GP/notebooks/ch1.ipynb

1324 lines
76 KiB
Plaintext

{
"cells": [
{
"cell_type": "markdown",
"metadata": {
"tags": [
"remove-cell"
]
},
"source": [
"# De-identification\n",
"\n",
"Download the dataset by clicking [here](https://github.com/uvm-plaid/programming-dp/raw/master/notebooks/adult_with_pii.csv) and placing them in the same directory as this notebook.\n",
"\n",
"The dataset is based on census data. The personally identifiable information (PII) is made up."
]
},
{
"cell_type": "code",
"execution_count": 24,
"metadata": {
"tags": [
"remove-cell"
]
},
"outputs": [],
"source": [
"import pandas as pd\n",
"import numpy as np\n",
"import matplotlib.pyplot as plt"
]
},
{
"cell_type": "code",
"execution_count": 9,
"metadata": {
"tags": [
"remove-cell"
]
},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Name</th>\n",
" <th>DOB</th>\n",
" <th>SSN</th>\n",
" <th>Zip</th>\n",
" <th>Age</th>\n",
" <th>Workclass</th>\n",
" <th>fnlwgt</th>\n",
" <th>Education</th>\n",
" <th>Education-Num</th>\n",
" <th>Martial Status</th>\n",
" <th>Occupation</th>\n",
" <th>Relationship</th>\n",
" <th>Race</th>\n",
" <th>Sex</th>\n",
" <th>Capital Gain</th>\n",
" <th>Capital Loss</th>\n",
" <th>Hours per week</th>\n",
" <th>Country</th>\n",
" <th>Target</th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>0</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>9/7/1967</td>\n",
" <td>732-14-6110</td>\n",
" <td>64152</td>\n",
" <td>39</td>\n",
" <td>State-gov</td>\n",
" <td>77516</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Never-married</td>\n",
" <td>Adm-clerical</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>2174</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>1</th>\n",
" <td>Brandise Tripony</td>\n",
" <td>6/7/1988</td>\n",
" <td>150-19-2766</td>\n",
" <td>61523</td>\n",
" <td>50</td>\n",
" <td>Self-emp-not-inc</td>\n",
" <td>83311</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Married-civ-spouse</td>\n",
" <td>Exec-managerial</td>\n",
" <td>Husband</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>13</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>2</th>\n",
" <td>Brenn McNeely</td>\n",
" <td>8/6/1991</td>\n",
" <td>725-59-9860</td>\n",
" <td>95668</td>\n",
" <td>38</td>\n",
" <td>Private</td>\n",
" <td>215646</td>\n",
" <td>HS-grad</td>\n",
" <td>9</td>\n",
" <td>Divorced</td>\n",
" <td>Handlers-cleaners</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>3</th>\n",
" <td>Dorry Poter</td>\n",
" <td>4/6/2009</td>\n",
" <td>659-57-4974</td>\n",
" <td>25503</td>\n",
" <td>53</td>\n",
" <td>Private</td>\n",
" <td>234721</td>\n",
" <td>11th</td>\n",
" <td>7</td>\n",
" <td>Married-civ-spouse</td>\n",
" <td>Handlers-cleaners</td>\n",
" <td>Husband</td>\n",
" <td>Black</td>\n",
" <td>Male</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>4</th>\n",
" <td>Dick Honnan</td>\n",
" <td>9/16/1951</td>\n",
" <td>220-93-3811</td>\n",
" <td>75387</td>\n",
" <td>28</td>\n",
" <td>Private</td>\n",
" <td>338409</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Married-civ-spouse</td>\n",
" <td>Prof-specialty</td>\n",
" <td>Wife</td>\n",
" <td>Black</td>\n",
" <td>Female</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>Cuba</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Name DOB SSN Zip Age Workclass \\\n",
"0 Karrie Trusslove 9/7/1967 732-14-6110 64152 39 State-gov \n",
"1 Brandise Tripony 6/7/1988 150-19-2766 61523 50 Self-emp-not-inc \n",
"2 Brenn McNeely 8/6/1991 725-59-9860 95668 38 Private \n",
"3 Dorry Poter 4/6/2009 659-57-4974 25503 53 Private \n",
"4 Dick Honnan 9/16/1951 220-93-3811 75387 28 Private \n",
"\n",
" fnlwgt Education Education-Num Martial Status Occupation \\\n",
"0 77516 Bachelors 13 Never-married Adm-clerical \n",
"1 83311 Bachelors 13 Married-civ-spouse Exec-managerial \n",
"2 215646 HS-grad 9 Divorced Handlers-cleaners \n",
"3 234721 11th 7 Married-civ-spouse Handlers-cleaners \n",
"4 338409 Bachelors 13 Married-civ-spouse Prof-specialty \n",
"\n",
" Relationship Race Sex Capital Gain Capital Loss Hours per week \\\n",
"0 Not-in-family White Male 2174 0 40 \n",
"1 Husband White Male 0 0 13 \n",
"2 Not-in-family White Male 0 0 40 \n",
"3 Husband Black Male 0 0 40 \n",
"4 Wife Black Female 0 0 40 \n",
"\n",
" Country Target \n",
