Formal specification and verification of user-centric privacy policies for ubiquitous systems

Rezvan Joshaghani, Elena Sherman, Stacy Black, Hoda Mehrpouyan

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

1 Scopus citations

Abstract

As our society has become more information oriented, each individual is expressed, defined, and impacted by information and information technology. While valuable, the current state-of-the-art mostly are designed to protect the enterprise/ organizational privacy requirements and leave the main actor, i.e., the user, uninvolved or with the limited ability to have control over his/her information sharing practices. In order to overcome these limitations, algorithms and tools that provide a user-centric privacy management system to individuals with different privacy concerns are required to take into the consideration the dynamic nature of privacy policies which are constantly changing based on the information sharing context and environmental variables. This paper extends the concept of contextual integrity to provide mathematical models and algorithms that enables the creations and management of privacy norms for individual users. The extension includes the augmentation of environmental variables, i.e. time, date, etc. as part of the privacy norms, while introducing an abstraction and a partial relation over information attributes. Further, a formal verification technique is proposed to ensure privacy norms are enforced for each information sharing action.

Original languageAmerican English
Title of host publicationProceedings of the 23rd International Database Applications and Engineering Symposium, IDEAS 2019
EditorsBipin C. Desai
ISBN (Electronic)9781450362498
DOIs
StatePublished - 10 Jun 2019
Event23rd International Database Applications and Engineering Symposium, IDEAS 2019 - Athens, Greece
Duration: 10 Jun 201912 Jun 2019

Publication series

NameACM International Conference Proceeding Series

Conference

Conference23rd International Database Applications and Engineering Symposium, IDEAS 2019
Country/TerritoryGreece
CityAthens
Period10/06/1912/06/19

Keywords

  • Formal Methods
  • Privacy
  • User-Centric Policies

EGS Disciplines

  • Computer Sciences

Fingerprint

Dive into the research topics of 'Formal specification and verification of user-centric privacy policies for ubiquitous systems'. Together they form a unique fingerprint.

Cite this