Equitable privacy
公平的隐私
基本信息
- 批准号:EP/W025361/1
- 负责人:
- 金额:$ 129.56万
- 依托单位:
- 依托单位国家:英国
- 项目类别:Research Grant
- 财政年份:2022
- 资助国家:英国
- 起止时间:2022 至 无数据
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
Digital technologies are becoming pervasive in society, from online shopping and social interactions through to finance, banking, transportation. With a future vision of smart cities, driven by a real-time, data-driven, digital economy, privacy is paramount. It is critical to engendering trust in the digital fabric on which society relies and is enshrined as a fundamental human right in the Universal Declation of Human Rights and regulations such as GDPR. Significant efforts have been made -- end-to-end encryption, anonymous communication, privacy nutrition labels in iOS and Android -- to provide users with more agency in understanding, controlling and assuring the way their data and information is processed and shared.However, this ability to control, understand and assure is not equitably experienced across society. Examples include individuals from lower-income groups who have to share devices to access services that may include sensitive information or victims of intimate partner violence whereby an innocuous app (such as find my phone) or digital device (such as a smart doorbell) may be used to monitor their activities and who cannot use online reporting tools for fear of traceability. Such vulnerable and marginalised populations have specific privacy and information control needs and threat models whereby different types of privacy controls may serve as both protection mechanisms and attack vectors. These needs and requirements are not typically foregrounded to software developers. The challenge is compounded by the fact developers are neither privacy experts nor typically have the training, tools, support and guidance to design for the diverse privacy needs of marginalised and vulnerable groups.We argue that, for privacy to be of meaningful and equitable value in our pervasive digital economy, everyone must be able to easily control how they share personal information, understand with whom they are sharing it, and ensure that sharing is limited to the intended purpose.The project will work hand-in-hand with third sector organisations supporting such communities to develop:New methods: a threat modelling approach, supported by a set of threat catalogues, that enables different "modalities" of protection logic whereby one can switch attackers, contextualise the vulnerabilities and acknowledge different types of controls as both protection mechanisms and attack vectors.New digital tools: a privacy-in-use nutrition framework that promotes privacy-literacy in vulnerable and marginalised populations, identifies privacy concerns in-use and facilitates developer responses built through new application programming interfaces and evaluated through novel metrics supporting equitable privacy.New processes: co-created, stakeholder-led revisions to the AREA framework for Responsible Innovation to lend structure to the way in which individuals, teams, and organisations approach deep thinking about equitable digital futures.Our research will make the privacy needs of marginalised and vulnerable populations first-class considerations in designing and developing software applications and services to enable equitable privacy experiences. This, in turn, will enable universal privacy responses to work together and support particular responses to privacy issues experienced by vulnerable users.
