Internet Privacy
Acatech-StudiePublished 1 January 2012
Johannes Buchmann
Citations6
Generate an AI Snapshot to get a quick, structured summary of this paper.
Study Snapshot
ObjectiveStudy objective
MethodsResearch methodology
PopulationPopulation studied
Sample sizeSample sizes
OutcomesStudy outcomes here
ResultsStudy results comes here
LimitationsResearch study limitations comes here
A concise AI-generated summary of the paper will appear here once you click Generate AI Snapshot.
Abstract
Das Internet ist eine der bedeutendsten technologischen Errungenschaften der Geschichte. Es erlaubt Menschen in aller Welt Zugang zu umfassenden Informationen, unterstützt die weltweite Kommunikation
The Presentation of Self in Everyday Life
17,709 Citations2023Erving Goffman
Communications of the ACMA method for obtaining digital signatures and public-key cryptosystems
13,083 Citations1978Ronald L. Rivest, Adi Shamir +1 more
An encryption method is presented with the novel property that publicly revealing an encryption key does not thereby reveal the corresponding decryption key, soriers or other secure means are not needed to transmit keys.
Choice Reviews OnlineHandbook of applied cryptography
10,469 Citations1997Menezes, Alfred J., Oorschot, Paul C. van +1 more
IEEE Transactions on Knowledge and Data EngineeringToward the next generation of recommender systems: a survey of the state-of-the-art and possible extensions
10,115 Citations2005Gediminas Adomavičius, Alexander Tuzhilin
This paper presents an overview of the field of recommender systems and describes the current generation of recommendation methods that are usually classified into the following three main categories: content-based, collaborative, and hybrid recommendation approaches.
ComputerRole-based access control models
5,757 Citations1996Ravi Sandhu, Edward J. Coyne +2 more
Why RBAC is receiving renewed attention as a method of security administration and review is explained, a framework of four reference models developed to better understandRBAC is described, and the use of RBAC to manage itself is discussed.
Above the Clouds: A Berkeley View of Cloud Computing
5,742 Citations2009Michael Armbrust, Armando Fox +9 more
This work focuses on SaaS Providers (Cloud Users) and Cloud Providers, which have received less attention than SAAS Users, and uses the term Private Cloud to refer to internal datacenters of a business or other organization, not made available to the general public.
Big data: The next frontier for innovation, competition, and productivity
5,228 Citations2011James Manyika
The amount of data in the authors' world has been exploding, and analyzing large data sets will become a key basis of competition, underpinning new waves of productivity growth, innovation, and consumer surplus, according to research by MGI and McKinsey.
NatureDetecting influenza epidemics using search engine query data
4,406 Citations2008Jeremy Ginsberg, Matthew H. Mohebbi +4 more
A method of analysing large numbers of Google search queries to track influenza-like illness in a population and accurately estimate the current level of weekly influenza activity in each region of the United States with a reporting lag of about one day is presented.
Communications of the ACMUntraceable electronic mail, return addresses, and digital pseudonyms
4,260 Citations1981David Chaum
A technique based on public key cryptography is presented that allows an electronic mail system to hide who a participant communicates with as well as the content of the communication - in spite of an unsecured underlying telecommunication system.
Tor: The Second-Generation Onion Router
4,031 Citations2004Roger Dingledine, Nick Mathewson +1 more
This second-generation Onion Routing system addresses limitations in the original design by adding perfect forward secrecy, congestion control, directory servers, integrity checking, configurable exit policies, and a practical design for location-hidden services via rendezvous points.
Cyber Physical Systems: Design Challenges
3,415 Citations2008Edward A. Lee
It is concluded that it will not be sufficient to improve design processes, raise the level of abstraction, or verify designs that are built on today's abstractions to realize the full potential of cyber-Physical Systems.
Protocols for secure computations
3,014 Citations1982Andrew Chi-Chih Yao
The Design of Rijndael AES - The Advanced Encryption Standard
2,912 Citations2002Joan Daemen, Vincent Rijmen
This volume is the authoritative guide to the Rijndael algorithm and AES and professionals, researchers, and students active or interested in data encryption will find it a valuable source of information and reference.
