A three-dimensional conceptual framework for database privacy

  • Authors:
  • Josep Domingo-Ferrer

  • Affiliations:
  • Rovira i Virgili University, Department of Computer Engineering and Mathematics, Tarragona, Catalonia

  • Venue:
  • SDM'07 Proceedings of the 4th VLDB conference on Secure data management
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Database privacy is an ambiguous concept, whose meaning is usually context-dependent. We give a conceptual framework for technologies in that field in terms of three dimensions, depending on whose privacy is considered: i) respondent privacy (to avoid reidentification of patients or other individuals to whom the database records refer); ii) owner privacy (to ensure that the owner must not give away his dataset); and iii) user privacy (to preserve the privacy of queries submitted by a data user). Examples are given to clarify why these are three independent dimensions. Some of the pitfalls related to combining the privacy interests of respondents, owners and users are discussed. An assessment of database privacy technologies against the three dimensions is also included.