Privacy: From database reconstruction to legal theorems

Kobbi Nissim

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

4 Scopus citations

Abstract

There are significant gaps between legal and technical thinking around data privacy. Technical standards are described using mathematical language whereas legal standards are not rigorous from a mathematical point of view and often resort to concepts which they only partially define. As a result, arguments about the adequacy of technical privacy measures for satisfying legal privacy often lack rigor, and their conclusions are uncertain. The uncertainty is exacerbated by a litany of successful privacy attacks on privacy measures thought to meet legal expectations but then shown to fall short of doing so. As computer systems manipulating individual privacy-sensitive data become integrated in almost every aspect of society, and as such systems increasingly make decisions of legal significance, the need to bridge the diverging, and sometimes conflicting legal and technical approaches becomes urgent. We formulate and prove formal claims - "legal theorems'' - addressing legal questions such as whether the use of technological measures satisfies the requirements of a legal privacy standard. In particular, we analyze the notion of singling out from the GDPR and whether technologies such as k-anonymity and differential privacy prevent singling out. Our long-term goal is to develop concepts which are on one hand technical, so they can be integrated in the design of computer systems, and can be used in legal reasoning and for policymaking on the other hand.

Original languageEnglish
Title of host publicationPODS 2021 - Proceedings of the 40th ACM SIGMOD-SIGACT-SIGAI Symposium on Principles of Database Systems
PublisherAssociation for Computing Machinery
Pages33-41
Number of pages9
ISBN (Electronic)9781450383813
DOIs
StatePublished - 20 Jun 2021
Externally publishedYes
Event40th ACM SIGMOD-SIGACT-SIGAI Symposium on Principles of Database Systems, PODS 2021 - Virtual, Online, China
Duration: 20 Jun 202125 Jun 2021

Publication series

NameProceedings of the ACM SIGACT-SIGMOD-SIGART Symposium on Principles of Database Systems

Conference

Conference40th ACM SIGMOD-SIGACT-SIGAI Symposium on Principles of Database Systems, PODS 2021
Country/TerritoryChina
CityVirtual, Online
Period20/06/2125/06/21

Keywords

  • Data privacy
  • Differential privacy
  • Gdpr
  • K-anonymity
  • Singling out

ASJC Scopus subject areas

  • Software
  • Information Systems
  • Hardware and Architecture

Fingerprint

Dive into the research topics of 'Privacy: From database reconstruction to legal theorems'. Together they form a unique fingerprint.

Cite this