L-diversity: privacy beyond k-anonymity
2,376 Citations2006Ashwin Machanavajjhala, Johannes Gehrke +2 more
This paper shows with two simple attacks that a \kappa-anonymized dataset has some subtle, but severe privacy problems, and proposes a novel and powerful privacy definition called \ell-diversity, which is practical and can be implemented efficiently.
Proceedings - IEEE Symposium on Security and Privacy/Proceedings of the ... IEEE Symposium on Security and PrivacyRobust De-anonymization of Large Sparse Datasets
2,298 Citations2008Arvind Narayanan, Vitaly Shmatikov
This work applies the de-anonymization methodology to the Netflix Prize dataset, which contains anonymous movie ratings of 500,000 subscribers of Netflix, the world's largest online movie rental service, and demonstrates that an adversary who knows only a little bit about an individual subscriber can easily identify this subscriber's record in the dataset.
Lecture notes in computer scienceImagined Communities: Awareness, Information Sharing, and Privacy on the Facebook
1,871 Citations2006Alessandro Acquisti, Ralph Gross
It is found that an individual's privacy concerns are only a weak predictor of his membership to the Facebook, and also privacy concerned individuals join the network and reveal great amounts of personal information.
Analysis of recommendation algorithms for e-commerce
1,835 Citations2000Badrul Sarwar, George Karypis +2 more
This paper investigates several te hniques for analyzing large-s ale pur hase and preferen e data for the purpose of producing useful re ommendations to ustomers and devise and apply their ombinations on the authors' data sets to ompare for re Ommendation quality and performan e.
Organization ScienceInformation Privacy Concerns, Procedural Fairness, and Impersonal Trust: An Empirical Investigation
1,820 Citations1999Mary J. Culnan, Pamela K. Armstrong
The hypothesis that organizations can address privacy concerns and gain business advantage through customer retention by observing procedural fairness was supported as it found that when customers are explicitly told that fair information practices are employed, privacy concerns do not distinguish consumers who are willing to be profiled from those who are unwilling to have their personal information used in this way.
Lecture notes in computer scienceA Public Key Cryptosystem and a Signature Scheme Based on Discrete Logarithms
1,576 Citations2007Taher ElGamal
arXiv (Cornell University)Empirical Analysis of Predictive Algorithms for Collaborative Filtering
1,507 Citations2013John S. Breese, David Heckerman +1 more
Several algorithms designed for collaborative filtering or recommender systems are described, including techniques based on correlation coefficients, vector-based similarity calculations, and statistical Bayesian methods, to compare the predictive accuracy of the various methods in a set of representative problem domains.
IRE Transactions on Communications SystemsOSI Reference Model--The ISO Model of Architecture for Open Systems Interconnection
1,463 Citations1980Horst Zimmermann
This paper presents the model of architecture for Open Systems Interconnection developed by SC16, and some indications are also given on the initial set of protocols which will-likely be developed in this OSI Reference Model.
IEEE Communications MagazineAccess control: principle and practice
1,266 Citations1994Ravi Sandhu, Pierangela Samarati
The access matrix model is reviewed and different approaches to implementing the access matrix in practical systems are described, followed with a discussion of access control policies commonly found in current systems, and a brief consideration ofAccess control administration.
Web mining: information and pattern discovery on the World Wide Web
1,170 Citations2002Robert Cooley, Bamshad Mobasher +1 more
This paper defines Web mining and presents an overview of the various research issues, techniques, and development efforts, and briefly describes WEBMINER, a system for Web usage mining, and concludes the paper by listing research issues.
IEEE Communications Surveys & TutorialsA survey of trust in internet applications
1,149 Citations2000Tyrone Grandison, Morris Sloman
This survey examines the various definitions of trust in the literature and provides a working definition of trust for Internet applications and some influential examples of trust management systems.
Why Johnny can't encrypt: a usability evaluation of PGP 5.0
1,094 Citations1999Alma Whitten, J. D. Tygar
It is concluded that PGP 5.0 is not usable enough to provide effective security for most computer users, despite its attractive graphical user interface, supporting the hypothesis that user interface design for effective security remains an open problem.
Information Technology and ManagementPersonalization versus Privacy: An Empirical Examination of the Online Consumer’s Dilemma
1,021 Citations2005Ramnath K. Chellappa, Raymond G. Sin
This research develops a parsimonious model to predict consumers’ usage of online personalization as a result of the tradeoff between their value for personalization and concern for privacy, and finds that a consumer’s intent to use personalization services is positively influenced by her trust in the vendor.