"0 United-States <=50K \n",
"1 United-States <=50K \n",
"2 United-States <=50K \n",
"3 United-States <=50K \n",
"4 Cuba <=50K "
]
},
"execution_count": 9,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult = pd.read_csv(\"adult_with_pii.csv\")\n",
"adult.head()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"# De-identification"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"*De-identification* is the process of removing *identifying information* from a dataset. The term *de-identification* is sometimes used synonymously with the terms *anonymization* and *pseudonymization*.\n",
"\n",
"```{admonition} Learning Objectives\n",
"After reading this chapter, you be able to:\n",
"- Define the following concepts:\n",
" - De-identification\n",
" - Re-identification\n",
" - Identifying information / personally identifying information\n",
" - Linkage attacks\n",
" - Aggregation and aggregate statistics\n",
" - Differencing attacks\n",
"- Perform a linkage attack\n",
"- Perform a differencing attack\n",
"- Explain the limitations of de-identification techniques\n",
"- Explain the limitations of aggregate statistics\n",
"```\n",
"\n",
"Identifying information has no formal definition. It is usually understood to be information which would be used to identify us uniquely in the course of daily life - name, address, phone number, e-mail address, etc. As we will see later, it's *impossible* to formalize the concept of identifying information, because *all* information is identifying. The term *personally identifiable information (PII)* is often used synonymously with identifying information.\n",
"\n",
"How do we de-identify information? Easy - we just remove the columns that contain identifying information!"
]
},
{
"cell_type": "code",
"execution_count": 12,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>DOB</th>\n",
" <th>Zip</th>\n",
" <th>Age</th>\n",
" <th>Workclass</th>\n",
" <th>fnlwgt</th>\n",
" <th>Education</th>\n",
" <th>Education-Num</th>\n",
" <th>Martial Status</th>\n",
" <th>Occupation</th>\n",
" <th>Relationship</th>\n",
" <th>Race</th>\n",
" <th>Sex</th>\n",
" <th>Capital Gain</th>\n",
" <th>Capital Loss</th>\n",
" <th>Hours per week</th>\n",
" <th>Country</th>\n",
" <th>Target</th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>0</th>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>39</td>\n",
" <td>State-gov</td>\n",
" <td>77516</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Never-married</td>\n",
" <td>Adm-clerical</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>2174</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" DOB Zip Age Workclass fnlwgt Education Education-Num \\\n",
"0 9/7/1967 64152 39 State-gov 77516 Bachelors 13 \n",
"\n",
" Martial Status Occupation Relationship Race Sex Capital Gain \\\n",
"0 Never-married Adm-clerical Not-in-family White Male 2174 \n",
"\n",
" Capital Loss Hours per week Country Target \n",
"0 0 40 United-States <=50K "
]
},
"execution_count": 12,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult_data = adult.copy().drop(columns=['Name', 'SSN'])\n",
"adult_pii = adult[['Name', 'SSN', 'DOB', 'Zip']]\n",
"adult_data.head(1)"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"We'll save some of the identifying information for later, when we'll use it as *auxiliary data* to perform a *re-identification* attack."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"## Linkage Attacks\n",
"\n",
"Imagine we want to determine the income of a friend from our de-identified data. Names have been removed, but we happen to know some auxiliary information about our friend. Our friend's name is Karrie Trusslove, and we know Karrie's date of birth and zip code."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"To perform a simple *linkage attack*, we look at the overlapping columns between the dataset we're trying to attack, and the auxiliary data we know. In this case, both datasets have dates of birth and zip codes. We look for rows in the dataset we're attacking with dates of birth and zip codes that match Karrie's date of birth and zip code. In databases, this is called a *join* of two tables, and we can do it in Pandas using `merge`. If there is only one such row, we've found Karrie's row in the dataset we're attacking."
