Privacy at Risk: Exploiting Similarities in Health Data for Identity Inference

08/16/2023
by   Lucas Lange, et al.
0

Smartwatches enable the efficient collection of health data that can be used for research and comprehensive analysis to improve the health of individuals. In addition to the analysis capabilities, ensuring privacy when handling health data is a critical concern as the collection and analysis of such data become pervasive. Since health data contains sensitive information, it should be handled with responsibility and is therefore often treated anonymously. However, also the data itself can be exploited to reveal information and break anonymity. We propose a novel similarity-based re-identification attack on time-series health data and thereby unveil a significant vulnerability. Despite privacy measures that remove identifying information, our attack demonstrates that a brief amount of various sensor data from a target individual is adequate to possibly identify them within a database of other samples, solely based on sensor-level similarities. In our example scenario, where data owners leverage health data from smartwatches, findings show that we are able to correctly link the target data in two out of three cases. User privacy is thus already inherently threatened by the data itself and even when removing personal information.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
08/25/2018

Formal Analysis of an E-Health Protocol

Given the sensitive nature of health data, security and privacy in e-hea...
research
09/12/2022

Design heuristics: privacy and portability Regulation as a feature request

The lack of user experience standards in regulations for data privacy an...
research
07/13/2023

Data Behind the Walls An Advanced Architecture for Data Privacy Management

In today's highly connected society, we are constantly asked to provide ...
research
03/03/2023

Usability of Privacy Controls in Top Health Websites

With the increasing awareness and concerns around privacy, many service ...
research
02/02/2019

De-Health: All Your Online Health Information Are Belong to Us

In this paper, we study the privacy of online health data. We present a ...
research
03/20/2020

A Framework for Generating Explanations from Temporal Personal Health Data

Whereas it has become easier for individuals to track their personal hea...
research
01/27/2019

Automatic end-to-end De-identification: Is high accuracy the only metric?

De-identification of electronic health records (EHR) is a vital step tow...

Please sign up or login with your details

Forgot password? Click here to reset