1/12/2012 P E RSONAL I NF ION : T ORMAT HE BE NE F IT S AND R ISKS OF D E - IDE NT IF ICAT ION Jule s Po lo ne tsky, Co -Cha ir & Dire c to r Who We Are T he F uture o f Priva c y F o rum (F PF ) is a Wa shing to n, DC b a se d think ta nk tha t se e ks to a dva nc e re spo nsib le da ta pra c tic e s. T he fo rum is le d b y I nte rne t priva c y e xpe rts Jule s Po lo ne tsky a nd Christo phe r Wo lf a nd inc lude s a n a dviso ry b o a rd c o mprise d o f le a ding fig ure s fro m industry, a c a de mia , la w a nd a dvo c a c y g ro ups. 1
1/12/2012 Wha t a re the Risks? De - I de ntific a tio n a nd Re - I de ntific a tio n Risk Ana lysis Swire : Who a re the Atta c ke rs o n “a no nymize d S i Wh th Att k “ i d da ta ”? Inside rs “pe e ping ” Outside ha c ke rs intruding Pub lic Swe e ne y: F ind wa ys to sha re da ta wide ly b ut witho ut re -ide ntific a tio n E E ma m: Study re ve a le d ha lf o f a tta c ks o n he a lth ma m: Study re ve a le d ha lf o f a tta c ks o n he a lth da ta a nd o the r ha lf we re de mo nstra tio n a tta c ks b y re se a rc he rs Ac q uisti: F a c ia l re c o g nitio n a nd risks a sso c ia te d with c o mb ining te c hno lo g ie s Wha t a re the Be ne fits o f De - I de ntific a tio n? Da ta yie lds g re a t b e ne fits o f to so c ie ty Slim c ha nc e o f re -ide ntific a tio n Stro ng to o l to pro te c t priva c y 2
1/12/2012 Co mmo n Se c o nda ry Use s o f De -I de ntifie d Da ta : Ho w a re g o ve rnme nts using da ta ? Yu: Co urts ha ve re lie d o n pra c tic a l o b sc urity Co urt re c o rds ha ve SS# 's, info rma nts, c ritic a l info rma tio n So me priva c y c o ntro ls imple me nte d SS# , b irth ye a r, la st fo ur dig its o f fina nc ia l info , a ddre ss Ro c c a : Pilo t Se ntine l Pro je c t will a ug me nt e xisting R Pil t S ti l P j t ill t i ti sa fe ty syste ms Ba rth-Jo ne s: So me me tho ds to de -ide ntify da ta c a n me ss ups sta ts a nd le a d to b a d de c isio ns Da ta Use fo r Co nsume r Se rvic e s Ve nug o pa l: Go o g le tra nsla te ha s mo ve d fro m 3 la ng ua g e s to 63 la ng ua g e s pure ly o n g e ne ric , pub lic ly a va ila b le da ta Co he n: Mic ro so ft lo c a tio n da ta b a se c o nta ins de -ide ntifie d info witho ut a ny info spe c ific to the use r Da ta de rive d fro m c ro wd so urc ing Da ta de rive d fro m c ro wd so urc ing Supre me Co urt Ca se o n GPS tra c king , US v. Jo ne s 3
1/12/2012 Adve rtising a nd Ma rke ting Use s a nd Co nc e rns Ho : Priva c y c o nc e rns whe n I i h P da ta b a se s c o nta in Zip d b i i o r Zip plus 4 o r ho use ho ld info rma tio n Be ring Me dia use o f do ub le -b lind a rc hite c ture Blum: Qua ntc a st a g g re g a te s pa tte rns o f surfing b e ha vio r, no PI I c o lle c te d Ma g e e : F T C a c kno wle dg e d tha t the re wa s no lo ng e r a b rig ht line b e twe e n PI g I a nd no n-PI I Shifte d a ppro a c h to lo o k a t whe the r da ta c o uld b e linke d to a c o nsume r/ use r Bro o kma n: Co nside r pa rtie s invo lve d 1 st pa rty use 3 rd pa rty a na lytic s firms Cro ss-site da ta L e g a l Pe rspe c tive s o n Ano nymiza tio n: Da nie l So lo ve L a w Re vie w Artic le : T he PI I Pro b le m Priva c y a nd a Ne w Co nc e pt o f Pe rso na lly I de ntifia b le I nfo rma tio n (PI I ) Ba sic a ssumptio n b e hind the re le va nt sta tute s is tha t the ir B i ti b hi d th l t t t t i th t th i a pplic a b ility will turn o n whe the r PI I is pre se nt. (No te : no unifo rm de finitio n o f PI I in info rma tio n priva c y la w) De finitio ns tha t do e xist a re unsa tisfa c to ry Artic le intro duc e s a ne w c o nc e pt o f PI I I ts mo de l o f PI I 2.0 pro te c ts info rma tio n tha t re la te s e ithe r to a n “ide ntifie d” o r “ide ntifia b le ” pe rso n, b ut tha t a sso c ia te s diffe re nt le g a l inte re sts with e a c h c a te g o ry F le xib le a ppro a c h a lso pro vide s the sa fe g ua rd o f tre a ting ide ntifia b le info rma tio n with a sub sta ntia l risk o f b e ing ide ntifie d a s a fo rm o f ide ntifie d da ta PI I 2.0 re pre se nts a wa y b e yo nd the re duc tio nist re a ding o f PI I in the U.S., a nd the e xpa nsio nist re a ding in the E U PI I c a nno t b e a b a ndo ne d, a nd the PI I 2.0 c o nc e pt is e sse ntia l a s a wa y to de fine re g ula to ry b o unda rie s 4
1/12/2012 L e g a l Pe rspe c tive s o n Ano nymiza tio n Ya ko witz: Pro po sa l fo r a le g a l sa fe ha rb o r fo r re se a rc he rs to use da ta Da ta c o mmo ns is g re a t fo r "info rma tio n justic e " Must b e a c c e ssib le Re -ide ntific a tio n a tta c ks a re diffic ult a nd c o stly Ge ig e r: Co nc e rn with lo ng -te rm via b ility o f de - ide ntific a tio n sta nda rds ide ntific a tio n sta nda rds Jule s Po lo ne tsky, E xe c utive Christo phe r Wo lf, F o unde r Dire c to r a nd Co -Cha ir a nd Co -Cha ir Jule sPo l@ future o fpriva c y.o rg Cwo lf@ future o fpriva c y.o rg Wa tc h the Confe re nc e he re : www.future ofpriva c y.org / de - ide ntific a tion- workshop/ www.future o fpriva c y.o rg • Applic a tio npriva c y.o rg • F a c e b o o k.c o m/ future o fpriva c y • @ jule spo lo ne tsky • @ priva c ywo lf • GPlus.to / jule spo lo ne tsky • 5
Recommend
More recommend