数字技术在社会中变得越来越普遍,从网上购物和社交互动到金融,银行,交通。随着智能城市的未来愿景,由实时,数据驱动的数字经济驱动,隐私至关重要。这对于在社会所依赖的数字结构中建立信任至关重要,并在《世界人权宣言》和GDPR等法规中被视为一项基本人权。我们已经做出了巨大的努力--端到端加密、匿名通信、iOS和Android中的隐私营养标签--为用户提供更多的代理权,以理解、控制和确保他们的数据和信息被处理和共享的方式。然而,这种控制、理解和确保的能力并没有在整个社会得到公平的体验。例子包括来自低收入群体的个人,他们不得不共享设备以访问可能包含敏感信息的服务,或亲密伴侣暴力的受害者,其中无害的应用程序(如查找我的手机)或数字设备(如智能门铃)可用于监视他们的活动,以及由于担心可追溯性而无法使用在线报告工具的人。这些脆弱和边缘化的人群有特定的隐私和信息控制需求和威胁模型,不同类型的隐私控制可以作为保护机制和攻击载体。这些需求和要求通常不会被软件开发人员所关注。开发人员既不是隐私专家,也没有专门的培训、工具、支持和指导来设计满足边缘化群体和弱势群体的各种隐私需求,这一事实加剧了挑战。我们认为,为了让隐私在我们无处不在的数字经济中具有有意义和公平的价值,每个人都必须能够轻松控制他们如何分享个人信息,了解他们与谁分享信息,并确保共享仅限于预期目的。该项目将与支持这些社区的第三部门组织携手合作,开发:一种威胁建模方法,由一组威胁目录支持,使不同的“模式”的保护逻辑,从而可以切换攻击者,分析漏洞的背景,并将不同类型的控制措施视为保护机制和攻击媒介。新的数字化工具:一个使用中的隐私营养框架,促进弱势和边缘化群体的隐私扫盲,识别隐私问题-使用并促进开发人员通过新的应用程序编程接口构建的响应,并通过支持公平的新指标进行评估隐私。新流程:共同创建,由企业主主导的对责任创新区域框架的修订,为个人,团队和组织深入思考公平的数字未来提供结构。我们的研究将使边缘化和弱势群体的隐私需求成为设计和开发软件应用程序和服务的首要考虑因素,以实现公平的隐私体验。反过来,这将使普遍的隐私响应能够协同工作,并支持对易受攻击的用户所遇到的隐私问题的特定响应。
项目成果
期刊论文数量(2)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
ExD: Explainable Deletion
- DOI:10.1145/3633500.3633503
- 发表时间:2023-08
- 期刊:
- 影响因子:0
- 作者:K. Ramokapane;A. Rashid
- 通讯作者:K. Ramokapane;A. Rashid
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Awais Rashid其他文献
Automatic User Profiling in Darknet Markets: a Scalability Study
暗网市场中的自动用户分析:可扩展性研究
- DOI:
10.48550/arxiv.2203.13179 - 发表时间:
2022 - 期刊:
- 影响因子:0
- 作者:
Claudia Peersman;M. Edwards;Emma J. Williams;Awais Rashid - 通讯作者:
Awais Rashid
Towards Human-Centric Endpoint Security
迈向以人为本的端点安全
- DOI:
- 发表时间:
2023 - 期刊:
- 影响因子:0
- 作者:
Jenny Blessing;Partha Das Chowdhury;Maria Sameen;Ross J. Anderson;Joseph Gardiner;Awais Rashid - 通讯作者:
Awais Rashid
AspectJ code analysis and verification with GASR
- DOI:
10.1016/j.jss.2016.04.014 - 发表时间:
2016-07-01 - 期刊:
- 影响因子:
- 作者:
Johan Fabry;Coen De Roover;Carlos Noguera;Steffen Zschaler;Awais Rashid;Viviane Jonckers - 通讯作者:
Viviane Jonckers
Dark Patterns in Video Games: An Exploratory Study
电子游戏中的黑暗模式:一项探索性研究
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
Maria Sameen;Awais Rashid - 通讯作者:
Awais Rashid
Who will keep the lights on? Expertise and inclusion in cyber security visions of future energy systems
谁来让灯一直亮着?
- DOI:
10.1016/j.erss.2023.103327 - 发表时间:
2023 - 期刊:
- 影响因子:0
- 作者:
O. Michalec;Ben Shreeve;Awais Rashid - 通讯作者:
Awais Rashid
Awais Rashid的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Awais Rashid', 18)}}的其他基金
Securing Convergent Ultra-large Scale Infrastructures
确保融合超大规模基础设施的安全
- 批准号:
EP/Z531315/1 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
REPHRAIN: Research centre on Privacy, Harm Reduction and Adversarial Influence online
REPHRAIN:隐私、减少危害和对抗性影响在线研究中心
- 批准号:
EP/V011189/1 - 财政年份:2020
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
Why Johnny doesn't write secure software? Secure software development by the masses
为什么约翰尼不编写安全软件?
