Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
skip to main content
research-article
Free access
Just Accepted

BB-FLoC: A Blockchain-based Targeted Advertisement Scheme with K-Anonymity

Online AM: 13 June 2024 Publication History

Abstract

New data protection regulations, e.g., General Data Protection Regulation (GDPR), enforced advertisement providers to amend their conventional approaches, enhancing users’ data privacy. As a result, major Internet browsers such as Apple Safari and Firefox were quick to announce their plans to remove third-party cookies from their browsers entirely. In an effort to preserve conventional advertising practices, Google proposed a Federated Learning of Cohorts (FLoC) system to deliver higher privacy guarantees to users whilst also providing interest-based advertising. In FLoC, users sharing similar browsing histories are put into cohorts, and thus advertisements can be targeted to them as a group, rather than individually. Since each user independently calculates their cohort group, a minimum cohort size cannot be enforced, making them vulnerable to identification and tracking. To address this issue, in this paper, a blockchain-based FLoC (BB-FLoC) system is proposed that guarantees k-anonymity for its users whilst at the same time allowing for effective personalised advertising. We further evaluate the operational feasibility of such a design and demonstrate that k-anonymity guarantees can be fulfilled in a fully decentralized manner in the proposed system. The proposed system is relatively lightweight, showcasing that it can be adapted for low-end devices such as mobile phones.

