managing information leakage · – negative effect of disinformation, promoting good information,...

31
1 Steven Whang, Hector Garcia-Molina Stanford University Managing Information Leakage

Upload: others

Post on 16-Jul-2020

0 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

1

Steven Whang, Hector Garcia-Molina Stanford University

Managing Information Leakage

Page 2: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

2

Page 3: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

3

Page 4: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

4

Page 5: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

5

Page 6: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

6

Page 7: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

7

Page 8: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

8

Page 9: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Information Leakage

Joseph

9

Page 10: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Joseph

Information Leakage

10

Page 11: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Model

•  p = {<N,n1>,<C,c1>,<C,c2>,<P,p1>,<A,a1>} • D ={s={<N,n1>,<C,c1>,<P,p1>},

t= {<N,n1>,<C,c2>}} • M(x,y) = true if same N,C or N,P •  µ(x,y) = x U y

11

Page 12: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Record Leakage

•  p = {<N,n1>,<C,c1>,<C,c2>,<P,p1>,<A,a1>} •  r = {<N,n1>,<C,c1>,<P,x>} • Lr(p, r) = |p∩r|-|r-p| = 2-1 = 1 –  In general, Lr can be any function

12

Page 13: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Query Leakage

•  q = {<N,n1>,<C,c1>}

13

Page 14: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Query Leakage

•  q = {<N,n1>,<C,c1>}

14

Page 15: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Query Leakage

•  q = {<N,n1>,<C,c1>}

15

q

t s

Page 16: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Query Leakage

•  q = {<N,n1>,<C,c1>}

16

q

t s

µ(q,s)

Page 17: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Query Leakage

•  q = {<N,n1>,<C,c1>} • Lq(p, q, D)

= max{Lr(p, µ(q,s))} = max{3} = 3

17

q

t s

µ(q,s)

Page 18: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Database Leakage

• Ld(p, D) = max{Lq(p, s, D-{s}), Lq(p, t, D-{t})} = max{Lr(p, s), Lr(p, t)} = max{3, 2} = 3

18

Page 19: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Key Features

•  Incorporated Entity Resolution •  Privacy: NOT all or nothing

• Uncertainty •  Incorrect Information

19

No privacy Perfect privacy

Page 20: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Interesting Problems

• Releasing Critical Information • Comparing Entity Resolution Algorithms • Releasing Disinformation

20

Page 21: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Releasing Disinformation

Joseph

21

Page 22: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Joseph

Releasing Disinformation

22

Page 23: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Joseph

XXX

Releasing Disinformation

23

Page 24: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

YYY

Joseph

XXX

Releasing Disinformation

24

Page 25: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Releasing Disinformation

• Minimize Ld(p, DUS) s.t.

25

Page 26: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Conclusion

• We have formalized information leakage –  Incorporated Entity Resolution –  Privacy: NOT all or nothing –  Uncertainty –  Incorrect Information

• We have listed several challenges for managing information leakage

26

Page 27: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Thanks!

27

Page 28: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Releasing Critical Information

•  u={<N,n1>,<C,c2>,<P,p1>} • Ld(p, D1) = 3 • Ld(p, D2) = 3

28

Online shopping websites

Page 29: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Releasing Critical Information

•  u={<N,n1>,<C,c2>,<P,p1>} • Ld(p, D1) = 3 Ld(p, D1U{u}) = 3 • Ld(p, D2) = 3 Ld(p, D2U{u}) = 4

29

Online shopping websites

Page 30: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Related Work

• ReputationDefender –  Promotes positive information

• Track-Me-Not –  Obfuscates search queries

30

Page 31: Managing Information Leakage · – Negative effect of disinformation, promoting good information, enhance record, check hypothesis, … 31 . Title [110110] CIDR_Steven.ppt Author:

Current Work

• Model –  Distinguish attributes, better leakage measures,

update/delete, utility, privacy measure, …

•  Implementation –  Bogus creation, scalability, …

• More problems –  Negative effect of disinformation, promoting good

information, enhance record, check hypothesis, …

31