DocumentCode :
2529802
Title :
Personal Privacy without Computational Obscurity: Rethinking Privacy Protection Strategies for Open Information Networks
Author :
Weitzner, Daniel J.
Author_Institution :
Massachusetts Inst. of Technol., Cambridge
fYear :
2007
fDate :
10-14 Dec. 2007
Firstpage :
173
Lastpage :
175
Abstract :
Summary form only given. Throughout the history of computer and network security research, privacy has been treated as synonymous with confidentiality, with the presumed high water mark of privacy being mathematically provable anonymity. Despite the fact that technical innovation in cryptography and network security has enabled all manner of confidentiality control over the exposure of identity in information systems, the vast majority of Internet user remain deeply worried about their privacy rights and correctly believe that they are far more exposed today than they might have been a generation earlier. Have we just failed to deploy the proper security technology to protect privacy, are our laws inadequate to meet present day privacy threats, or have business practices and social conventions simply rendered privacy dead? While there is some truth to each possibility, the central failure to achieve robust privacy in the information age can be traced to an a long-standing misassocation of privacy with confidentiality and access control. In order to revitalize privacy protection, we should shift our legal attention away from rules limiting disclosure of personal information toward policies governing how personal information can be used. And technical efforts currently focused on access control and anonymization should be redirected toward technical measures that make information usage more transparent and accountable to clearly stated policies that address proper and improper users of personal information.
Keywords :
Internet; authorisation; cryptography; data privacy; open systems; telecommunication security; Internet; access control; computer network security; cryptography; information systems; open information networks; personal information confidentiality; personal privacy protection strategy; Access control; Computer networks; Computer security; Cryptography; History; Information security; Law; Privacy; Protection; Technological innovation;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer Security Applications Conference, 2007. ACSAC 2007. Twenty-Third Annual
Conference_Location :
Miami Beach, FL
ISSN :
1063-9527
Print_ISBN :
978-0-7695-3060-4
Type :
conf
DOI :
10.1109/ACSAC.2007.50
Filename :
4412987
Link To Document :
بازگشت