slides/slides07.tex
author Christian Urban <christian dot urban at kcl dot ac dot uk>
Mon, 10 Nov 2014 05:57:10 +0000
changeset 299 82906b148ff5
parent 143 slides/slides08.tex@5d6c0e3b4ebb
child 300 9aeb88f8cbec
permissions -rw-r--r--
updated
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     1
\documentclass[dvipsnames,14pt,t]{beamer}
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
     2
\usepackage{../slides}
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     3
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     4
% beamer stuff 
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
     5
\renewcommand{\slidecaption}{APP 07, King's College London}
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     6
\newcommand{\bl}[1]{\textcolor{blue}{#1}}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     7
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     8
\begin{document}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
     9
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    10
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    11
\begin{frame}[t]
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    12
\frametitle{%
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    13
  \begin{tabular}{@ {}c@ {}}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    14
  \\
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    15
  \LARGE Access Control and \\[-3mm] 
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    16
  \LARGE Privacy Policies (7)\\[-6mm] 
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    17
  \end{tabular}}\bigskip\bigskip\bigskip
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    18
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    19
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    20
  \normalsize
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    21
  \begin{center}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    22
  \begin{tabular}{ll}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    23
  Email:  & christian.urban at kcl.ac.uk\\
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
    24
  Office: & S1.27 (1st floor Strand Building)\\
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    25
  Slides: & KEATS (also homework is there)\\
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    26
  \end{tabular}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    27
  \end{center}
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    28
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    29
\end{frame}
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    30
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%     
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
    31
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
    32
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
    33
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
    34
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
    35
\mode<presentation>{
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
    36
\begin{frame}[c]
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
    37
\frametitle{Man-in-the-Middle}
76
dde58256fc35 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 75
diff changeset
    38
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    39
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    40
\item Border Gateway Protocol (BGP) --- routers believe their neighbours
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    41
\item it is possible to advertise bad routes
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    42
\item can be done over continents\bigskip 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    43
\end{itemize}
139
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 138
diff changeset
    44
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 138
diff changeset
    45
\hfill\footnotesize\url{http://www.renesys.com/2013/11/mitm-internet-hijacking/}
77
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    46
\end{frame}}
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    47
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    48
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    49
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    50
\begin{frame}[t]
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
    51
\frametitle{Facebook Privacy}
76
dde58256fc35 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 75
diff changeset
    52
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    53
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    54
\item \large Who has a Facebook account?\pause\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    55
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    56
\item \large Who keeps the list of friends private?\pause\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    57
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    58
\item \large Who knows that this is completely pointless?
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    59
{\small (at least at the end of 2013)}\pause\medskip
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    60
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    61
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    62
\only<4>{ Create a fake account. Send a friend request.
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    63
Facebook answers with ``People you may know'' feature.
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    64
Conveniently it has also a ``see all'' button. }
80
807393d1efff updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 79
diff changeset
    65
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    66
\only<5>{\small\it ``Our policies explain that changing the
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    67
visibility of people on your friend list controls how they
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    68
appear on your Timeline, and that your friends may be visible
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    69
on other parts of the site, such as in News Feed, Search and
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    70
on other people's Timelines. This behavior is something we'll
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    71
continue to evaluate to make sure we're providing clarity.'' }
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    72
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
    73
\end{frame}
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
    74
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
81
fa20645ffd25 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 80
diff changeset
    75
fa20645ffd25 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 80
diff changeset
    76
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
fa20645ffd25 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 80
diff changeset
    77
\mode<presentation>{
fa20645ffd25 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 80
diff changeset
    78
\begin{frame}[c]
fa20645ffd25 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 80
diff changeset
    79
\frametitle{Privacy, Anonymity et al}
77
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    80
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    81
Some terminology:
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    82
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    83
\begin{itemize}
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    84
\item \alert{secrecy} is the mechanism used to limit the number of 
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    85
principals with access to information (e.g., cryptography or access controls)
77
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    86
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    87
\item \alert{confidentiality} is the obligation to protect the secrets of other people 
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    88
or organizations (secrecy for the benefit of an organisation)
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    89
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
    90
\item \alert{anonymity} is the ability to leave no evidence of an activity (e.g., sharing a secret)
77
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    91
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    92
\item \alert{privacy} is the ability or right to protect your personal secrets 
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    93
(secrecy for the benefit of an individual)
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    94
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    95
\end{itemize}
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    96
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    97
\end{frame}}
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    98
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
    99
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   100
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   101
\mode<presentation>{
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   102
\begin{frame}[t]
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   103
\frametitle{Privacy vs Anonymity}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   104
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   105
\begin{itemize}
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   106
\item everybody agrees that anonymity has its uses (e.g., voting, whistleblowers, peer-review, exams)
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   107
\end{itemize}\bigskip\bigskip\pause
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   108
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   109
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   110
But privacy?\bigskip\bigskip
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   111
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   112
``You have zero privacy anyway. Get over it.''\\
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   113
\hfill{}Scott Mcnealy (CEO of Sun)\bigskip\\
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   114
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   115
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   116
If you have nothing to hide, you have nothing to fear.
