The Role of Inference in the Anonymization of Medical Records

被引:4
作者
Zigomitros, Athanasios [1 ,2 ]
Solanas, Agusti [3 ]
Patsakis, Constantinos [4 ]
机构
[1] Athena Res Ctr, Inst Management Informat Syst, Athens, Greece
[2] Univ Piraeus, Dept Informat, Piraeus, Greece
[3] Univ Rovira Virgili, Smart Hlth Res Grp, Dept Comp Engn & Math, Tarragona, Spain
[4] Distributed Syst Grp, Trin Coll, Sch Comp Sci & Stat, yy, Dublin, Ireland
来源
2014 IEEE 27TH INTERNATIONAL SYMPOSIUM ON COMPUTER-BASED MEDICAL SYSTEMS (CBMS) | 2014年
关键词
Privacy; data anonymization; medical records;
D O I
10.1109/CBMS.2014.88
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The quality of life has been significantly improved and one of the main reasons is the medical advances of the past decades. Nevertheless, to further advance the research and services in the field, practitioners, researchers and health organizations should share more information. While this need is indisputable, the sensitivity of the information demands that it is preprocessed, so that the published data are anonymized and individuals cannot be identified. The scope of this work is to highlight the difficulties in providing automated anonymization approaches for medical records without consulting experts in the field. One of the major problems that is going to be highlighted is that Quasi-Identifiers (QI) are not independent. It is well known that combinations of QIs can be used to infer other relevant information. Nevertheless, this work tries to exploit the other way of information flow, we show how sensitive attributes can be exploited to derive information about the QIs, leading to many privacy hazards for the patients whose records are shared. To this extent, we illustrate some relevant examples and discuss probable counter-measures.
引用
收藏
页码:88 / 93
页数:6
相关论文
共 18 条
[1]  
[Anonymous], 2006, P 32 INT C VER LARG
[2]  
[Anonymous], 2008, P 14 ACM SIGKDD INT, DOI DOI 10.1145/1401890.1401904
[3]   DATA-SWAPPING - A TECHNIQUE FOR DISCLOSURE CONTROL [J].
DALENIUS, T ;
REISS, SP .
JOURNAL OF STATISTICAL PLANNING AND INFERENCE, 1982, 6 (01) :73-85
[4]  
Farkas C., 2002, ACM SIGKDD Explorations Newsletter, V4, P6, DOI [10.1145/772862.772864, DOI 10.1145/772862.772864]
[5]   Flash: Efficient, Stable and Optimal K-Anonymity [J].
Kohlmayer, Florian ;
Prasser, Fabian ;
Eckert, Claudia ;
Kemper, Alfons ;
Kuhn, Klaus A. .
PROCEEDINGS OF 2012 ASE/IEEE INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY, RISK AND TRUST AND 2012 ASE/IEEE INTERNATIONAL CONFERENCE ON SOCIAL COMPUTING (SOCIALCOM/PASSAT 2012), 2012, :708-717
[6]   On-chip continuous blood cell sub-type separation by deterministic lateral displacement [J].
Li, Nan ;
Kamei, Daniel T. ;
Ho, Chili-Ming .
2007 2ND IEEE INTERNATIONAL CONFERENCE ON NANO/MICRO ENGINEERED AND MOLECULAR SYSTEMS, VOLS 1-3, 2007, :692-+
[7]   Slicing: A New Approach for Privacy Preserving Data Publishing [J].
Li, Tiancheng ;
Li, Ninghui ;
Zhang, Jian ;
Molloy, Ian .
IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2012, 24 (03) :561-574
[8]   Utility-Aware Anonymization of Diagnosis Codes [J].
Loukides, Grigorios ;
Gkoulalas-Divanis, Aris .
IEEE JOURNAL OF BIOMEDICAL AND HEALTH INFORMATICS, 2013, 17 (01) :60-70
[9]   Anonymization of electronic medical records for validating genome-wide association studies [J].
Loukides, Grigorios ;
Gkoulalas-Divanis, Aris ;
Malin, Bradley .
PROCEEDINGS OF THE NATIONAL ACADEMY OF SCIENCES OF THE UNITED STATES OF AMERICA, 2010, 107 (17) :7898-7903
[10]  
Machanavajjhala A., 2007, ACM T KNOWL DISCOV D, V1, P3, DOI [DOI 10.1145/1217299.1217302, 10.1145/1217299.1217302]