Controlling data in the cloud
802 Citations2009Richard Chow, Philippe Golle +5 more
It is argued that with continued research advances in trusted computing and computation-supporting encryption, life in the cloud can be advantageous from a business intelligence standpoint over the isolated alternative that is more common today.
Medical Entomology and ZoologyThe Panoptic Sort: A Political Economy Of Personal Information
776 Citations1993Oscar H. Gandy
SSRN Electronic JournalStrength in Numbers: How Does Data-Driven Decisionmaking Affect Firm Performance?
738 Citations2011Erik Brynjolfsson, Lorin M. Hitt +1 more
Evidence that the effect of DDD on the productivity do not appear to be due to reverse causality is found, providing some of the first large scale data on the direct connection between data-driven decision making and firm performance.
Journal of Computer SecurityThe economic cost of publicly announced information security breaches: empirical evidence from the stock market*
736 Citations2003Katherine Campbell, Lawrence A. Gordon +2 more
Stock market participants appear to discriminate across types of breaches when assessing their economic impact on affected firms, consistent with the argument that the economic consequences of information security breaches vary according to the nature of the underlying assets affected by the breach.
Lecture notes in computer scienceHow Unique Is Your Web Browser?
735 Citations2010Peter Eckersley
The degree to which modern web browsers are subject to "device fingerprinting" via the version and configuration information that they will transmit to websites upon request is investigated, and what countermeasures may be appropriate to prevent it is discussed.
A terminology for talking about privacy by data minimization: Anonymity, Unlinkability, Undetectability, Unobservability, Pseudonymity, and Identity Management
674 Citations2010Andreas Pfitzmann, Marit Hansen
Anonymity, unlinkability, linkability, undetectability, unobservability, pseudonymity, identifiability, identity, partial identity, digital identity and identity management are defined.
DSpace@MIT (Massachusetts Institute of Technology)The Revolutions Were Tweeted: Information Flows During the 2011 Tunisian and Egyptian Revolutions
601 Citations2011Gilad Lotan, Erhardt Graeff +4 more
The Revolutions Were Tweeted: Information Flows During the 2011 Tunisian and Egyptian Revolutions is published under the Creative Commons Attribution Non-commercial No Derivatives (by-nc-nd).
IEEE Communications MagazineSafebook: A privacy-preserving online social network leveraging on real-life trust
454 Citations2009Leucio Antonio Cutillo, Refik Molva +1 more
The suggested approach adopts a decentralized architecture relying on cooperation among a number of independent parties that are also the users of the online social network application to ensure users' privacy in the face of potential privacy violations by the provider.
TU/e Research Portal (Eindhoven University of Technology)Lest we remember: cold boot attacks on encryption keys
443 Citations2008J. Alex Halderman, Seth David Schoen +7 more
SSRN Electronic JournalSix Provocations for Big Data
417 Citations2011danah boyd, Kate Crawford
Given the rise of Big Data as both a phenomenon and a methodological persuasion, it is time to start critically interrogating this phenomenon, its assumptions, and its biases.
On the leakage of personally identifiable information via online social networks
372 Citations2009Balachander Krishnamurthy, Craig E. Wills
This research shows that it is possible for third-parties to link PII, which is leaked via OSNs, with user actions both within OSN sites and else-where on non-OSN sites.
SSRN Electronic JournalConsumer Surplus in the Digital Economy: Estimating the Value of Increased Product Variety at Online Booksellers
358 Citations2003Erik Brynjolfsson, Yu Jeffrey Hu +1 more
The analysis indicates that the increased product variety of online bookstores enhanced consumer welfare by $731 million to $1.03 billion in the year 2000, which is between 7 and 10 times as large as the consumer welfare gain from increased competition and lower prices in this market.
A Practical Attack to De-anonymize Social Network Users
341 Citations2010Gilbert Wondracek, Thorsten Holz +2 more
A novel de-anonymization attack is introduced that exploits group membership information that is available on social networking sites and shows that information about the group memberships of a user is sufficient to uniquely identify this person, or to significantly reduce the set of possible candidates.
Guide to protecting the confidentiality of Personally Identifiable Information (PII)
328 Citations2010Erika McCallister, T Grance +1 more
The importance of protecting the confidentiality of PII in the context of information security and its relationship to privacy is explained using the the Fair Information Practices, which are the principles underlying most privacy laws and privacy best practices.