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   117
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   118
\end{frame}}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   119
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   120
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   121
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   122
\mode<presentation>{
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   123
\begin{frame}[t]
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   124
\frametitle{Privacy}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   125
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   126
private data can be often used against me
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   127
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   128
\begin{itemize}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   129
\item if my location data becomes public, thieves will switch off their phones and help themselves in my home
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   130
\item if supermarkets can build a profile of what I buy, they can use it to their advantage (banks - mortgages)
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   131
\item my employer might not like my opinions\bigskip\pause
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   132
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   133
\item one the other hand, Freedom-of-Information Act 
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   134
\item medical data should be private, but medical research needs data
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   135
\end{itemize}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   136
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   137
\end{frame}}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   138
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   139
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   140
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   141
\mode<presentation>{
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   142
\begin{frame}[t]
82
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   143
\frametitle{Privacy Problems}
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   144
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   145
\begin{itemize}
82
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   146
\item Apple takes note of every dictation (send over the Internet to Apple)
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   147
\item markets often only work, if data is restricted (to build trust)
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   148
\item Social network can reveal data about you 
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   149
\item have you tried the collusion (lightbeam?) extension for FireFox?
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   150
\item I do use Dropbox, store cards
82
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   151
\end{itemize}
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   152
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   153
\begin{textblock}{5}(12,9.9)
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   154
\includegraphics[scale=0.2]{../pics/gattaca.jpg}\\
82
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   155
\small Gattaca (1997)
01562d143105 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 81
diff changeset
   156
\end{textblock}
79
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   157
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   158
\end{frame}}
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   159
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
2eaca58f9bcc updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 78
diff changeset
   160
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   161
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   162
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   163
\begin{frame}[t]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   164
\frametitle{Privacy}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   165
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   166
\begin{minipage}{1.05\textwidth}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   167
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   168
\item we \alert{do} want that government data is made public (free maps for example)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   169
\item we \alert{do not} want that medical data becomes public (similarly tax data, school 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   170
records, job offers)\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   171
\item personal information can potentially lead to fraud 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   172
(identity theft)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   173
\end{itemize}\pause
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   174
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   175
{\bf ``The reality'':}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   176
\only<2>{\begin{itemize}
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   177
\item London Health Programmes lost in June two years unencrypted details of more than 8 million people
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   178
(no names, but postcodes and details such as gender, age and ethnic origin)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   179
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   180
\only<3>{\begin{itemize}
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   181
\item also in June two years ago, Sony got hacked: over 1M users' personal information, including passwords, email addresses, home addresses, dates of birth, and all Sony opt-in data associated with their accounts.