]
},
{
"cell_type": "code",
"execution_count": 17,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Name</th>\n",
" <th>SSN</th>\n",
" <th>DOB</th>\n",
" <th>Zip</th>\n",
" <th>Age</th>\n",
" <th>Workclass</th>\n",
" <th>fnlwgt</th>\n",
" <th>Education</th>\n",
" <th>Education-Num</th>\n",
" <th>Martial Status</th>\n",
" <th>Occupation</th>\n",
" <th>Relationship</th>\n",
" <th>Race</th>\n",
" <th>Sex</th>\n",
" <th>Capital Gain</th>\n",
" <th>Capital Loss</th>\n",
" <th>Hours per week</th>\n",
" <th>Country</th>\n",
" <th>Target</th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>0</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>732-14-6110</td>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>39</td>\n",
" <td>State-gov</td>\n",
" <td>77516</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Never-married</td>\n",
" <td>Adm-clerical</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>2174</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Name SSN DOB Zip Age Workclass fnlwgt \\\n",
"0 Karrie Trusslove 732-14-6110 9/7/1967 64152 39 State-gov 77516 \n",
"\n",
" Education Education-Num Martial Status Occupation Relationship \\\n",
"0 Bachelors 13 Never-married Adm-clerical Not-in-family \n",
"\n",
" Race Sex Capital Gain Capital Loss Hours per week Country \\\n",
"0 White Male 2174 0 40 United-States \n",
"\n",
" Target \n",
"0 <=50K "
]
},
"execution_count": 17,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"karries_row = adult_pii[adult_pii['Name'] == 'Karrie Trusslove']\n",
"pd.merge(karries_row, adult_data, left_on=['DOB', 'Zip'], right_on=['DOB', 'Zip'])"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"Indeed, there is only one row that matches. We have used auxiliary data to re-identify an individual in a de-identified dataset, and we're able to infer that Karrie's income is less than $50k."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"### How Hard is it to Re-Identify Karrie?"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"This scenario is made up, but linkage attacks are surprisingly easy to perform in practice. How easy? It turns out that in many cases, just one data point is sufficient to pinpoint a row!"
]
},
{
"cell_type": "code",
"execution_count": 18,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Name</th>\n",
" <th>SSN</th>\n",
" <th>DOB_x</th>\n",
" <th>Zip</th>\n",
" <th>DOB_y</th>\n",
" <th>Age</th>\n",
" <th>Workclass</th>\n",
" <th>fnlwgt</th>\n",
" <th>Education</th>\n",
" <th>Education-Num</th>\n",
" <th>Martial Status</th>\n",
" <th>Occupation</th>\n",
" <th>Relationship</th>\n",
" <th>Race</th>\n",
" <th>Sex</th>\n",
" <th>Capital Gain</th>\n",
" <th>Capital Loss</th>\n",
" <th>Hours per week</th>\n",
" <th>Country</th>\n",
" <th>Target</th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>0</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>732-14-6110</td>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>9/7/1967</td>\n",
" <td>39</td>\n",
" <td>State-gov</td>\n",
" <td>77516</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Never-married</td>\n",
" <td>Adm-clerical</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>2174</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Name SSN DOB_x Zip DOB_y Age Workclass \\\n",
"0 Karrie Trusslove 732-14-6110 9/7/1967 64152 9/7/1967 39 State-gov \n",
"\n",
" fnlwgt Education Education-Num Martial Status Occupation \\\n",
"0 77516 Bachelors 13 Never-married Adm-clerical \n",
"\n",
" Relationship Race Sex Capital Gain Capital Loss Hours per week \\\n",
"0 Not-in-family White Male 2174 0 40 \n",
"\n",
" Country Target \n",
"0 United-States <=50K "
]
},
"execution_count": 18,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"pd.merge(karries_row, adult_data, left_on=['Zip'], right_on=['Zip'])"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"So ZIP code is sufficient **by itself** to allow us to re-identify Karrie. What about date of birth?"
