Anonymizing classification data for privacy preservation

被引:180
作者
Fung, Benjamin C. M. [1 ]
Wang, Ke
Yu, Philip S.
机构
[1] Simon Fraser Univ, Sch Comp Sci, Burnaby, BC V5A 1S6, Canada
[2] IBM Corp, TJ Watson Res Ctr, Hawthorne, NY 10532 USA
基金
加拿大自然科学与工程研究理事会;
关键词
privacy protection; anonymity; security; integrity; data mining; classification; data sharing;
D O I
10.1109/TKDE.2007.1015
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Classification is a fundamental problem in data analysis. Training a classifier requires accessing a large collection of data. Releasing person-specific data, such as customer data or patient records, may pose a threat to an individual's privacy. Even after removing explicit identifying information such as Name and SSN, it is still possible to link released records back to their identities by matching some combination of nonidentifying attributes such as {Sex; Zip; Birthdate}. A useful approach to combat such linking attacks, called k-anonymization [1], is anonymizing the linking attributes so that at least k released records match each value combination of the linking attributes. Previous work attempted to find an optimal k-anonymization that minimizes some data distortion metric. We argue that minimizing the distortion to the training data is not relevant to the classification goal that requires extracting the structure of predication on the "future" data. In this paper, we propose a k-anonymization solution for classification. Our goal is to find a k-anonymization, not necessarily optimal in the sense of minimizing data distortion, which preserves the classification structure. We conducted intensive experiments to evaluate the impact of anonymization on the classification on future data. Experiments on real-life data show that the quality of classification can be preserved even for highly restrictive anonymity requirements.
引用
收藏
页码:711 / 725
页数:15
相关论文
共 27 条
[1]  
Aggarwal G., 2005, J. Priv. Technol, V2005112001, P400
[2]  
[Anonymous], 2006, P 22 INT C DAT ENG I
[3]  
[Anonymous], 1996, P 3 INT SEM STAT CON
[4]  
Bayardo RJ, 2005, PROC INT CONF DATA, P217
[5]  
DALENIUS T, 1986, J OFF STAT, V2, P329
[6]  
Fung BCM, 2005, PROC INT CONF DATA, P205
[7]  
Iyengar VS., 2002, P 8 ACM SIGKDD INT C, P279, DOI DOI 10.1145/775047.775089
[8]  
LEFEVRE K, 2006, P 12 ACM SIGKDD INT
[9]  
LEFEVRE K, 2006, P 22 IEEE INT C DAT
[10]  
LeFevre K., 2005, P 2005 ACM SIGMOD IN, DOI [DOI 10.1145/1066157.1066164, 10.1145/1066157.1066164]