Abstract
Location awareness has enabled efficient and accurate geo-localised Internet services. Mobile apps exploiting these services have changed our way of navigating and searching for resources in geographical space. This chapter provides a classification of location based services (LBS) and illustrates the privacy aspects involved in releasing our location information as part of a service request. It includes a discussion about legal obligations of the LBS provider and about ways to specify personal location privacy preferences. The chapter also provides a systematic survey of the main approaches that have been proposed for protecting the user’s privacy while using these services.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
References
Preserving user location privacy in mobile data management infrastructures. Privacy Enhancing Technologies, LNCS 4258:393–412, 2006.
M. E. Andrés, N. E. Bordenabe, K. Chatzikokolakis, and C. Palamidessi. Geo-Indistinguishability: Differential Privacy for Location-Based Systems. In Proceedings of ACM SIGSAC Conference on Computer and Communications Security (CCS), 2013.
C. A. Ardagna, M. Cremonini, S. D. Capitani, and P. Samarati. An Obfuscation-based Approach for Protecting Location Privacy. IEEE Transactions on Dependable and Secure Computing (TDSC), 8(1):13–27, 2011.
B. Bamba, L. Liu, P. Pesti, and T. Wang. Supporting anonymous location queries in mobile environments with PrivacyGrid. In Proc. Int. WWW Conf., pages 237–246, 2008.
M. Benisch, P. G. Kelley, N. Sadeh, and L. F. Cranor. Capturing location-privacy preferences: quantifying accuracy and user-burden tradeoffs. Personal and Ubiquitous Computing, 15(7):679–694, 2011.
C. Bettini, S. Jajodia, and L. Pareschi. Anonymity and diversity in LBS: A preliminary investigation. In IEEE International Conference on Pervasive Computing and Communications Workshops, 2007.
C. Bettini, S. Mascetti, D. Freni, X. S. Wang, and S. Jajodia. Privacy and anonymity in Location Data Management. In F. Bonchi and E. Ferrari, editors, Privacy-Aware Knowledge Discovery: Novel Applications and New Techniques. Chapman & Hall, 2010.
C. Bettini, S. Mascetti, X. Wang, D. Freni, and S. Jajodia. Anonymity and historical-anonymity in location-based services. In Privacy in location-based applications, volume LNCS 5599. Springer Berlin Heidelberg, 2009.
C. Bettini, X. Wang, and S. Jajodia. Protecting privacy against location-based personal identification. In Proceedings of Secure Data Management, volume 3674 LNCS. Springer, 2005.
K. Chatzikokolakis, E. Elsalamouny, and C. Palamidessi. Efficient Utility Improvement for Location Privacy. Proceedings on Privacy Enhancing Technologies (PoPET), 2017(4):210–231, 2017.
G. Cormode, C. Procopiuc, D. Srivastava, E. Shen, and T. Yu. Differentially private spatial decompositions. In Proceedings - International Conference on Data Engineering, pages 20–31, 2012.
M. L. Damiani, E. Bertino, and C. Silvestri. The PROBE framework for the personalized cloaking of private locations. Transactions on Data Privacy, 3(2):123–148, 2010.
R. Dingledine, N. Mathewson, and P. Syverson. Tor: The second-generation onion router. Technical report, Naval Research Lab Washington DC, 2004.
M. Duckham and L. Kulik. A Formal Model of Obfuscation and Negotiation for Location Privacy. In International Conference on Pervasive Computing, pages 152–170. Springer Berlin Heidelberg, 2005.
C. Dwork. Differential privacy: A survey of results. In International Conference on Theory and Applications of Models of Computation, pages 1–19. Springer, 2008.
E. Elsalamouny and S. Gambs. Differential Privacy Models for Location- Based Services. Transactions on Data Privacy, 9:15–48, 2016.
K. Fawaz and K. G. Shin. Location privacy protection for smartphone users. In ACM Conference on Computer and Communications Security, 2014.
D. Freni, S. Mascetti, C. Bettini, and M. Cozzi. Pcube: A system to evaluate and test privacy-preserving proximity services. In 2010 Eleventh International Conference on Mobile Data Management, pages 273–275, May 2010.
B. Gedik and Ling Liu. Location Privacy in Mobile Systems: A Personalized Anonymization Model. In 25th IEEE International Conference on Distributed Computing Systems (ICDCS’05), pages 620–629, 2005.
G. Ghinita. Privacy for location-based services. Synthesis Lectures on Information Security, Privacy & Trust, 4(1):1–85, 2013.