]
},
{
"cell_type": "code",
"execution_count": 19,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Name</th>\n",
" <th>SSN</th>\n",
" <th>DOB</th>\n",
" <th>Zip_x</th>\n",
" <th>Zip_y</th>\n",
" <th>Age</th>\n",
" <th>Workclass</th>\n",
" <th>fnlwgt</th>\n",
" <th>Education</th>\n",
" <th>Education-Num</th>\n",
" <th>Martial Status</th>\n",
" <th>Occupation</th>\n",
" <th>Relationship</th>\n",
" <th>Race</th>\n",
" <th>Sex</th>\n",
" <th>Capital Gain</th>\n",
" <th>Capital Loss</th>\n",
" <th>Hours per week</th>\n",
" <th>Country</th>\n",
" <th>Target</th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>0</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>732-14-6110</td>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>64152</td>\n",
" <td>39</td>\n",
" <td>State-gov</td>\n",
" <td>77516</td>\n",
" <td>Bachelors</td>\n",
" <td>13</td>\n",
" <td>Never-married</td>\n",
" <td>Adm-clerical</td>\n",
" <td>Not-in-family</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>2174</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>1</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>732-14-6110</td>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>67306</td>\n",
" <td>64</td>\n",
" <td>Private</td>\n",
" <td>171373</td>\n",
" <td>11th</td>\n",
" <td>7</td>\n",
" <td>Widowed</td>\n",
" <td>Farming-fishing</td>\n",
" <td>Unmarried</td>\n",
" <td>White</td>\n",
" <td>Female</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>40</td>\n",
" <td>United-States</td>\n",
" <td>&lt;=50K</td>\n",
" </tr>\n",
" <tr>\n",
" <th>2</th>\n",
" <td>Karrie Trusslove</td>\n",
" <td>732-14-6110</td>\n",
" <td>9/7/1967</td>\n",
" <td>64152</td>\n",
" <td>62254</td>\n",
" <td>46</td>\n",
" <td>Self-emp-not-inc</td>\n",
" <td>119944</td>\n",
" <td>Masters</td>\n",
" <td>14</td>\n",
" <td>Married-civ-spouse</td>\n",
" <td>Exec-managerial</td>\n",
" <td>Husband</td>\n",
" <td>White</td>\n",
" <td>Male</td>\n",
" <td>0</td>\n",
" <td>0</td>\n",
" <td>50</td>\n",
" <td>United-States</td>\n",
" <td>&gt;50K</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Name SSN DOB Zip_x Zip_y Age \\\n",
"0 Karrie Trusslove 732-14-6110 9/7/1967 64152 64152 39 \n",
"1 Karrie Trusslove 732-14-6110 9/7/1967 64152 67306 64 \n",
"2 Karrie Trusslove 732-14-6110 9/7/1967 64152 62254 46 \n",
"\n",
" Workclass fnlwgt Education Education-Num Martial Status \\\n",
"0 State-gov 77516 Bachelors 13 Never-married \n",
"1 Private 171373 11th 7 Widowed \n",
"2 Self-emp-not-inc 119944 Masters 14 Married-civ-spouse \n",
"\n",
" Occupation Relationship Race Sex Capital Gain Capital Loss \\\n",
"0 Adm-clerical Not-in-family White Male 2174 0 \n",
"1 Farming-fishing Unmarried White Female 0 0 \n",
"2 Exec-managerial Husband White Male 0 0 \n",
"\n",
" Hours per week Country Target \n",
"0 40 United-States <=50K \n",
"1 40 United-States <=50K \n",
"2 50 United-States >50K "
]
},
"execution_count": 19,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"pd.merge(karries_row, adult_data, left_on=['DOB'], right_on=['DOB'])"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"This time, there are three rows returned - and we don't know which one is the real Karrie. But we've still learned a lot!\n",
"\n",
"- We know that there's a 2/3 chance that Karrie's income is less than $50k\n",
