Back to the Drawing Board: Revisiting the Design of Optimal Location Privacy-preserving Mechanisms
Simon Oya, Carmela Troncoso, Fernando Pérez-González
Abstract
In the last years we have witnessed the appearance of a variety of strategies to design optimal location privacy-preserving mechanisms, in terms of maximizing the adversary's expected error with respect to the users' whereabouts. In this work, we take a closer look at the defenses created by these strategies and show that, even though they are indeed optimal in terms of adversary's correctness, not all of them offer the same protection when looking at other dimensions of privacy. To avoid "bad" choices, we argue that the search for optimal mechanisms must be guided by complementary criteria. We provide two example auxiliary metrics that help in this regard: the conditional entropy, that captures an information-theoretic aspect of the problem; and the worst-case quality loss, that ensures that the output of the mechanism always provides a minimum utility to the users. We describe a new mechanism that maximizes the conditional entropy and is optimal in terms of average adversary error, and compare its performance with previously proposed optimal mechanisms using two real datasets. Our empirical results confirm that no mechanism fares well on every privacy criteria simultaneously, making apparent the need for considering multiple privacy dimensions to have a good understanding of the privacy protection a mechanism provides.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 19e532cf-473e-49c8-9fca-551d65e1c378Cited by top-tier papers8
- MemGuard: Defending against Black-Box Membership Inference Attacks via Adversarial ExamplesJinyuan Jia, Ahmed Salem, Michael Backes, Yang Zhang et al.CCS 2019 · 464 citations
- Utility-Optimized Local Differential Privacy Mechanisms for Distribution EstimationTakao Murakami, Yusuke KawamotoUSENIX Security 2019 · 111 citations
- A Billion Open Interfaces for Eve and Mallory: MitM, DoS, and Tracking Attacks on iOS and macOS Through Apple Wireless Direct LinkMilan Stute, Sashank Narain, Alex Mariotto, Alexander Heinrich et al.USENIX Security 2019 · 59 citations
- De-anonymization of Mobility Trajectories: Dissecting the Gaps between Theory and PracticeHuandong Wang, Chen Gao, Yong Li, Gang Wang et al.NDSS 2018 · 39 citations
- F-BLEAU: Fast Black-Box Leakage EstimationGiovanni Cherubin, Konstantinos Chatzikokolakis, Catuscia PalamidessiS&P 2019 · 38 citations
Related papers
- Dynamic Differential Location Privacy with Personalized Error BoundsLei Yu, Ling Liu, Calton PuNDSS 2017 · 100 citations
- The Laplace Mechanism has optimal utility for differential privacy over continuous queriesNatasha Fernandes, Annabelle McIver, Carroll MorganLICS 2021 · 23 citations
- Synthesizing Plausible Privacy-Preserving Location TracesVincent Bindschaedler, Reza ShokriS&P 2016 · 193 citations
- Enhancing Local Differential Privacy Accuracy by Exploiting Inherent UncertaintyPeng Tang, Xiya Shao, Rui Chen, Ning Wang et al.SIGMOD 2026
- ProBE: Proportioning Privacy Budget for Complex Exploratory Decision SupportNada Lahjouji, Sameera Ghayyur, Xi He, Sharad MehrotraCCS 2024 · 2 citations