G. Ghinita, P. Kalnis, A. Khoshgozaran, C. Shahabi, and K.-L. Tan. Private queries in location based services: anonymizers are not necessary. In Proceedings of the 2008 ACM SIGMOD international conference on Management of data, pages 121–132. ACM, 2008.
G. Ghinita, P. Kalnis, and S. Skiadopoulos. MOBIHIDE: a mobilea peer-to-peer system for anonymous location-based queries. Advances in spatial and temporal databases, pages 221–238, 2007.
G. Ghinita, P. Kalnis, and S. Skiadopoulos. PRIVE: anonymous location-based queries in distributed mobile systems. In Proceedings of the 16th international conference on World Wide Web, pages 371–380. ACM, 2007.
D. Goldschlag, M. Reed, and P. Syverson. Onion routing. Communications of the ACM, 42(2):39–41, 1999.
M. Gruteser and D. Grunwald. Anonymous Usage of Location-Based Services Through Spatial and Temporal Cloaking. In Proceedings of the 1st international conference on Mobile systems, applications and services - MobiSys ’03, pages 31–42, 2003.
A. Gutscher. Coordinate transformation-a solution for the privacy problem of location based services? In Parallel and Distributed Processing Symposium, 2006. IPDPS 2006. 20th International, pages 7—-pp. IEEE, 2006.
T. Hashem, L. Kulik, and R. Zhang. Privacy preserving group nearest neighbor queries. In Proceedings of the 13th International Conference on Extending Database Technology, pages 489–500. ACM, 2010.
X. He, G. Cormode, A. Machanavajjhala, C. M. Procopiuc, and D. Srivastava. DPT: Differentially Private Trajectory Synthesis Using Hierarchical Reference Systems. Proceedings of the VLDB Endowment, 8(11):1154–1165, 2015.
H. Hu and J. Xu. Non-exposure location anonymity. In Proceedings - International Conference on Data Engineering, pages 1120–1131, 2009.
R. P. Jay. Data protection & privacy in 31 jurisdictions worldwide. Gideon Roberton, Law Business Research Ltd, 2015.
C. S. Jensen, H. Lu, and M. L. Yiu. Location privacy techniques in client-server architectures. In Privacy in location-based applications, pages 31–58. Springer, 2009.
P. Kalnis, G. Ghinita, K. Mouratidis, and D. Papadias. Preventing location-based identity inference in anonymous spatial queries. IEEE Transactions on Knowledge and Data Engineering, 19(12):1719–1733, 2007.
A. Khoshgozaran and C. Shahabi. Private information retrieval techniques for enabling location privacy in location-based services. In Privacy in Location-Based Applications, volume 0831505, pages 59–83. Springer Berlin Heidelberg, 2009.
H. Kido, Y. Yanagisawa, and T. Satoh. Protection of location privacy using dummies for location-based services. In 21st International Conference on Data Engineering Workshops., page 1248. IEEE, 2005.
J. Krumm. A survey of computational location privacy. Personal and Ubiquitous Computing, 13(6):391–399, 2009.
J. Lin, M. Benisch, N. Sadeh, J. Niu, J. Hong, B. Lu, and S. Guo. A comparative study of location-sharing privacy preferences in the United States and China. Personal and Ubiquitous Computing, 17(4):697–711, Apr 2013.
B. Liu, M. S. Andersen, F. Schaub, H. Almuhimedi, S. Zhang, N. Sadeh, A. Acquisti, and Y. Agarwal. Follow my recommendations: A personalized privacy assistant for mobile app permissions. In Symposium on Usable Privacy and Security.
K. Liu, C. Giannella, and H. Kargupta. An attacker’s view of distance preserving maps for privacy preserving data mining. Knowledge Discovery in Databases: PKDD 2006, pages 297–308, 2006.
H. Lu, C. S. Jensen, and M. L. Yiu. PAD: Privacy-Area Aware, Dummy-Based Location Privacy in Mobile Services. In Proceedings of the CM International Workshop on Data Engineering for Wireless and Mobile Access (MobiDE), pages 16–23, 2008.
A. Machanavajjhala, J. Gehrke, D. Kifer, and M. Venkitasubramaniam. l-diversity : Privacy beyond k-anonymity. In Proceedings - International Conference on Data Engineering, 2006.
S. Mascetti, L. Bertolaja, and C. Bettini. A practical location privacy attack in proximity services. In Proceedings - IEEE International Conference on Mobile Data Management, 2013.
S. Mascetti, L. Bertolaja, and C. Bettini. SafeBox : adaptable spatio-temporal generalization for location privacy protection. Transactions on Data Privacy, 7:131–163, 2014.