"- We can look at the differences between the rows to determine what additional auxiliary information would *help* us to distinguish them (e.g. sex, occupation, marital status)"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"### Is Karrie Special?"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"How hard is it to re-identify others in the dataset? Is Karrie especially easy or especially difficult to re-identify? A good way to gauge the effectiveness of this type of attack is to look at how \"selective\" certain pieces of data are - how good they are at narrowing down the set of potential rows which may belong to the target individual. For example, is it common for birthdates to occur more than once?\n",
"\n",
"We'd like to get an idea of how many dates of birth are likely to be useful in performing an attack, which we can do by looking at how common \"unique\" dates of birth are in the dataset. The histogram below shows that *the vast majority* of dates of birth occur 1, 2, or 3 times in the dataset, and *no date of birth* occurs more than 8 times. This means that date of birth is fairly *selective* - it's effective in narrowing down the possible records for an individual."
]
},
{
"cell_type": "code",
"execution_count": 26,
"metadata": {
"tags": [
"hide-input"
]
},
"outputs": [
{
"data": {
"image/png": "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\n",
"text/plain": [
"<Figure size 432x288 with 1 Axes>"
]
},
"metadata": {
"needs_background": "light"
},
"output_type": "display_data"
}
],
"source": [
"adult_pii['DOB'].value_counts() .hist()\n",
"plt.xlabel('Number of Dates of Birth')\n",
"plt.ylabel('Number of Occurrences');"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"We can do the same thing with ZIP codes, and the results are even worse - ZIP code happens to be *very* selective in this dataset. Nearly all the ZIP codes occur only once."
]
},
{
"cell_type": "code",
"execution_count": 27,
"metadata": {
"tags": [
"hide-input"
]
},
"outputs": [
{
"data": {
"image/png": "\n",
"text/plain": [
"<Figure size 432x288 with 1 Axes>"
]
},
"metadata": {
"needs_background": "light"
},
"output_type": "display_data"
}
],
"source": [
"adult_pii['Zip'].value_counts().hist()\n",
"plt.xlabel('Number of ZIP Codes')\n",
"plt.ylabel('Number of Occurrences');"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"### How Many People can we Re-Identify?"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"In this dataset, how many people can we re-identify uniquely? We can use our auxiliary information to find out! First, let's see what happens with just dates of birth. We want to know how many *possible identities* are returned for each data record in the dataset. The following histogram shows the number of records with each number of possible identities. The results show that we can uniquely identify almost 7,000 of the data records (out of about 32,000), and an additional 10,000 data records are narrowed down to two possible identities."
]
},
{
"cell_type": "code",
"execution_count": 33,
"metadata": {
"scrolled": true,
"tags": [
"hide-input"
]
},
"outputs": [
{
"data": {
"image/png": "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\n",
"text/plain": [
"<Figure size 432x288 with 1 Axes>"
]
},
"metadata": {
"needs_background": "light"
},
"output_type": "display_data"
}
],
"source": [
"attack = pd.merge(adult_pii, adult_data, left_on=['DOB'], right_on=['DOB'])\n",
"attack['Name'].value_counts().hist();"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"So it's not possible to re-identify a majority of individuals using *just* date of birth. What if we collect more information, to narrow things down further? If we use both date of birth and ZIP, we're able to do much better. In fact, we're able to uniquely re-identify basically the whole dataset."
