Your browser doesn't support javascript.
Fundamental privacy rights in a pandemic state.
Carvalho, Tânia; Faria, Pedro; Antunes, Luís; Moniz, Nuno.
  • Carvalho T; Department of Computer Science, Faculty of Sciences, University of Porto, Porto, Portugal.
  • Faria P; TekPrivacy, Porto, Portugal.
  • Antunes L; Department of Computer Science, Faculty of Sciences, University of Porto, Porto, Portugal.
  • Moniz N; Department of Computer Science, Faculty of Sciences, University of Porto, Porto, Portugal.
PLoS One ; 16(6): e0252169, 2021.
Article in English | MEDLINE | ID: covidwho-1256037
ABSTRACT
Faced with the emergence of the Covid-19 pandemic, and to better understand and contain the disease's spread, health organisations increased the collaboration with other organisations sharing health data with data scientists and researchers. Data analysis assists such organisations in providing information that could help in decision-making processes. For this purpose, both national and regional health authorities provided health data for further processing and analysis. Shared data must comply with existing data protection and privacy regulations. Therefore, a robust de-identification procedure must be used, and a re-identification risk analysis should also be performed. De-identified data embodies state-of-the-art approaches in Data Protection by Design and Default because it requires the protection of direct and indirect identifiers (not just direct). This article highlights the importance of assessing re-identification risk before data disclosure by analysing a data set of individuals infected by Covid-19 that was made available for research purposes. We stress that it is highly important to make this data available for research purposes and that this process should be based on the state of the art methods in Data Protection by Design and by Default. Our main goal is to consider different re-identification risk analysis scenarios since the information on the intruder side is unknown. Our conclusions show that there is a risk of identity disclosure for all of the studied scenarios. For one, in particular, we proceed to an example of a re-identification attack. The outcome of such an attack reveals that it is possible to identify individuals with no much effort.
Subject(s)

Full text: Available Collection: International databases Database: MEDLINE Main subject: Confidentiality / Pandemics / COVID-19 Type of study: Prognostic study / Randomized controlled trials Limits: Humans Language: English Journal: PLoS One Journal subject: Science / Medicine Year: 2021 Document Type: Article Affiliation country: Journal.pone.0252169

Similar

MEDLINE

...
LILACS

LIS


Full text: Available Collection: International databases Database: MEDLINE Main subject: Confidentiality / Pandemics / COVID-19 Type of study: Prognostic study / Randomized controlled trials Limits: Humans Language: English Journal: PLoS One Journal subject: Science / Medicine Year: 2021 Document Type: Article Affiliation country: Journal.pone.0252169