Current SociologyTowards a Sociology of Information Technology
324 Citations2002Saskia Sassen
Three analytic issues for sociology are examined: the embeddedness of the new technologies, the complex interactions between the digital and the material world, and the mediating cultures that organize the relation between these technologies and users.
Research Showcase @ Carnegie Mellon University (Carnegie Mellon University)Privacy indexes : a survey of Westin's studies
317 Citations2018Ponnurangam Kumaraguru, Lorrie Faith Cranor
The methodology used each year to calculate the privacy indexes is reported on and some conclusions about which indexes can be used to infer privacy trends are drawn.
SSRN Electronic JournalAmericans Reject Tailored Advertising and Three Activities that Enable It
314 Citations2009Joseph Turow, Jennifer King +3 more
Lecture notes in computer scienceData Mining for Web Personalization
311 Citations2007Bamshad Mobasher
An overview of Web personalization process viewed as an application of data mining requiring support for all the phases of a typical data mining cycle, including data collection and pre-processing, pattern discovery and evaluation, and finally applying the discovered knowledge in real-time to mediate between the user and the Web.
"You Might Also Like:" Privacy Risks of Collaborative Filtering
298 Citations2011Joseph A. Calandrino, Ann Kilzer +3 more
This paper develops algorithms which take a moderate amount of auxiliary information about a customer and infer this customer's transactions from temporal changes in the public outputs of a recommender system.
QUT ePrints (Queensland University of Technology)A Survey of Trust and Reputation Systems for Online Service Provision
295 Citations2007Audun Jøsang, Roslan Ismail +1 more
Characterizing privacy in online social networks
294 Citations2008Balachander Krishnamurthy, Craig E. Wills
This study examines popular OSNs from a viewpoint of characterizing potential privacy leakage, and identifies what bits of information are currently being shared, how widely, and what users can do to prevent such sharing.
Lecture notes in computer scienceShining Light in Dark Places: Understanding the Tor Network
290 Citations2008Damon McCoy, Kevin Bauer +3 more
A survey of how Tor is being misused, both by clients and by Tor router operators is provided, and a method for detecting exit router logging is developed.
Journal of Privacy and ConfidentialityDifferential Privacy for Statistics: What we Know and What we Want to Learn
275 Citations2010Cynthia Dwork, Adam Smith
A statistical database, in which the trusted and trustworthy curator gathers sensitive information from a large number of respondents (the sample), with the goal of learning and releasing to the public statistical facts about the underlying population.
Lecture notes in computer scienceIntegrating Web Usage and Content Mining for More Effective Personalization
258 Citations2000Bamshad Mobasher, Honghua Dai +3 more
This paper presents a framework for Web usage mining, distinguishing between the offine tasks of data preparation and mining, and the online process of customizing Web pages based on a user's active session, and describes effective techniques based on clustering to obtain a uniform representation for both site usage and site content profiles.
Human-Computer InteractionCollective Information Practice: Exploring Privacy and Security as Social and Cultural Phenomena
254 Citations2006Paul Dourish, Ken Anderson
It is argued for a move away from narrow views of privacy and security and toward a holistic view of situated and collective information practice.
IEEE Security & PrivacyNudging Privacy: The Behavioral Economics of Personal Information
248 Citations2009Alessandro Acquisti
Traditional economic models have made overly restrictive assumptions about the stability and nature of individual privacy preferences, so approaches drawing on existing research in behavioral economics and psychology can offer complementary tools for understanding privacy decision making.
Journal of Business and PsychologyFriend or Foe? The Promise and Pitfalls of Using Social Networking Sites for HR Decisions
247 Citations2011H. Kristl Davison, Catherine C. Maraist +1 more
Issues associated with using social networking websites for recruiting, staffing/selection, and discipline/termination are described, and recommendations for future research studies in this area are provided.
Personalized social search based on the user's social network
239 Citations2009David Carmel, Naama Zwerdling +7 more
The main results show that both in the off-line study and in the user survey social network based personalization significantly outperforms non-personalized social search.