]
},
{
"cell_type": "code",
"execution_count": 17,
"metadata": {
"scrolled": true,
"tags": [
"hide-input"
]
},
"outputs": [
{
"data": {
"image/png": "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\n",
"text/plain": [
"<matplotlib.figure.Figure at 0x10ad5b668>"
]
},
"metadata": {},
"output_type": "display_data"
}
],
"source": [
"attack = pd.merge(adult_pii, adult_data, left_on=['DOB', 'Zip'], right_on=['DOB', 'Zip'])\n",
"attack['Name'].value_counts().hist();"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"When we use both pieces of information, we can re-identify **essentially everyone**. This is a surprising result, since we generally assume that many people share the same birthday, and many people live in the same ZIP code. It turns out that the *combination* of these factors is **extremely** selective. According to Latanya Sweeney's work {cite}`identifiability`, 87% of people in the US can be uniquely re-identified by the combination of date of birth, gender, and ZIP code."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"Let's just check that we've actually re-identified *everyone*, by printing out the number of possible data records for each identity:"
]
},
{
"cell_type": "code",
"execution_count": 18,
"metadata": {
"tags": [
"hide-input"
]
},
"outputs": [
{
"data": {
"text/plain": [
"Barnabe Haime 2\n",
"Antonin Chittem 2\n",
"Penelope Fauning 1\n",
"Sylvia Kenan 1\n",
"Sadella Gutowski 1\n",
"Name: Name, dtype: int64"
]
},
"execution_count": 18,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"attack['Name'].value_counts().head()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"Looks like we missed two people! In other words, in this dataset, only **two people** share a combination of ZIP code and date of birth."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"## Aggregation"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"Another way to prevent the release of private information is to release only *aggregate* data."
]
},
{
"cell_type": "code",
"execution_count": 21,
"metadata": {},
"outputs": [
{
"data": {
"text/plain": [
"38.58164675532078"
]
},
"execution_count": 21,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult['Age'].mean()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"### Problem of Small Groups"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"In many cases, aggregate statistics are broken down into smaller groups. For example, we might want to know the average age of people with a particular education level."
]
},
{
"cell_type": "code",
"execution_count": 34,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Age</th>\n",
" </tr>\n",
" <tr>\n",
" <th>Education-Num</th>\n",
" <th></th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>1</th>\n",
" <td>42.764706</td>\n",
" </tr>\n",
" <tr>\n",
" <th>2</th>\n",
" <td>46.142857</td>\n",
" </tr>\n",
" <tr>\n",
" <th>3</th>\n",
" <td>42.885886</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Age\n",
"Education-Num \n",
"1 42.764706\n",
"2 46.142857\n",
"3 42.885886"
]
},
"execution_count": 34,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult[['Education-Num', 'Age']].groupby('Education-Num').mean().head(3)"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"Aggregation is supposed to improve privacy because it's hard to identify the contribution of a particular individual to the aggregate statistic. But what if we aggregate over a group with just *one person* in it? In that case, the aggregate statistic reveals one person's age *exactly*, and provides no privacy protection at all! In our dataset, most individuals have a unique ZIP code - so if we compute the average age by ZIP code, then most of the \"averages\" actually reveal an individual's exact age."
