Risk-Aware Information Disclosure

被引:9
|
作者
Armando, Alessandro [1 ,2 ]
Bezzi, Michele [4 ]
Metoui, Nadia [2 ,3 ]
Sabetta, Antonino [4 ]
机构
[1] Univ Genoa, DIBRIS, Genoa, Italy
[2] FBK Irst, Secur & Trust Unit, Trento, Italy
[3] Univ Trento, DISI, Trento, Italy
[4] SAP Labs, Prod Secur Res, Sophia Antipolis, France
关键词
ACCESS-CONTROL;
D O I
10.1007/978-3-319-17016-9_17
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Risk-aware access control systems grant or deny access to resources based on some notion of risk. In this paper we propose a model that considers the risk of leaking privacy-critical information when querying, e.g., datasets containing personal information. While querying data-bases containing personal information it is current practice to assign all-or-nothing access to avoid the disclosure of sensitive information. Using our model, access-control decisions are based on the disclosure-risk associated with a data access request and, differently from existing models, we include adaptive anonymization operations as risk-mitigation methods. By applying these operations, a request that would otherwise be rejected, is permitted after reducing the risk associated with the returned dataset.
引用
收藏
页码:266 / 276
页数:11
相关论文
共 50 条
  • [21] Learning Disturbances Online for Risk-Aware Control: Risk-Aware Flight with Less Than One Minute of Data
    Akella, Prithvi
    Wei, Skylar X.
    Burdick, Joel W.
    Ames, Aaron D.
    LEARNING FOR DYNAMICS AND CONTROL CONFERENCE, VOL 211, 2023, 211
  • [22] Adaptive Modeling for Risk-Aware Decision Making
    Saisubramanian, Sandhya
    THIRTY-THIRD AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FIRST INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / NINTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2019, : 9896 - 9897
  • [23] RAP: Risk-Aware Prediction for Robust Planning
    Nishimura, Haruki
    Mercat, Jean
    Wulfe, Blake
    McAllister, Rowan
    Gaidon, Adrien
    CONFERENCE ON ROBOT LEARNING, VOL 205, 2022, 205 : 381 - 392
  • [24] RiskStructures: A design algebra for risk-aware machines
    Gleirscher, Mario
    Calinescu, Radu
    Woodcock, Jim
    FORMAL ASPECTS OF COMPUTING, 2021, 33 (4-5) : 763 - 802
  • [25] A Risk-Aware Approach to Digital Procurement Transformation
    Dudic, Zeljko
    Vrhovac, Vijoleta
    Vulanovic, Srdan
    Dakic, Dusanka
    Erdeji, Irma
    Perovic, Veselin
    SUSTAINABILITY, 2024, 16 (03)
  • [26] Dynamic Risk-Aware Routing for OSPF Networks
    Vidalenc, Bruno
    Noirie, Ludovic
    Ciavaglia, Laurent
    Renault, Eric
    2013 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2013), 2013, : 226 - 234
  • [27] Towards autonomic risk-aware security configuration
    Ahmed, Mohammad Salim
    Al-Shaer, Ehab
    Taibah, Mohamed Mahmoud
    Abedin, Muhammad
    Khan, Latifur
    2008 IEEE NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, VOLS 1 AND 2, 2008, : 722 - +
  • [28] DORA: Distributed Online Risk-Aware Explorer
    Vielfaure, David
    Arseneault, Samuel
    Lajoie, Pierre-Yves
    Beltrame, Giovanni
    2022 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION, ICRA 2022, 2022, : 6919 - 6926
  • [29] A Roadmap to Risk-Aware Business Process Management
    Jakoubi, Stefan
    Neubauer, Thomas
    Tjoa, Simon
    2009 IEEE ASIA-PACIFIC SERVICES COMPUTING CONFERENCE (APSCC 2009), 2009, : 19 - +
  • [30] Active Traversability Learning via Risk-Aware Information Gathering for Planetary Exploration Rovers
    Endo, Masafumi
    Ishigami, Genya
    IEEE ROBOTICS AND AUTOMATION LETTERS, 2022, 7 (04): : 11855 - 11862