DateTopic&PresentationArticlePresenterScriber
Aug. 26Course outline and Questionnaire
MBTA v. Anderson case
Hack the Olympics!
Olympic Hacking Part II
N/AN/A
Aug. 28Crypto in Privacy and Anonymity
N/AN/ABob Arens
Sep. 2Network basics for Privacy and Anonymity
N/AN/AMadhuri Rapaka
Sep. 4MixerChaum. Untraceable electronic mail, return addresses, and digital pseudonyms
Communications of the ACM. 24(2) 1981.
EJ JungDustin Nohr
Sep. 4User's perception on privacy and anonymityConti and Sobiesk. An honest man has nothing to fear: user perceptions on web-based information disclosure.
Proceedings of the 3rd symposium on Usable privacy and security, 2007.
EJ JungDustin Nohr
Sep. 9Anonymous web browsingLevine and Shields. Hordes: a multicast based protocol for anonymity.
Journal of Computer Security, Vol. 10, Num. 3, 2002, pp. 213-240.
Matt Hootman
slides
Joe Trapani
Sep. 9Protecting VoIPSrivatsa et al. Preserving Caller Anonymity in Voice-over-IP Networks.
IEEE Symposium on Security and Privacy, 2008.
EJ Jung
slides
Joe Trapani
Sep. 11CookiesThis reading material list is based on Prof. Bellovin's with his approval.
  1. HTTP State Management Mechanism (RFC 2965). Also see this blog posting.
  2. Doubleclick's Privacy Policy. Important -- follow the links on the right.
    EPIC Complaint Against DoubleClick
  3. Google privacy policy.
    Amazon Privacy Policy
    Facebook privacy policy.
    Myspace Privacy Policy.
EJ JungMadhuri Rapaka
Sep. 16WiretappingThis reading material list is based on Prof. Bellovin's with his approval.
Background reading on CALEA — don't prepare review on this.
Electronic Privacy Information Center - Wiretapping
  1. The Athens Affair, Vassilis Prevelakis and Diomidis Spinellis, IEEE Spectrum, July 2007.
  2. Risking Communications Security: Potential Hazards of the Protect America Act, Bellovin et al. IEEE Security & Privacy 6(1).
EJ Jung
slides
Thomas Hornbeck
Sep. 18Privacy and Transparency in VotingN/A Prof. Doug JonesDustin Nohr
Sep. 23Tor

Attacks on Tor
Dingledine et. al. Tor: the second-generation onion router.
Proceedings of the 13th conference on USENIX Security Symposium, 2004.
Murdoch and Danezis. Low-cost traffic analysis of Tor.
IEEE Symposium on Security and Privacy, 2005.
Peter Likarish
slides
Mike Schmoll
Sep. 25Graph basics for social networksEJ JungMike Schmoll
Sep. 30Anonymity in Social NetworkBackstrom et. al. Wherefore art thou r3579x?: anonymized social networks, hidden patterns, and structural steganography
Proceedings of the 16th international conference on World Wide Web (WWW) 2007.
Ben Harner
slides
Matt Wittenburg
Sep. 30Anonymity in Social NetworkHay et al. Anonymizing social networks.
UMass Technical Report. 2007.
Hung Tran
slides
Matt Wittenburg
Oct. 2Anonymity in Social NetworkDiaz et. al. On the Impact of Social Network Profiling on Anonymity.
The 8th International Symposium on Privacy Enhancing Technologies (PETS 2008).
Saranya ThirumoolanTiffany Brenneman
Oct. 2Anonymity in Social NetworkKorolova et al. Link Privacy in Social Networks.
IEEE 24th International Conference on Data Engineering, 2008. ICDE 2008.
Saranya ThirumoolanTiffany Brenneman
Oct. 7Database basics for P&AEJ JungTiffany Brenneman
Oct. 9Privacy in DatabasesSweeney. k-anonymity: a model for protecting privacy.
International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems, 2002.
Manzoor MurshedMatt Wittenburg
Oct. 9Privacy in DatabasesMachanavajjhala et. al. l-Diversity: Privacy Beyond k-Anonymity.
ACM Transactions on Knowledge Discovery from Data, 2007.
Kedar KulkarniMatt Wittenburg
Oct. 14Privacy in DatabasesXiao and Tao. M-invariance: towards privacy preserving re-publication of dynamic datasets.
Proceedings of the 2007 ACM SIGMOD Int'l Conference on Management of Data, 2007.
Paul CottonMark Richmond
Oct. 14Privacy in DatabaseLi et. al. t-Closeness: Privacy Beyond k-Anonymity and l-Diversity
Proceedings of IEEE 23rd Int'l Conference on Data Engineering (ICDE) 2007.