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   182
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   183
\end{minipage}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   184
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   185
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   186
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   187
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   188
   
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   189
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   190
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   191
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   192
\frametitle{Privacy and Big Data}
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   193
\mbox{}\\[-16mm]\mbox{}
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   194
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   195
Selected sources of ``Big Data'':\smallskip{}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   196
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   197
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   198
\item Facebook 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   199
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   200
\item 40+ Billion photos (100 PB)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   201
\item 6 Billion messages daily (5 - 10 TB)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   202
\item 900 Million users  
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   203
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   204
\item Common Crawl
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   205
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   206
\item covers 3.8 Billion webpages (2012 dataset)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   207
\item 50 TB of data
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   208
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   209
\item Google
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   210
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   211
\item 20 PB daily (2008)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   212
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   213
\item Twitter
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   214
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   215
\item 7 Million users in the UK
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   216
\item a company called Datasift is allowed to mine all tweets since 2010
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   217
\item they charge 10k per month for other companies to target advertisement
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   218
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   219
\end{itemize}\pause
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   220
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   221
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   222
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   223
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   224
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   225
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   226
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   227
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   228
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   229
\frametitle{Cookies\ldots}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   230
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   231
``We have published a new cookie policy. It explains what cookies are 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   232
and how we use them on our site. To learn more about cookies and 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   233
their benefits, please view our cookie policy.\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   234
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   235
If you'd like to disable cookies on this device, please view our information 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   236
pages on 'How to manage cookies'. Please be aware that parts of the 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   237
site will not function correctly if you disable cookies. \medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   238
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   239
By closing this 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   240
message, you consent to our use of cookies on this device in accordance 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   241
with our cookie policy unless you have disabled them.''
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   242
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   243
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   244
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   245
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   246
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   247
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   248
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   249
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   250
\frametitle{Scare Tactics}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   251
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   252
The actual policy reads:\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   253
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   254
``As we explain in our Cookie Policy, cookies help you to get the most 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   255
out of our websites.\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   256
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   257
If you do disable our cookies you may find that certain sections of our 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   258
website do not work. For example, you may have difficulties logging in 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   259
or viewing articles.''
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   260
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   261
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   262
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   263
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   264
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   265
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   266
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   267
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   268
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   269
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   270
\frametitle{Netflix Prize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   271
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   272
Anonymity is \alert{necessary} for privacy, but \alert{not} enough!\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   273
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   274
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   275
\item Netflix offered in 2006 (and every year until 2010) a 1 Mio \$ prize for improving their movie rating algorithm
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   276
\item dataset contained 10\% of all Netflix users (appr.~500K)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   277
\item names were removed, but included numerical ratings as well as times of rating
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   278
\item some information was \alert{perturbed} (i.e., slightly modified)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   279
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   280
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   281
\hfill{\bf\alert{All OK?}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   282
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   283
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   284
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   285
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   286
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   287
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   288
\begin{frame}[c]
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   289
\frametitle{Re-identification Attacks}
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   290
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   291
Two researchers analysed the data: 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   292
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   293
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   294
\item with 8 ratings (2 of them can be wrong) and corresponding dates that can have a margin 14-day error, 98\% of the
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   295
records can be identified
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   296
\item for 68\% only two ratings and dates are sufficient (for movie ratings outside the top 500)\bigskip\pause
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   297
\item they took 50 samples from IMDb (where people can reveal their identity)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   298
\item 2 of them uniquely identified entries in the Netflix database (either by movie rating or by dates)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   299
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   300
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   301
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   302
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   303
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   304
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   305
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   306
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   307
\frametitle{Re-identification Attacks}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   308
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   309
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   310
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   311
\item in 1990 insurance databases were made public with names removed, but  birth dates, 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   312
gender, ZIP-code were retained\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   313
\item could be cross referenced with public voter registration data in order to find out what the
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   314
medical record of the governor of Massachusetts was
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   315
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   316
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   317
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   318
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   319
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   320
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   321
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   322
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   323
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   324
\frametitle{}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   325
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   326
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   327
\item Birth data, postcode and gender (unique for\\ 87\% of the US population)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   328
\item Preferences in movies (99\% of 500K for 8 ratings)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   329
\end{itemize}\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   330
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   331
Therefore best practices / or even law (HIPAA, EU): 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   332
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   333
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   334
\item only year dates (age group for 90 years or over), 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   335
\item no postcodes (sector data is OK, similarly in the US)\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   336
\textcolor{gray}{no names, addresses, account numbers, licence plates}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   337
\item disclosure information needs to be retained for 5 years
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   338
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   339
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   340
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   341
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   342
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   343
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   344
\begin{frame}<2>[c]
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   345
\frametitle{\large How to Safely Disclose Information?}
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   346
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   347
\only<1>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   348
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   349
\item Assume you make a survey of 100 randomly chosen people.
