A Game Theoretic Framework for Analyzing Re-Identification Risk

被引:22
|
作者
Wan, Zhiyu [1 ]
Vorobeychik, Yevgeniy [1 ]
Xia, Weiyi [1 ]
Clayton, Ellen Wright [2 ]
Kantarcioglu, Murat [3 ]
Ganta, Ranjit [3 ]
Heatherly, Raymond [4 ]
Malin, Bradley A. [4 ]
机构
[1] Vanderbilt Univ, Dept Elect Engn & Comp Sci, Nashville, TN 37235 USA
[2] Vanderbilt Univ, Ctr Biomed Eth & Soc, Nashville, TN 37235 USA
[3] Univ Texas Dallas, Dept Comp Sci, Richardson, TX 75083 USA
[4] Vanderbilt Univ, Dept Biomed Informat, Nashville, TN 37235 USA
来源
PLOS ONE | 2015年 / 10卷 / 03期
基金
美国国家科学基金会;
关键词
PRIVACY; NEIGHBORHOOD; RECORDS; SIZE;
D O I
10.1371/journal.pone.0120592
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Given the potential wealth of insights in personal data the big databases can provide, many organizations aim to share data while protecting privacy by sharing de-identified data, but are concerned because various demonstrations show such data can be re-identified. Yet these investigations focus on how attacks can be perpetrated, not the likelihood they will be realized. This paper introduces a game theoretic framework that enables a publisher to balance re-identification risk with the value of sharing data, leveraging a natural assumption that a recipient only attempts re-identification if its potential gains outweigh the costs. We apply the framework to a real case study, where the value of the data to the publisher is the actual grant funding dollar amounts from a national sponsor and the re-identification gain of the recipient is the fine paid to a regulator for violation of federal privacy rules. There are three notable findings: 1) it is possible to achieve zero risk, in that the recipient never gains from re-identification, while sharing almost as much data as the optimal solution that allows for a small amount of risk; 2) the zero-risk solution enables sharing much more data than a commonly invoked de-identification policy of the U.S. Health Insurance Portability and Accountability Act (HIPAA); and 3) a sensitivity analysis demonstrates these findings are robust to order-of-magnitude changes in player losses and gains. In combination, these findings provide support that such a framework can enable pragmatic policy decisions about de-identified data sharing.
引用
收藏
页数:24
相关论文
共 50 条
  • [31] The re-identification risk of Canadians from longitudinal demographics
    El Emam, Khaled
    Buckeridge, David
    Tamblyn, Robyn
    Neisa, Angelica
    Jonker, Elizabeth
    Verma, Aman
    BMC MEDICAL INFORMATICS AND DECISION MAKING, 2011, 11
  • [32] The risk of node re-identification in labeled social graphs
    Horawalavithana, Sameera
    Flores, Juan Arroyo
    Skvoretz, John
    Iamnitchi, Adriana
    APPLIED NETWORK SCIENCE, 2019, 4 (01)
  • [33] Preserving Privacy of Patients based on Re-identification Risk
    Taneja, Himanshu
    Kapil
    Singh, Ashutosh Kumar
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON ECO-FRIENDLY COMPUTING AND COMMUNICATION SYSTEMS, 2015, 70 : 448 - 454
  • [34] DESCARTES ON RE-IDENTIFICATION
    HART, A
    JOURNAL OF THE HISTORY OF PHILOSOPHY, 1975, 13 (01) : 17 - 26
  • [35] Person Re-identification
    Bak, Slawomir
    Bremond, Francois
    ERCIM NEWS, 2013, (95): : 33 - 34
  • [36] Transitive Re-identification
    Brand, Yulia
    Avraham, Tamar
    Lindenbaum, Michael
    PROCEEDINGS OF THE BRITISH MACHINE VISION CONFERENCE 2013, 2013,
  • [37] A Game-Theoretic Framework for Analyzing the Impact of Social Responsibility and Supply Chain Profitability
    Mahdiraji, Hannan Amoozad
    Tavana, Madjid
    Rezayar, Ali
    CYBERNETICS AND SYSTEMS, 2023, 54 (01) : 104 - 137
  • [38] A Generalized Optimization Framework for Score Aggregation in Person Re-identification Systems
    Barman, Arko
    Shah, Shishir K.
    2018 15TH IEEE INTERNATIONAL CONFERENCE ON ADVANCED VIDEO AND SIGNAL BASED SURVEILLANCE (AVSS), 2018, : 43 - 48
  • [39] Framework for Pedestrian Detection, Tracking and Re-identification in Video Surveillance System
    Salehian, Sina
    Sebastian, Patrick
    Sayuti, Abu Bakar
    PROCEEDINGS OF THE 2019 IEEE INTERNATIONAL CONFERENCE ON SIGNAL AND IMAGE PROCESSING APPLICATIONS (IEEE ICSIPA 2019), 2019, : 192 - 197
  • [40] A Signal Processing Framework for Vehicle Re-identification and Travel Time Estimation
    Ndoye, Mandoye
    Totten, Virgil
    Krogmeier, James V.
    Bullock, Darcy M.
    2009 12TH INTERNATIONAL IEEE CONFERENCE ON INTELLIGENT TRANSPORTATION SYSTEMS (ITSC 2009), 2009, : 830 - +