Anonymization Provider for Mobile Location Privacy

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing anonymization solutions for mobile device location information are inadequate as they can be easily tracked, and k-anonymity solutions are too specific, allowing service providers to identify the actual requestor, leading to privacy breaches.

Innovation Solution

A system and method where an anonymization provider receives location information from a mobile device, determines if it meets anonymity requirements, and generates an obfuscated location, with the ability to request new obfuscation values if necessary, ensuring privacy by breaking the link between the anonymization provider and the service provider, and using a k-anonymity model to protect location privacy.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If location information is provided to service providers, then location-based services can be provided, but user privacy is compromised

Engineering Contradiction:
Improvelocation-based service qualityVSAvoiduser privacy
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The patent introduces an anonymization provider as an intermediary between the mobile device and service provider. This mediator receives location information from the mobile device, anonymizes it by removing identifying elements, and forwards the anonymized location to the service provider. The service provider can then provide location-based services without having access to the user's real identity, thus resolving the contradiction between service quality and privacy protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of information

If k-anonymity model is used for anonymization, then some privacy protection is achieved, but service providers can still identify the actual requestor

Engineering Contradiction:
Improveprivacy protection levelVSAvoidanonymity effectiveness
Core Design Contradiction:
Loss of informationVSReliability

Solution Approach 1:

The patent extracts and removes specific identifying elements from location information before providing it to service providers. Instead of relying solely on k-anonymity which keeps location data, the invention removes device identifiers, device type information, and other metadata that could be used to trace the location back to the specific user. This extraction of identifying elements strengthens anonymity effectiveness while maintaining privacy protection.

Inventive Principle:
Principle #2Taking out (Extraction)

3Loss of information

If location obfuscation is applied, then privacy is protected, but application quality deteriorates due to incomplete information

Engineering Contradiction:
Improveprivacy protectionVSAvoidapplication quality
Core Design Contradiction:
Loss of informationVSManufacturing precision

Solution Approach 1:

The patent applies different levels of anonymization to different parts of the location information. The core location data (latitude, longitude) is preserved with sufficient accuracy for service providers to deliver quality location-based services. Meanwhile, identifying elements and metadata are completely removed or anonymized. This local differentiation ensures that service quality is maintained while privacy protection is achieved.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS9319876B2Anonymizing location information of a mobile device
Publication Date: 2016.04.19 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US9319876B2 patent drawing
  • US9319876B2 patent drawing
  • US9319876B2 patent drawing

AI summary

Anonymizing location information of a mobile device by an anonymization provider. The anonymization provider receives, from the mobile device, location information identifying the location of the mobile device and anonymity requirements. The anonymization provider determines whether the received location information satisfies the received anonymity requirements. Based on the received location information satisfying the received anonymity requirements, the anonymization provider generates an obfuscated location for the mobile device and sends the obfuscated location to the mobile device. Based on the received location information not satisfying the received anonymity requirements, the anonymization provider sends a request for new anonymity requirements to the mobile device.