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   350
\item Say 99\% of the surveyed people in the 10 - 40 age group have seen the
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   351
Gangnam video on youtube.\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   352
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   353
\item What can you infer about the rest of the population? 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   354
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   355
\only<2>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   356
\begin{itemize}
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   357
\item Is it possible to re-identify data later, if more data is released? \bigskip\bigskip\pause
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   358
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   359
\item Not even releasing only  aggregate information prevents re-identification attacks.
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   360
(GWAS was a public database of gene-frequency studies linked to diseases;
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   361
you only needed partial DNA information  in order
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   362
to identify whether an individual was part of the study --- DB closed in 2008) 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   363
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   364
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   365
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   366
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   367
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   368
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   369
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   370
\begin{frame}<2>[c]
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   371
\frametitle{\Large We cannot exclude all Harm}
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   372
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   373
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   374
\item Analysis of a given data set teaches us that smoking causes cancer. 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   375
Mary, a smoker, is harmed by this analysis: her insurance premiums rise. 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   376
Mary’s premiums rise whether or not her data are in the data set. In other words, 
143
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 142
diff changeset
   377
Mary is harmed by the finding smoking causes cancer.\bigskip
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   378
299
82906b148ff5 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 143
diff changeset
   379
\item \ldots of course she is also helped; she might quit smoking
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   380
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   381
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   382
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   383
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   384
     
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   385
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   386
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   387
\begin{frame}<2>[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   388
\frametitle{Differential Privacy}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   389
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   390
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   391
\item Goal: Nothing about an individual should be learnable from the database that 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   392
cannot be learned without access to the database.\pause\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   393
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   394
\item Differential privacy is a ``protocol'' which you run on some dataset \bl{$X$} producing
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   395
some output \bl{$O(X)$}.\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   396
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   397
\item You want to achieve \alert{forward privacy}
140
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   398
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   399
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   400
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 139
diff changeset
   401
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   402
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   403
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   404
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   405
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   406
\frametitle{Differential Privacy}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   407
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   408
\begin{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   409
User\;\;\;\;    
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   410
\begin{tabular}{c}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   411
tell me \bl{$f(x)$} $\Rightarrow$\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   412
$\Leftarrow$ \bl{$f(x) + \text{noise}$}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   413
\end{tabular}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   414
\;\;\;\;\begin{tabular}{@{}c}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   415
Database\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   416
\bl{$x_1, \ldots, x_n$}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   417
\end{tabular}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   418
\end{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   419
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   420
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   421
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   422
\item \bl{$f(x)$} can be released, if \bl{$f$} is insensitive to
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   423
individual entries  \bl{$x_1, \ldots, x_n$}\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   424
\item Intuition: whatever is learned from the dataset would be learned regardless of whether
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   425
\bl{$x_i$} participates\bigskip\pause 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   426
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   427
\item Noised needed in order to prevent queries:\\ Christian's salary $=$ 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   428
\begin{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   429
\bl{\large$\Sigma$} all staff $-$  \bl{\large$\Sigma$} all staff $\backslash$ Christian
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   430
\end{center} 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   431
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   432
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   433
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   434
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   435
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   436
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   437
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   438
\begin{frame}[c]
141
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   439
\frametitle{Example}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   440
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   441
\begin{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   442
\begin{tabular}{l|l}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   443
Name	 & Has the disease?\\\hline
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   444
Alice          & yes\\ 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   445
Bob     	 & no\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   446
Charlie	 & yes\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   447
Eve	         & no\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   448
Chandler	 & yes\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   449
\end{tabular}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   450
\end{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   451
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   452
How many people have a disease?
