APP-CEP: Adaptive Pattern-Level Privacy Protection in Complex Event Processing Systems

Majid Lotfian Delouee, Victoria Degeler, Peter Amthor, Boris Koldehofe

2024

Abstract

Although privacy-preserving mechanisms endeavor to safeguard sensitive information at the attribute level, detected event patterns can still disclose privacy-sensitive knowledge in distributed complex event processing systems (DCEP). Events might not be inherently sensitive, but their aggregation into a pattern could still breach privacy. In this paper, we study in the context of APP-CEP the problem of integrating pattern-level privacy in event-based systems by selective assignment of obfuscation techniques to conceal private information. Compared to state-of-the-art techniques, we seek to enforce privacy independent of the actual events in streams. To support this, we acquire queries and privacy requirements using CEP-like patterns. The protection of privacy is accomplished through generating pattern dependency graphs, leading to dynamically appointing those techniques that have no consequences on detecting other sensitive patterns, as well as non-sensitive patterns required to provide acceptable Quality of Service. Besides, we model the knowledge that might be possessed by potential adversaries to violate privacy and its impacts on the obfuscation procedure. We assessed the performance of APP-CEP in a real-world scenario involving an online retailer’s transactions. Our evaluation results demonstrate that APP-CEP successfully provides a privacy-utility trade-off. Modeling the background knowledge also effectively prevents adversaries from realizing the modifications in the input streams.

Download


Paper Citation


in Harvard Style

Lotfian Delouee M., Degeler V., Amthor P. and Koldehofe B. (2024). APP-CEP: Adaptive Pattern-Level Privacy Protection in Complex Event Processing Systems. In Proceedings of the 10th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP; ISBN 978-989-758-683-5, SciTePress, pages 486-497. DOI: 10.5220/0012358700003648


in Bibtex Style

@conference{icissp24,
author={Majid Lotfian Delouee and Victoria Degeler and Peter Amthor and Boris Koldehofe},
title={APP-CEP: Adaptive Pattern-Level Privacy Protection in Complex Event Processing Systems},
booktitle={Proceedings of the 10th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP},
year={2024},
pages={486-497},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0012358700003648},
isbn={978-989-758-683-5},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 10th International Conference on Information Systems Security and Privacy - Volume 1: ICISSP
TI - APP-CEP: Adaptive Pattern-Level Privacy Protection in Complex Event Processing Systems
SN - 978-989-758-683-5
AU - Lotfian Delouee M.
AU - Degeler V.
AU - Amthor P.
AU - Koldehofe B.
PY - 2024
SP - 486
EP - 497
DO - 10.5220/0012358700003648
PB - SciTePress