]
},
{
"cell_type": "code",
"execution_count": 35,
"metadata": {},
"outputs": [
{
"data": {
"text/html": [
"<div>\n",
"<style scoped>\n",
" .dataframe tbody tr th:only-of-type {\n",
" vertical-align: middle;\n",
" }\n",
"\n",
" .dataframe tbody tr th {\n",
" vertical-align: top;\n",
" }\n",
"\n",
" .dataframe thead th {\n",
" text-align: right;\n",
" }\n",
"</style>\n",
"<table border=\"1\" class=\"dataframe\">\n",
" <thead>\n",
" <tr style=\"text-align: right;\">\n",
" <th></th>\n",
" <th>Age</th>\n",
" </tr>\n",
" <tr>\n",
" <th>Zip</th>\n",
" <th></th>\n",
" </tr>\n",
" </thead>\n",
" <tbody>\n",
" <tr>\n",
" <th>4</th>\n",
" <td>55.0</td>\n",
" </tr>\n",
" <tr>\n",
" <th>12</th>\n",
" <td>24.0</td>\n",
" </tr>\n",
" <tr>\n",
" <th>16</th>\n",
" <td>59.0</td>\n",
" </tr>\n",
" <tr>\n",
" <th>17</th>\n",
" <td>42.0</td>\n",
" </tr>\n",
" <tr>\n",
" <th>18</th>\n",
" <td>24.0</td>\n",
" </tr>\n",
" </tbody>\n",
"</table>\n",
"</div>"
],
"text/plain": [
" Age\n",
"Zip \n",
"4 55.0\n",
"12 24.0\n",
"16 59.0\n",
"17 42.0\n",
"18 24.0"
]
},
"execution_count": 35,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult[['Zip', 'Age']].groupby('Zip').mean().head()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"The US Census Bureau, for example, releases aggregate statistics at the [*block level*](https://www.census.gov/newsroom/blogs/random-samplings/2011/07/what-are-census-blocks.html). Some census blocks have large populations, but some have a population of zero! The situation above, where small groups prevent aggregation from hiding information about individuals, turns out to be quite common.\n",
"\n",
"How big a group is \"big enough\" for aggregate statistics to help? It's hard to say - it depends on the data and on the attack - so it's challenging to build confidence that aggregate statistics are really privacy-preserving. However, even very large groups do not make aggregation completely robust against attacks, as we will see next."
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"### Differencing Attacks"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"The problems with aggregation get even worse when you release multiple aggregate statistics over the same data. For example, consider the following two summation queries over large groups in our dataset (the first over the whole dataset, and the second over all records except one):"
]
},
{
"cell_type": "code",
"execution_count": 36,
"metadata": {},
"outputs": [
{
"data": {
"text/plain": [
"1256257"
]
},
"execution_count": 36,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult['Age'].sum()"
]
},
{
"cell_type": "code",
"execution_count": 37,
"metadata": {},
"outputs": [
{
"data": {
"text/plain": [
"1256218"
]
},
"execution_count": 37,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
"adult[adult['Name'] != 'Karrie Trusslove']['Age'].sum()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"If we know both answers, we can simply take the difference and determine Karrie's age completely! This kind of attack can proceed even if the aggregate statistics are over *very large groups*."
]
},
{
"cell_type": "code",
"execution_count": 38,
"metadata": {
"scrolled": true
},
"outputs": [
{
"data": {
"text/plain": [
"39"
]
},
"execution_count": 38,
"metadata": {},
"output_type": "execute_result"
}
],
"source": [
" adult['Age'].sum() - adult[adult['Name'] != 'Karrie Trusslove']['Age'].sum()"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"This is a recurring theme.\n",
"\n",
"- Releasing *data* that is useful makes ensuring *privacy* very difficult\n",
"- Distinguishing between *malicious* and *non-malicious* queries is not possible"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"## Summary"
]
},
{
"cell_type": "markdown",
"metadata": {},
"source": [
"- A *linkage attack* involves combining *auxiliary data* with *de-identified data* to *re-identify* individuals.\n",
"- In the simplest case, a linkage attack can be performed via a *join* of two tables containing these datasets.\n",
"- Simple linking attacks are surprisingly effective:\n",
" - Just a single data point is sufficient to narrow things down to a few records\n",
" - The narrowed-down set of records helps suggest additional auxiliary data which might be helpful\n",
" - Two data points are often good enough to re-identify a huge fraction of the population in a particular dataset\n",
" - Three data points (gender, ZIP code, date of birth) uniquely identify 87% of people in the US"
]
}
],
"metadata": {
"celltoolbar": "Tags",
"kernelspec": {
"display_name": "Python 3",
"language": "python",
"name": "python3"
},
"language_info": {
"codemirror_mode": {
"name": "ipython",
"version": 3
},
"file_extension": ".py",
"mimetype": "text/x-python",
"name": "python",
"nbconvert_exporter": "python",
"pygments_lexer": "ipython3",
"version": "3.9.9"
}
},
"nbformat": 4,
"nbformat_minor": 2
}