English
Related papers

Related papers: Changes in Conducting Data Protection Risk Assessm…

200 papers

Most prominent research today addresses compliance with data protection laws through consumer-centric and public-regulatory approaches. We shift this perspective with the Privatech project to focus on corporations and law firms as agents of…

Artificial Intelligence · Computer Science 2020-12-24 David Restrepo Amariles , Aurore Clément Troussel , Rajaa El Hamdani

This paper introduces the HH4AI Methodology, a structured approach to assessing the impact of AI systems on human rights, focusing on compliance with the EU AI Act and addressing technical, ethical, and regulatory challenges. The paper…

Differential privacy (DP) is a mathematical definition of privacy that can be widely applied when publishing data. DP has been recognized as a potential means of adhering to various privacy-related legal requirements. However, it can be…

Computers and Society · Computer Science 2024-09-19 Priyanka Nanayakkara , Jessica Hullman

Context: Regulations, such as the European Accessibility Act (EAA), impact the engineering of software products and services. Managing that impact while providing meaningful inputs to development teams is one of the emerging requirements…

Software Engineering · Computer Science 2024-09-12 Oleksandr Kosenkov , Michael Unterkalmsteiner , Daniel Mendez , Jannik Fischbach

Organisations can use artificial intelligence to make decisions about people for a variety of reasons, for instance, to select the best candidates from many job applications. However, AI systems can have discriminatory effects when used for…

Computers and Society · Computer Science 2022-11-29 Marvin van Bekkum , Frederik Zuiderveen Borgesius

Modern privacy regulations provide a strict mandate for data processing entities to implement appropriate technical measures to demonstrate compliance. In practice, determining what measures are indeed "appropriate" is not trivial,…

Cryptography and Security · Computer Science 2023-06-28 Oleksandra Klymenko , Stephen Meisenbacher , Florian Matthes

This report provides a detailed comparison between the Safety and Security measures proposed in the EU AI Act's General-Purpose AI (GPAI) Code of Practice (Third Draft) and the current commitments and practices voluntarily adopted by…

Computers and Society · Computer Science 2025-07-24 Lily Stelling , Mick Yang , Rokas Gipiškis , Leon Staufer , Ze Shen Chin , Siméon Campos , Ariel Gil , Michael Chen

With increasingly digitalized workplaces, the potential for sophisticated analyses of employee data rises. This increases the relevance of people analytics (PA), which are tools for the behavioral analysis of employees. Despite this…

Human-Computer Interaction · Computer Science 2023-05-29 Patrik Zander , Valentin Zieglmeier

Differential privacy (DP) -- a principled approach to producing statistical data products with strong, mathematically provable privacy guarantees for the individuals in the underlying dataset -- has seen substantial adoption in practice…

Cryptography and Security · Computer Science 2025-11-26 Priyanka Nanayakkara , Elena Ghazi , Salil Vadhan

This PhD thesis discusses how European law could improve privacy protection in the area of behavioural targeting. Behavioural targeting, also referred to as online profiling, involves monitoring people's online behaviour, and using the…

Computers and Society · Computer Science 2025-12-16 Frederik Johannes Zuiderveen Borgesius

Deep learning models are nowadays broadly deployed to solve an incredibly large variety of tasks. However, little attention has been devoted to connected legal aspects. In 2016, the European Union approved the General Data Protection…

Machine Learning · Computer Science 2023-09-13 Enzo Tartaglione , Francesca Gennari , Marco Grangetto

Privacy attacks, particularly membership inference attacks (MIAs), are widely used to assess the privacy of generative models for tabular synthetic data, including those with Differential Privacy (DP) guarantees. These attacks often exploit…

Cryptography and Security · Computer Science 2025-04-15 Georgi Ganev , Meenatchi Sundaram Muthu Selva Annamalai , Sofiane Mahiou , Emiliano De Cristofaro

The use of software applications is inevitable as they provide different services to users. The software applications collect, store users' data, and sometimes share with the third party, even without the user consent. One can argue that…

Cryptography and Security · Computer Science 2020-08-10 Abdulrahman Alhazmi , Nalin Asanka Gamagedara Arachchilage

In recent years, our society is being plagued by unprecedented levels of privacy and security breaches. To rein in this trend, the European Union, in 2018, introduced a comprehensive legislation called the General Data Protection Regulation…

Computers and Society · Computer Science 2019-11-05 Supreeth Shastri , Melissa Wasserman , Vijay Chidambaram

Differential Privacy (DP) has emerged as a pivotal approach for safeguarding individual privacy in data analysis, yet its practical adoption is often hindered by challenges in the implementation and communication of DP. This paper presents…

Human-Computer Interaction · Computer Science 2025-07-03 Onyinye Dibia , Prianka Bhattacharjee , Brad Stenger , Steven Baldasty , Mako Bates , Ivoline C. Ngong , Yuanyuan Feng , Joseph P. Near

The recently introduced General Data Protection Regulation (GDPR) requires that when obtaining information online that could be used to identify individuals, their consents must be obtained. Among other things, this affects many common…

Cryptography and Security · Computer Science 2019-05-06 Xuehui Hu , Nishanth Sastry

Cybersecurity risk management consists of several steps including the selection of appropriate controls to minimize risks. This is a difficult task that requires to search through all possible subsets of a set of available controls and…

Cryptography and Security · Computer Science 2024-10-14 Majid Mollaeefar , Silvio Ranise

AI creates and exacerbates privacy risks, yet practitioners lack effective resources to identify and mitigate these risks. We present Privy, a tool that guides practitioners without privacy expertise through structured privacy impact…

Privacy risk assessments aim to analyze and quantify the privacy risks associated with new systems. As such, they are critically important in ensuring that adequate privacy protections are built in. However, current methods to quantify…

Cryptography and Security · Computer Science 2018-09-11 Isabel Wagner , Eerke Boiten

In light of the GDPR, data controllers (DC) need to allow data subjects (DS) to exercise certain data subject rights. A key requirement here is that DCs can reliably authenticate a DS. Due to a lack of clear technical specifications, this…

Cryptography and Security · Computer Science 2024-04-25 Malte Hansen , Andre Büttner