Choice Reviews OnlineNothing to hide: the false tradeoff between privacy and security
237 Citations2012
Technische Universität Dortmund Eldorado (Technische Universität Dortmund)Kommentar zum Grundgesetz
225 Citations2005Hermann Mangoldt
Lecture notes in computer scienceResearch Issues in Web Data Mining
207 Citations1999Sanjay Madria, Sourav S. Bhowmick +2 more
This paper focuses on web data mining research in context of the authors' web warehousing project called WHOWEDA (Warehouse of Web Data), and categorized web datamining into threes areas; web content mining, web structure mining and web usage mining.
SSRN Electronic JournalAdnostic: Privacy Preserving Targeted Advertising.
197 Citations2010Vincent Toubiana, Arvind Narayanan +3 more
This paper proposes a practical architecture that enables targeting without compromising user privacy, and implements the core targeting system as a Firefox extension and reports on its effectiveness.
An empirical study of privacy-violating information flows in JavaScript web applications
172 Citations2010Dongseok Jang, Ranjit Jhala +2 more
An expressive, fine-grained information flow policy language is designed that allows to specify and detect different kinds of privacy-violating flows in JavaScript code, and a new rewriting-based JavaScript information flow engine is implemented within the Chrome browser to mitigate the privacy threat from covert flows in browsers.
Personal and Ubiquitous ComputingCapturing location-privacy preferences: quantifying accuracy and user-burden tradeoffs
168 Citations2010Michael Benisch, Patrick Gage Kelley +2 more
One practical implication of the results is that today’s location-sharing applications may have failed to gain much traction due to their limited privacy settings, as they appear to be ineffective at capturing the preferences revealed by the study.
Communications of the ACMPersonalization in privacy-aware highly dynamic systems
159 Citations2006Stefan Sackmann, Jens Strüker +1 more
This research presents novel ways to personalize the relationship with customers without sacrificing their privacy through the use of artificial intelligence, machine learning and other technologies.
A fresh look at the reliability of long-term digital storage
159 Citations2006Mary Baker, Mehul A. Shah +5 more
This model shows that the most important strategies for increasing the reliability of long-term storage are detecting latent faults quickly, automating fault repair to make it cheaper and faster, and increasing the independence of data replicas.
Web Analytics 2.0: The Art of Online Accountability and Science of Customer Centricity
155 Citations2009Avinash Kaushik
Web Analytics 2.0 presents a new framework that will permanently change how you think about analytics, providing specific recommendations for creating an actionable strategy, applying analytical techniques correctly, solving challenges such as measuring social media and multichannel campaigns, and employing tactics for truly listening to your customers.
The Failure of Online Social Network Privacy Settings
152 Citations2011Michelle Madejski, Maritza Johnson +1 more
The current approach to privacy settings is fundamentally flawed and cannot be fixed; a fundamentally different approach is needed.
Ethics and Information TechnologyPrivacy. An Intercultural Perspective
147 Citations2005Rafael Capurro
The paper addresses the question of privacy in cyberspace and mass media and an analysis of the Western concept of informational privacy is presented, related to the Japanese concepts of Ohyake and Watakusi.
MetaphilosophyPrivacy and the Computer: Why We Need Privacy in the Information Society
147 Citations1997Lucas D. Introna
It is argued that there is something fundamental in the notion of privacy and that due to the profoundness of the notion it merits extraordinary measures of protection and overt support and that accountability and transparency can only be meaningful if encapsulated in the concept of privacy.
Lecture notes in computer sciencePrivacy-Enhanced Web Personalization
144 Citations2007Alfred Kobsa
This article analyzes the tension between personalization and privacy, and presents approaches to reconcile the both.
Information and Software TechnologyTowards the development of privacy-aware systems
135 Citations2008Paolo Guarda, Nicola Zannone
The objective of this work is to provide a reference base for the development of methodologies tailored to design privacy-aware systems to be compliant with data protection regulations.
Use of a P3P user agent by early adopters
125 Citations2002Lorrie Faith Cranor, Manjula Arjula +1 more
It is found that a large proportion of AT&T Privacy Bird users began reading privacy policies more often and being more proactive about protecting their privacy as a result of using this software.
Privacy Violations Using Microtargeted Ads: A Case Study
120 Citations2010Aleksandra Korolova
A new class of attacks that exploit advertising systems offering micro targeting capabilities in order to breach user privacy are proposed and experimental evidence of several novel approaches to exploiting the advertising system inorder to obtain private user information is provided.
