Show simple item record

dc.contributor.authorBella, Giampaoloen
dc.contributor.authorGiustolisi, Rosarioen
dc.contributor.authorRiccobene, Salvatoreen
dc.date.accessioned2012-04-04T10:41:48Z
dc.date.available2012-04-04T10:41:48Z
dc.date.issued2011
dc.identifier.citationBella, G., Giustolisi, R. and Riccobene, S. (2011) Enforcing privacy in e-commerce by balancing anonymity and trust. Computers & Security, 30, (8), pp. 705-718en
dc.identifier.issn0167-4048
dc.identifier.urihttp://hdl.handle.net/2086/5882
dc.description.abstractPrivacy is a major concern in e-commerce. There exist two main paradigms to protect the customer’s privacy: one relies on the customer’s trust that the network will conform to his privacy policy, the other one insists on the customer’s anonymity. A new paradigm is advanced here as a natural balance between these two. It sees the customer act using his real identity but only circulate cover data that conceal the resources he requires. Privacy enforcement is thus shifted from the customer’s identity to his purchase preferences. The new paradigm is suitable for scenarios such as eBay purchases where trust that a network sticks to a privacy policy is problematic, while anonymity is either forbidden or impossible. The computation of cover data is done by a node other than the customer in order to minimize impact on the customer. That node will therefore see the customer’s private data that are used to compute the cover. This demands some technology to prevent the node from exposing private data. An existing protocol developed for self-enforcing privacy in the area of e-polls is thoroughly analysed and found somewhat weak in terms of fairness among its participants. A stronger version is designed and adopted, together with an innovative differential-privacy preserving function, in the new privacy paradigm. The strengthened e-poll protocol and the new differential-privacy preserving function, which strictly speaking only are side contributions of this paper, each appear as important as the new e-commerce privacy paradigm.en
dc.language.isoenen
dc.publisherElsevier Ltden
dc.subjectself-enforcing privacyen
dc.subjectdifferential privacyen
dc.subjectcustomer privacyen
dc.subjectsecurity protocolen
dc.subjectE-pollingen
dc.subjectPollsteren
dc.titleEnforcing privacy in e-commerce by balancing anonymity and trusten
dc.typeArticleen
dc.identifier.doihttp://dx.doi.org/10.1016/j.cose.2011.08.005
dc.researchgroupSoftware Technology Research Laboratory (STRL)en
dc.peerreviewedYesen
dc.ref2014.selected1367395509_1010680226037_11_2


Files in this item

FilesSizeFormatView

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record