S. Mascetti, C. Bettini, D. Freni, and X. S. Wang. Spatial generalisation algorithms for LBS privacy preservation. Journal of Location Based Services, 1(3):179–207, 2007.
S. Mascetti, D. Freni, C. Bettini, X. Wang, and S. Jajodia. Privacy in geo-social networks: Proximity notification with untrusted service providers and curious buddies. VLDB Journal, 20(4), 2011.
M. F. Mokbel, C.-Y. Chow, and W. G. Aref. The new casper: Query processing for location services without compromising privacy. In Proceedings of the 32nd international conference on Very large data bases, pages 763–774. VLDB Endowment, 2006.
Y.-a. D. Montjoye, M. Verleysen, and V. D. Blondel. Unique in the Crowd: The privacy bounds of human mobility. Scientific Reports, 3(1376):1–5, 2013.
E. Parliament and Council. General data protection regulation - 2016/679. Technical report, European Commission, 2016.
A. D. P. W. Party. Opinion 13/2011 on geolocation services on smart mobile devices. Technical report, European Commission, 2011.
E. A. D. P. W. Party. Opinion 2/2017 on data processing at work - wp249. Technical report, European Commission, 2017.
A. Shamir. How to share a secret. Communications of the ACM, 22(11):612–613, 1979.
P. Shankar, V. Ganapathy, and L. Iftode. Privately querying location-based services with SybilQuery. In Proceedings of the 11th international conference on Ubiquitous computing, pages 31–40. ACM, 2009.
R. Shokri. Privacy Games : Optimal User-Centric Data Obfuscation. In Proceedings on Privacy Enhancing Technologies, pages 299–315, 2015.
R. Shokri, G. Theodorakopoulos, and C. Troncoso. ACM Transactions on Privacy and Security (TOPS).
E. Snekkenes. Concepts for personal location privacy policies. In Proceedings of the 3rd ACM conference on Electronic Commerce, pages 48–57. ACM, 2001.
E. Toch, J. Cranshaw, P. Hankes-Drielsma, J. Springfield, P. G. Kelley, L. Cranor, J. Hong, and N. Sadeh. Locaccino: A privacy-centric location sharing application. In Proceedings of the 12th ACM International Conference Adjunct Papers on Ubiquitous Computing - Adjunct, UbiComp ’10 Adjunct, pages 381–382, New York, NY, USA, 2010. ACM.
C. R. Vicente, D. Freni, C. Bettini, and C. S. Jensen. Location-related privacy in geo-social networks. IEEE Internet Computing, 15(3):20–27, 2011.
M. Wernke, F. Durr, and K. Rothermel. PShare: Position sharing for location privacy based on multi-secret sharing. In 2012 IEEE International Conference on Pervasive Computing and Communications, pages 153–161, 2012.
M. Wernke, P. Skvortsov, F. Durr, and K. Rothermel. A classification of location privacy attacks and approaches. Personal and Ubiquitous Computing, 18(1):163–175, 2014.
Y. Xiao and L. Xiong. Protecting Locations with Differential Privacy under Temporal Correlations. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security (CCS), pages 1298–1309, 2015.
Y. Xiao, L. Xiong, S. Zhang, and Y. Cao. LocLok: Location Cloaking with Differential Privacy via Hidden Markov Model. Proceedings of the VLDB Endowment (VLDB), 10(12):1901–1904, 2017.
M. L. Yiu, C. S. Jensen, X. Huang, and H. Lu. SpaceTwist: Managing the Trade-Offs Among Location Privacy, Query Performance, and Query Accuracy in Mobile Services. In IEEE International Conference on Data Engineering (ICDE), pages 366–375, 2008.
G. Zhong, I. Goldberg, and U. Hengartner. Louis, lester and pierre: Three protocols for location privacy. In Privacy Enhancing Technologies, pages 62–76. Springer, 2007.
Acknowledgements
We would like to thank Frank Dürr for providing a preliminary draft of the description of some of the established defense techniques as analysed in his survey [58].
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2018 Springer Nature Switzerland AG
About this chapter
Cite this chapter
Bettini, C. (2018). Privacy Protection in Location-Based Services: A Survey. In: Gkoulalas-Divanis, A., Bettini, C. (eds) Handbook of Mobile Data Privacy . Springer, Cham. https://doi.org/10.1007/978-3-319-98161-1_4
Download citation
DOI: https://doi.org/10.1007/978-3-319-98161-1_4
Published:
Publisher Name: Springer, Cham
Print ISBN: 978-3-319-98160-4
Online ISBN: 978-3-319-98161-1
eBook Packages: Computer ScienceComputer Science (R0)