Who Controls the off Switch?
118 Citations2010Ross Anderson, Shailendra Fuloria
The combination of commands that will cause meters to interrupt the supply, of applets and software upgrades that run in the meters, and of cryptographic keys that are used to authenticate these commands and software changes, create a new strategic vulnerability, which is discussed in this paper.
IEEE Transactions on Knowledge and Data EngineeringPublishing Search Logs—A Comparative Study of Privacy Guarantees
114 Citations2011Michaela Götz, Ashwin Machanavajjhala +3 more
This paper analyzes algorithms for publishing frequent keywords, queries, and clicks of a search log and proposes an algorithm ZEALOUS, which yields comparable utility to k-anonymity while at the same time achieving much stronger privacy guarantees.
Information Systems ResearchConsumer Surplus in Online Auctions
113 Citations2008Ravi Bapna, Wolfgang Jank +1 more
It is found that eBay's auctions generate at at least $7.05 billion in total consumer surplus in the year 2003 and may generate up to $ 7.68 billion if the private value sealed-bid assumption does not hold.
SSRN Electronic JournalFlash Cookies and Privacy
112 Citations2009Ashkan Soltani, Shannon Canty +3 more
It is found that more than 50% of the sites in this sample are using flash cookies to store information about the user, and some are using it to 'respawn' or re-instantiate HTTP cookies deleted by the user.
Cybercasing the joint: on the privacy implications of geo-tagging
105 Citations2010Gerald Friedland, Robin Sommer
It is argued that the security and privacy community needs to shape the further development of geo-location technology for better protecting users from the consequences of using geo-tagged information to mount real-world attacks.
IEEE PotentialsPacket sniffing: a brief introduction
102 Citations2002Shahrukh Ansari, S. Rajeev +1 more
The technique behind packet sniffing on shared bus broadcast LANs is explained and a user can employ a number of techniques to detect sniffers on the network and protect the data from sniffers.
PGP source code and internals
97 Citations1995Philip Zimmermann
This book contains a formatted vesion of the complete source code for the latest release of PGP, which is particularly well-suited to the needs of computer-mediated communications.
Lecture notes in computer sciencePersonalization in E-Commerce Applications
96 Citations2007Anna Goy, Liliana Ardissono +1 more
The aspects of personalization, taken as a general technique for the customization of services to the user, which have been successfully employed in e-commerce Web sites are described.
Usability meets security - the Identity-Manager as your personal security assistant for the Internet
91 Citations2002Uwe Jendricke, Daniela Gerd tom Markotten
A new concept to improve the usability of security mechanisms, introducing an extended classification of protection goals is presented, which is the basis of the Identity-Manager, a new security tool presented in this paper.
IEEE Internet ComputingModeling Unintended Personal-Information Leakage from Multiple Online Social Networks
90 Citations2011Danesh Irani, Steve Webb +2 more
Experiments show the measure's usefulness in quantifying information leakage from publicly crawled information and suggest ways of better protecting privacy and reducing information leakage in the social Web.
Social Science InformationThe generalized sousveillance society
85 Citations2010Jean‐Gabriel Ganascia
IEEE Security & PrivacyA Taxonomy of Social Networking Data
85 Citations2010Bruce Schneier
Bruce Schneier presents a taxonomy of social networking data- as more countries contemplate regulation on social networking sites and user data, it will be important to keep this taxonomy in mind.
ACM Transactions on Knowledge Discovery from DataCan the Utility of Anonymized Data be Used for Privacy Breaches?
84 Citations2011Raymond Chi-Wing Wong, Ada Wai-Chee Fu +3 more
The goal of this article is to raise a fundamental issue regarding the privacy exposure of the approaches using group based anonymization, and show that an attack is realistic in the privacy benchmark dataset under the traditional groupbased anonymization approach.
Universally composable signature, certification, and authentication
82 Citations2004Ran Canetti
Random House Business BooksFree : how today's smartest businesses profit by giving something for nothing
79 Citations2010Chris Anderson
Privacy leakage in mobile online social networks
77 Citations2010Balachander Krishnamurthy, Craig E. Wills
It is found that all mOSNs exhibit some leakage of private information to third parties, and novel concerns include combination of new features unique to mobile access with the leakage in OSNs that had been examined earlier.