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   453
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   454
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   455
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   456
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   457
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   458
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   459
\begin{frame}[c]
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   460
\frametitle{Adding Noise}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   461
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   462
Adding noise is not as trivial as one would wish:
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   463
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   464
\begin{itemize}
141
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   465
\item If I ask how many of three have a disease and get a result
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   466
as follows 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   467
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   468
\begin{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   469
\begin{tabular}{l|c}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   470
Alice & yes\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   471
Bob & no\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   472
Charlie & yes\\
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   473
\end{tabular}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   474
\end{center}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   475
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   476
then I have to add a noise of \bl{$1$}. So answers would be in the
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   477
range of \bl{$1$} to \bl{$3$}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   478
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   479
\bigskip
141
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 140
diff changeset
   480
\item But if I ask five questions for all the dataset (has the disease, is male, below 30, \ldots),
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   481
then one individual can change the dataset by \bl{$5$}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   482
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   483
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   484
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   485
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   486
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   487
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   488
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   489
\begin{frame}[t]
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   490
\frametitle{\begin{tabular}{@{}c@{}}Tor (private web browsing)\end{tabular}}
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   491
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   492
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   493
\item initially developed by US Navy Labs, but then opened up to the world 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   494
\item network of proxy nodes
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   495
\item a Tor client establishes a ``random'' path to the destination server (you cannot trace back where the information came from)\bigskip\pause
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   496
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   497
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   498
\only<2>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   499
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   500
\item malicious exit node attack: someone set up 5 Tor exit nodes and monitored the traffic:
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   501
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   502
\item a number of logons and passwords used by embassies (Usbekistan `s1e7u0l7c', while
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   503
Tunesia `Tunesia' and India `1234')
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   504
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   505
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   506
\only<3>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   507
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   508
\item bad apple attack: if you have one insecure application, your IP can be tracked through Tor
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   509
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   510
\item background: 40\% of traffic on Tor is generated by BitTorrent
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   511
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   512
\end{itemize}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   513
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   514
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   515
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   516
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   517
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   518
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   519
\mode<presentation>{
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   520
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   521
\frametitle{Tor Nodes}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   522
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   523
Dan Egerstad wrote:\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   524
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   525
\it ``If you actually look in to where these Tor nodes are hosted and how big they are, some of these nodes cost thousands of dollars each month just to host because they're using lots of bandwidth, they're heavy-duty servers and so on. Who would pay for this and be anonymous?" 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   526
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   527
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   528
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   529
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   530
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   531
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   532
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   533
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   534
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   535
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   536
\mode<presentation>{
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   537
\begin{frame}[t]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   538
\frametitle{\begin{tabular}{@{}c@{}}Skype\end{tabular}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   539
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   540
\begin{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   541
\item Skype used to be known as a secure online communication (encryption cannot be disabled), 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   542
but \ldots\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   543
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   544
\item it is impossible to verify whether crypto algorithms are correctly used, or whether  there are backdoors.\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   545
 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   546
\item recently someone found out that you can reset the password of somebody else's
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   547
account, only knowing their email address (needed to suspended the password reset feature temporarily)
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   548
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   549
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   550
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   551
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   552
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   553
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   554
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   555
     
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   556
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   557
\mode<presentation>{
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   558
\begin{frame}[c]
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   559
\frametitle{\begin{tabular}{@{}c@{}}Take Home Point\end{tabular}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   560
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   561
According to Ross Anderson: \bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   562
\begin{itemize}
142
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   563
\item Creating large databases of sensitive personal information is intrinsically 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   564
hazardous (NHS)\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   565
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 141
diff changeset
   566
138
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   567
\item Privacy in a big hospital is just about doable.\medskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   568
\item How do you enforce privacy  in something as big as Google
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   569
or complex as Facebook? No body knows.\bigskip
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   570
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   571
Similarly, big databases imposed by government
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   572
\end{itemize}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   573
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   574
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   575
\end{frame}}
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   576
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%% 
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 90
diff changeset
   577
77
56dbc339ec87 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 76
diff changeset
   578
76
dde58256fc35 updated
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents: 75
diff changeset
   579
\end{document}
75
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   580
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   581
%%% Local Variables:  
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   582
%%% mode: latex
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   583
%%% TeX-master: t
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   584
%%% End: 
df7cf3d07bd8 added slides
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
diff changeset
   585