Paul CottonMark Richmond
Oct. 16Privacy in DatabaseDwork. Differential Privacy
33rd International Colloquium on Automata, Languages and Programming---ICALP 2006, Part II, pp. 1--12, 2006.
Patrick McDonoughCameron Littke
Oct. 16Privacy in HardwareLest We Remember: Cold Boot Attacks on Encryption Keys
Proceedings of 17th Usenix Security Symposium, 2008.
Nick ArnoldCameron Littke
Oct. 21Hippocratic DatabasesAgrawal et al. Hippocratic databases.
Proceedings of the 28th international conference on Very Large Data Bases (VLDB), 2002.
JT KimbellJed Wendell
Oct. 21Hippocratic DatabasesLeFevre et. al. Limiting disclosure in Hippocratic databases.
Proceedings of the 30th International Conference on Very Large Data Bases (VLDB), 2004.
Timothy VanFossonJed Wendell
Oct. 23Privacy in SearchJones et al. "I know what you did last summer": query logs and user privacy
Proceedings of the 16th ACM Conference on information and knowledge management, 2007.
Brandon HassJoe Trapani
Oct. 28Privacy in SearchSong et al. Practical techniques for searches on encrypted data.
Proceedings of IEEE Symposium on Security and Privacy, 2000.
Kedar KulkarniAlex Halfpenny
Oct. 28Privacy in SearchBoneh et al. Public Key Encryption with Keyword Search.
Advances in Cryptology - EUROCRYPT 2004.
Cuong BuiAlex Halfpenny
Oct. 30Privacy in Data MiningAgrawal et. al. On the design and quantification of privacy preserving data mining algorithms.
Proceedings of the twentieth ACM SIGMOD-SIGACT-SIGART symposium on Principles of database systems, 2001.
Manzoor MurshedMark Richmond
Oct. 30Attacks in Data MiningNarayanan and Shmatikov. Robust De-anonymization of Large Sparse Datasets
IEEE Symposium on Security and Privacy, 2008. SP 2008.
Ben HesfordMark Richmond
Nov. 4Ubiquitious ComputingSaponas et. al. Devices That Tell On You: Privacy Trends in Consumer Ubiquitous Computing.
Proceedings of 16th Usenix Security Symposium, 2007.
Jonathan HallAlex Halfpenny
Nov. 4OAuthOAuth - Getting Started (no review required)
OpenID identity discovery with XRI and XRDS
Xin ZhangAlex Halfpenny
Nov. 6Privacy in HealthJ. Young and A.I. Anton, Are Google Health's Privacy Practices Healthy?
The Privacy Place.
Kevin TangneyCameron Littke
Nov. 6Privacy in HealthIs That Vault Really Protecting Your Privacy?
The Privacy Place.
Kevin TangneyCameron Littke
Nov. 6Privacy in PolicyDHS Privacy Office Official Guidances
Kevin TangneyCameron Littke
Nov. 6Privacy in PolicyHHS Office for Civil Rights - HIPAA Kevin TangneyCameron Littke
Nov. 11Attacks in Side ChannelsBalzorotti et al. ClearShot: Eavesdropping on Keyboard Input from Video
IEEE Symposium on Security and Privacy, 2008.
Jason FriesRobert Everson
Nov. 11Privacy economicsVila et al. Why we can't be bothered to read privacy policies: models of privacy economics as a lemons market.
Proceedings of the 5th international conference on Electronic commerce, 2003.
Brian WilliamsRobert Everson
Nov. 13Law and PrivacyGuest lectureProf. Randall BezansonRobert Everson
Nov. 18EthicsGuest lectureBob ArensJed Wendell
Nov. 20EthicsGuest lectureBob ArensThomas Hornbeck
N/APrivacy in PolicyPrivacy Guidance General in White House
N/APrivacy in PolicyGuide to U.S. Census Bureau Data Stewardship/Privacy Impact Assessments
Privacy in PolicyCommunications Assistance for Law Enforcement Act N/A
Privacy in PolicyElectronic Privacy Information Center - Wiretapping N/A
Other Anonymous SystemsNambiar and Wright. Salsa: a structured approach to large-scale anonymity.
Proceedings of the 13th ACM conference on Computer and communications security, 2006.
N/A
Other Anonymous SystemsClarke et al. Freenet: A Distributed Anonymous Information Storage and Retrieval System
Proceedings of International Workshop on Design Issues in Anonymity and Unobservability 2000.
N/A
Nov. 25 and 27Thanksgiving breakN/AN/A
Dec 2 and 4Term paper presentationN/AN/A
Dec 9 and 11Term paper presentationN/AN/A