and usable XR healthcare technologies.

Read PDF

Similar papers

#computer vision Review Sep 2017

Agile Software Development Methods: Review and Analysis

This publication proposes a definition and a classification of agile software development approaches and analyses ten software development methods that can be characterized as being "agile" against the defined criterion.

P. Abrahamsson, O. Salo, Jussi Ronkainen et al. · 727 citations · ⚡54
#computer vision Jun 2008

The impact of agile practices on communication in software development

The study shows that agile practices improve both informal and formal communication, but indicates that, in larger development situations involving multiple external stakeholders, a mismatch of adequate communication mechanisms can sometimes even hinder the communication.

M. Pikkarainen, Jukka Haikara, O. Salo et al. · 401 citations · ⚡48
#machine learning Review Open access Oct 2014

Software development in startup companies: A systematic mapping study

The results indicate that software engineering work practices are chosen opportunistically, adapted and configured to provide value under the constrains imposed by the startup context.

Nicolò Paternoster, Carmine Giardino, M. Unterkalmsteiner et al. · 394 citations · ⚡54

Related blog posts

MIT News · Artificial Intelligence Oct 7, 2026

Discovering the value of humanistic inquiry

Students in MIT’s Concourse program delve deeply into the human condition, debate challenging questions, and learn to develop judgment about issues that can’t be quantified.

Microsoft Research Blog Oct 6, 2026

What AI gets wrong and what failure teaches us

Jennifer Neville did not want to go into computer science—but that’s exactly where she landed. Neville discusses the starts and stops that led to her professional sweet spot and her work identifying “surprising failures” making it hard for AI to handle complexity.  The post What AI gets wrong and what failure teaches us appeared first on Microsoft Research.

MIT News · Artificial Intelligence Sep 30, 2026

This game-playing AI is the new champ at Stratego

Able to defeat top-ranked human players and more efficient than other models, the new system could help decision-makers in military maneuvers or business negotiations.

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.