- 批准号:
EP/P011799/2 - 财政年份:2018
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
DYPOSIT: Dynamic Policies for Shared Cyber-Physical Infrastructures under Attack
DYPOSIT:针对受攻击的共享网络物理基础设施的动态策略
- 批准号:
EP/N021657/2 - 财政年份:2018
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
Why Johnny doesn't write secure software? Secure software development by the masses
为什么约翰尼不编写安全软件?
- 批准号:
EP/P011799/1 - 财政年份:2017
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
DYPOSIT: Dynamic Policies for Shared Cyber-Physical Infrastructures under Attack
DYPOSIT:针对受攻击的共享网络物理基础设施的动态策略
- 批准号:
EP/N021657/1 - 财政年份:2015
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
MUMBA: Multi-faceted Metrics for ICS Business Risk Analysis
MUMBA:ICS 业务风险分析的多方面指标
- 批准号:
EP/M002780/1 - 财政年份:2014
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
Academic Centre of Excellence in Cyber Security Research - Lancaster University
网络安全研究卓越学术中心 - 兰卡斯特大学
- 批准号:
EP/K003607/1 - 财政年份:2012
- 资助金额:
$ 129.56万 - 项目类别:
Research Grant
Industrial CASE Account - Lancaster 2010
工业案例帐户 - 兰开斯特 2010
- 批准号:
EP/I501487/1 - 财政年份:2010
- 资助金额:
$ 129.56万 - 项目类别:
Training Grant
相似国自然基金
面向MANET的密钥管理关键技术研究
- 批准号:61173188
- 批准年份:2011
- 资助金额:52.0 万元
- 项目类别:面上项目
相似海外基金
Evolving privacy and utility in data storage and publishing
数据存储和发布中不断发展的隐私和实用性
- 批准号:
DE240100165 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Discovery Early Career Researcher Award
CAREER: Verifying Security and Privacy of Distributed Applications
职业:验证分布式应用程序的安全性和隐私
- 批准号:
2338317 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Continuing Grant
CRII: SaTC: Privacy vs. Accountability--Usable Deniability and Non-Repudiation for Encrypted Messaging Systems
CRII:SaTC:隐私与责任——加密消息系统的可用否认性和不可否认性
- 批准号:
2348181 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Standard Grant
A Principled Framework for Explaining, Choosing and Negotiating Privacy Parameters of Differential Privacy
解释、选择和协商差异隐私的隐私参数的原则框架
- 批准号:
23K24851 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Grant-in-Aid for Scientific Research (B)
Global Road Damage Detection with privacy-preserved collaboration
通过保护隐私的协作进行全球道路损坏检测
- 批准号:
24K17366 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Grant-in-Aid for Early-Career Scientists
CAREER: Architectural Foundations for Practical Privacy-Preserving Computation
职业:实用隐私保护计算的架构基础
- 批准号:
2340137 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Continuing Grant
Collaborative Research: SHF: Small: Efficient and Scalable Privacy-Preserving Neural Network Inference based on Ciphertext-Ciphertext Fully Homomorphic Encryption
合作研究:SHF:小型:基于密文-密文全同态加密的高效、可扩展的隐私保护神经网络推理
- 批准号:
2412357 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Standard Grant
Collaborative Research: CIF-Medium: Privacy-preserving Machine Learning on Graphs
合作研究:CIF-Medium:图上的隐私保护机器学习
- 批准号:
2402815 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Small: A Privacy-Aware Human-Centered QoE Assessment Framework for Immersive Videos
协作研究:NetS:小型:一种具有隐私意识、以人为本的沉浸式视频 QoE 评估框架
- 批准号:
2343619 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Standard Grant
SHF: Small: Hardware-Software Co-design for Privacy Protection on Deep Learning-based Recommendation Systems
SHF:小型:基于深度学习的推荐系统的隐私保护软硬件协同设计
- 批准号:
2334628 - 财政年份:2024
- 资助金额:
$ 129.56万 - 项目类别:
Standard Grant