• DocumentCode
    2456239
  • Title

    Privacy-Preserving and Content-Protecting Location Based Queries

  • Author

    Paulet, Russell ; Koasar, M.G. ; Yi, Xun ; Bertino, Elisa

  • Author_Institution
    Sch. of Eng. & Sci., Victoria Univ., Melbourne, VIC, Australia
  • fYear
    2012
  • fDate
    1-5 April 2012
  • Firstpage
    44
  • Lastpage
    53
  • Abstract
    In this paper we present a solution to one of the location-based query problems. This problem is defined as follows: (i) a user wants to query a database of location data, known as Points Of Interest (POI), and does not want to reveal his/her location to the server due to privacy concerns, (ii) the owner of the location data, that is, the location server, does not want to simply distribute its data to all users. The location server desires to have some control over its data, since the data is its asset. Previous solutions have used a trusted anonymiser to address privacy, but introduced the impracticality of trusting a third party. More recent solutions have used homomorphic encryption to remove this weakness. Briefly, the user submits his/her encrypted coordinates to the server and the server would determine the user´s location homomorphically, and then the user would acquire the corresponding record using Private Information Retrieval techniques. We propose a major enhancement upon this result by introducing a similar two stage approach, where the homomorphic comparison step is replaced with Oblivious Transfer to achieve a more secure solution for both parties. The solution we present is efficient and practical in many scenarios. We also include the results of a working prototype to illustrate the efficiency of our protocol.
  • Keywords
    cryptography; data privacy; query processing; POI; content-protecting location based queries; database querying; homomorphic encryption; location data; location server; location-based query problems; oblivious transfer; points of interest; privacy-preserving location based queries; private informaion retrieval techniques; Databases; Encryption; Mobile communication; Privacy; Protocols; Servers;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Data Engineering (ICDE), 2012 IEEE 28th International Conference on
  • Conference_Location
    Washington, DC
  • ISSN
    1063-6382
  • Print_ISBN
    978-1-4673-0042-1
  • Type

    conf

  • DOI
    10.1109/ICDE.2012.95
  • Filename
    6228071