Lecture notes in computer scienceMultiparty Authorization Framework for Data Sharing in Online Social Networks
75 Citations2011Hongxin Hu, Gail‐Joon Ahn
An access control model is formulated to capture the essence of multiparty authorization requirements and is demonstrated the applicability of the approach by implementing a proof-of-concept prototype hosted in Facebook.
IEEE Security & PrivacyUsage Control Enforcement: Present and Future
67 Citations2008Alexander Pretschner, Manuel Hilty +3 more
The authors explore the state of the art in usage control, which is about controlling the use of such data after it has been given away, and identify room for improvement.
Televisions, video privacy, and powerline electromagnetic interference
67 Citations2011Miro Enev, Sidhant Gupta +2 more
The power supplies of modern TVs produce discernible electromagnetic interference (EMI) signatures that are indicative of the video content being displayed, and these signatures are measured over time and across multiple instances of the same TV model.
Transparent Accountable Data Mining: New Strategies for Privacy Protection
66 Citations2006Daniel J. Weitzner, Harold Abelson +7 more
This paper presents a technology infrastructure -- the Policy Aware Web -- that supports transparent and accountable data use on the World Wide Web, and elements of a new legal and regulatory regime that supports privacy through provable accountability to usage rules rather than merely data access restrictions.
International Journal of Human-Computer InteractionAn Empirical Examination of the Effects of Web Personalization at Different Stages of Decision Making
64 Citations2005Shuk Ying Ho, Kar Yan Tam
It is established that the role of personalization agents changes at different stages of users' decision-making process, and when users are forming their consideration sets, the agents can play a role in helping users discover new products or generate demand for unfamiliar products.
The case for ubiquitous transport-level encryption
63 Citations2010Andrea Bittau, Michael Hamburg +3 more
Tcpcrypt is a TCP extension designed to make end-to-end encryption of TCP traffic the default, not the exception, and provides backwards compatibility with legacy TCP stacks and middle-boxes, and minimizes the cost of key negotiation on servers.
The impact of social navigation on privacy policy configuration
63 Citations2010Andrew Besmer, Jason Watson +1 more
The application of social navigation to access control policy configuration using an empirical between subjects study indicates that community information does impact user behavior, but only when the visual representation of the cue is sufficiently strong.
Privacy promises, access control, and privacy management. Enforcing privacy throughout an enterprise by extending access control
54 Citations2003Calvin Powers, Paul Ashley +1 more
A new approach towards enterprisewide enforcement of the privacy promises is described, which enables enterprises to publish clear privacy promises, to collect and manage user preferences and consent, and to enforce the privacy promised throughout the enterprise.
Information Security Technical ReportSocial networking and the risk to companies and institutions
53 Citations2010Marc Langheinrich, Günter Karjoth
Social networks open up new business opportunities for customer acquisition and retention, facilitate knowledge transfer within the company, and can positively influence work climate, but they can also quickly destroy a company image, thus significantly increasing company exposure to online break-ins.
IFIP advances in information and communication technologyA Survey on Transparency Tools for Enhancing Privacy
51 Citations2009Hans Hedbom
This paper provides a short survey on transparency tools for privacy purposes, defines the term transparency tools, argues why they are important and gives examples for transparency tools.
Communications of the ACMPerspectives for cryptographic long-term security
51 Citations2006Johannes Buchmann, Alexander May +1 more
Cryptographic long-term security is needed, but difficult to achieve, use flexible cryptographic tools, and have replacements ready.
Cryptkeeper: Improving security with encrypted RAM
49 Citations2010Peter A. Petérson
This work presents Cryptkeeper, a novel software-encrypted virtual memory manager that mitigates data exposure when used with a secure key-hiding mechanism, and enables the expression of new security policies for memory.
Human Systems ManagementPrivacy protection in electronic commerce – a theoretical framework
48 Citations2001Milena Head, Yufei Yuan
A theoretical framework for privacy protection in electronic commerce is provided that allows us to identify the key players and their interactions in the context of privacy violation and protection and helps to discover the responsibilities of the key Players and areas for further research.
Adverse selection in online "trust" certifications
46 Citations2009Benjamin Edelman
It is demonstrated that sites certified by the best-known authority, TRUSTe, are more than twice as likely to be untrustworthy as uncertified sites, and this difference remains statistically and economically significant when restricted to "complex" commercial sites.
…
