面向医疗数据交易与服务的数据隐私保护理论研究
批准号:
62072349
项目类别:
面上项目
资助金额:
58.0 万元
负责人:
宋伟
依托单位:
学科分类:
信息安全
结题年份:
2024
批准年份:
2020
项目状态:
已结题
项目参与者:
宋伟
中文摘要
医疗数据共享是医学研究和临床科研的基础,然而医疗数据不仅涉及个人隐私,也包含医生、医疗机构的隐私。这种多重隐私性给医疗数据的隐私保护带来了巨大挑战。本项目基于医疗数据的内在多重隐私特征,针对现有研究在隐私性、可用性和可扩展性等方面的局限,聚焦医疗数据交易与服务过程的隐私保护理论研究,重点解决交易定价、数据发布、安全分析和服务审计的难点问题:1)引入知识商品价格理论,探索医疗数据价值链构造和演化规律,对医疗数据合理定价,推动交易与共享;2)研究多重隐私约束下的医疗数据隐私保护发布机制;3)面向医疗数据的有限域特征,研究基于同态加密的医疗数据多项式表达及安全、高效计算方法,支持基于医疗数据的挖掘分析服务;4)研究外包服务模式下支持敏感信息隐藏的通用医疗数据服务完整性验证技术,确保医疗数据服务的可验证性。项目力求在医疗数据共享与服务的隐私保护新理论与新方法上取得突破,推动医疗数据应用蓬勃发展。
英文摘要
Medical data sharing is the foundation of medical and clinical research. The medical data involve not only personal privacy but also the privacy of doctors and hospitals. This multiplicity of privacy brings a great challenge to the privacy protection of medical data. Based on the inherent multi-privacy features of medical data, aiming at the limitations of privacy, availability, and scalability in existing research, our project focuses on the theories on privacy protection of medical data in the processes of transactions and services and especially solves the problems of pricing, data releasing, security analysis, and service audit. Firstly, we introduce the price theory of knowledge commodity to explore the rules of the structure and the evolution of medical data value chain. By the pricing theory, we make a reasonable price to the medical data and improve the data transaction and sharing. Secondly, we research the privacy-preserving medical data release mechanism under multiple privacy constraints. Thirdly, based on the limited domain characteristics of medical data, we research the expression of common polynomials over medical data with homomorphic encryption and the corresponding safe and efficient calculation algorithm. Finally, we research the integrity verification algorithm for medical data services supporting sensitive information hiding under the outsourced service mode to ensure verifiability of medical data services. This project tries to make a breakthrough in the new theory and method of privacy protection of medical data sharing and service, and improve the development of medical data applications.
医疗数据分析处理是医学临床研究、新药研发乃至精准医疗应用的基础,医疗数据涉及个人敏感信息,如何解决医疗数据共享及服务过程的安全性、高效性、可靠性以及可追溯性是医疗数据服务过程必须解决的关键科学问题,也是充分发挥医疗数据价值,支撑智慧医疗发展的基础。本项目分析医疗数据的隐私特征及医疗数据应用场景的威胁模型,研究医疗数据的可信服务机制,取得的重要进展包括:在医疗数据安全交易方面:(1)提出了一种综合数据访问者背景知识的医疗数据定价机制和价值演化规律。(2)针对医疗数据的多用户拥有者特性,提出了一种新颖的数据多属主安全共享方案。(3)面向医疗数据紧急访问场景的数据访问签名方案,支持医疗数据的安全访问及可追溯性。在隐私保护医疗数据发布方面:(1)提出了一种在数据关联约束下的实时数据差分隐私发布方案。在医疗数据隐私保护分析方面:(1)提出一种具有ORE(Order Revealing Encryption)特征的同态加密算法,实现针对加密数据的任意多项式评估。(2)针对匿名联邦学习网络的推理攻击和重构攻击,探索基于潜在背景特征的受害人推理攻击方法和训练数据重构攻击策略。在医疗数据服务完整性验证方面:(1)提出了一种支持多用户访问的医疗数据完整性验证同态签名方案。(2)提出了一种支持跨域密文共享的访问行为身份追踪方案。项目研究成果获得湖北省科学技术进步奖排名第一,依托项目研究成果开发的应用软件在医疗机构得到了推广应用,取得了良好的社会效益与经济效益。项目相关成果共发表学术论文16篇,申请发明专利8项,软件著作权3项,培养博士研究生4名,硕士研究生16名。
面向医疗数据的隐私保护人工智能服务理论及关键技术研究
-
批准号:62372340
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:宋伟
-
依托单位:
可信云存储高效密文全文检索模型及关键技术研究
-
批准号:61202034
-
项目类别:青年科学基金项目
-
资助金额:24.0万元
-
批准年份:2012
-
负责人:宋伟
-
依托单位:
国内基金
海外基金