References

[1]
Lawrence Abrams. 2021. Microsoft disables Google’s FLoC tracking in Microsoft Edge, for now. Retrieved March 28, 2023 from https://www.bleepingcomputer.com/news/microsoft/microsoft-disables-googles-floc-tracking-in-microsoft-edge-for-now/
[2]
Google Research & Ads. 2020. Evaluation of Cohort Algorithms for the FLoC API. Retrieved March 28, 2023 from https://github.com/google/ads-privacy/blob/master/proposals/FLoC/FLOC-Whitepaper-Google.pdf
[3]
AmIFloced. 2021. Am I FLoCed? Retrieved March 18, 2023 from https://amifloced.org/
[4]
Adam Back. 2002. Hashcash - A Denial of Service Counter-Measure. (09 2002).
[5]
Alex Berke and Dan Calacci. 2022. Privacy Limitations Of Interest-based Advertising On The Web: A Post-mortem Empirical Analysis Of Google’s FLoC. arXiv preprint arXiv:2201.13402 (2022).
[6]
Thomas Bocek. 2023. TomP2P. Retrieved January 22, 2024 from https://github.com/tomp2p/TomP2P
[7]
Matt Burgess. 2021. Google’s plan to eradicate cookies is crumbling. Retrieved March 17, 2023 from https://www.wired.co.uk/article/google-floc-trial
[8]
Sunghyun Cho and Sejong Lee. 2019. Survey on the Application of BlockChain to IoT. In 2019 International Conference on Electronics, Information, and Communication (ICEIC). 1–2. https://doi.org/10.23919/ELINFOCOM.2019.8706369
[9]
European Commission. 2024. What personal data is considered sensitive? Retrieved January 15, 2024 from https://commission.europa.eu/law/law-topic/data-protection/reform/rules-business-and-organisations/legal-grounds-processing-data/sensitive-data/what-personal-data-considered-sensitive_en
[10]
Bennett Cyphers. 2021. Google’s FLoC Is a Terrible Idea. Retrieved March 29, 2023 from https://www.eff.org/deeplinks/2021/03/googles-floc-terrible-idea
[11]
Brian Dean. 2021. Google Chrome Statistics for 2022. Retrieved March 11, 2023 from https://backlinko.com/chrome-users
[12]
Ghemawat & Dean. 2021. LevelDB is a fast key-value storage library written at Google that provides an ordered mapping from string keys to string values. Retrieved March 14, 2023 from https://github.com/google/leveldb
[13]
Ali Dorri, Salil S Kanhere, Raja Jurdak, and Praveen Gauravaram. 2017. Blockchain for IoT security and privacy: The case study of a smart home. In 2017 IEEE international conference on pervasive computing and communications workshops (PerCom workshops). IEEE, 618–623.
[14]
John R. Douceur. 2002. The Sybil Attack. In Revised Papers from the First International Workshop on Peer-to-Peer Systems (IPTPS ’01). Springer-Verlag, Berlin, Heidelberg, 251–260.
[15]
Alessandro Epasto, Andrés Muñoz Medina, Steven Avery, Yijian Bai, Robert Busa-Fekete, CJ Carey, Ya Gao, David Guthrie, Subham Ghosh, James Ioannidis, Junyi Jiao, Jakub Lacki, Jason Lee, Arne Mauser, Brian Milch, Vahab Mirrokni, Deepak Ravichandran, Wei Shi, Max Spero, Yunting Sun, Umar Syed, Sergei Vassilvitskii, and Shuo Wang. 2021. Clustering for Private Interest-Based Advertising (KDD ’21). Association for Computing Machinery, New York, NY, USA, 9 pages. https://doi.org/10.1145/3447548.3467180
[16]
Medina et al. 2021. Measuring Sensitivity of Cohorts Generated by the FLoC API. Retrieved March 17, 2023 from https://docs.google.com/viewer?a=v&pid=sites&srcid=Y2hyb21pdW0ub3JnfGRldnxneDo1Mzg4MjYzOWI2MzU2NDgw
[17]
Medina et al. 2022. Get to know the new Topics API for Privacy Sandbox. Retrieved March 27, 2023 from https://blog.google/products/chrome/get-know-new-topics-api-privacy-sandbox/
[18]
Ohtsu & Foote. 2021. FLoC Simulator. Retrieved March 26, 2023 from https://github.com/shigeki/floc_simulator
[19]
David Giessen. 2019. Blockchain and the GDPR’s right to erasure. B.S. thesis. University of Twente.
[20]
Google. 2021. FLoC Origin Trial & Clustering. Retrieved March 27, 2023 from https://sites.google.com/a/chromium.org/dev/Home/chromium-privacy/privacy-sandbox/floc
[21]
F. Maxwell Harper and Joseph A. Konstan. 2015. The MovieLens Datasets: History and Context. ACM Trans. Interact. Intell. Syst. 5, 4, Article 19 (dec 2015), 19 pages. https://doi.org/10.1145/2827872
[22]
Garrett Johnson, Julian Runge, and Eric Seufert. 2022. Privacy-Centric Digital Advertising: Implications for Research. Customer Needs and Solutions 9 (06 2022), 1–6. https://doi.org/10.1007/s40547-022-00125-4
[23]
Michał Król, Onur Ascigil, Sergi Rene, Alberto Sonnino, Mustafa Al-Bassam, and Etienne Rivière. 2021. Shard scheduler: object placement and migration in sharded account-based blockchains. In Proceedings of the 3rd ACM Conference on Advances in Financial Technologies. 43–56.
[24]
Edvinas Kruminis. 2023. A blockchain-based implementation of FLoC (Google). Retrieved March 11, 2023 from https://github.com/ekruminis/floc-blockchain
[25]
Natasha Lomas. 2021. Google isn’t testing FLoCs in Europe yet. Retrieved March 22, 2023 from https://techcrunch.com/2021/03/24/google-isnt-testing-flocs-in-europe-yet/
[26]
Satoshi Nakamoto. 2009. Bitcoin: A Peer-to-Peer Electronic Cash System. Cryptography Mailing list at https://metzdowd.com (03 2009).
[27]
Rescorla. 2021. Privacy analysis of FLoC. Retrieved March 10, 2023 from https://blog.mozilla.org/en/privacy-security/privacy-analysis-of-floc/
[28]
s Sarmah. 2018. Understanding Blockchain Technology. 8 (08 2018), 23–29. https://doi.org/10.5923/j.computer.20180802.02
[29]
Rescorla & Thomson. 2021. Technical Comments on FLoC Privacy. Retrieved March 29, 2023 from https://mozilla.github.io/ppa-docs/floc_report.pdf
[30]
Florian Turati, Carlos Cotrini, Karel Kubicek, and David Basin. 2023. Locality-Sensitive Hashing Does Not Guarantee Privacy! Attacks on Google’s FLoC and the MinHash Hierarchy System. arXiv:2302.13635 [cs.CR]
[31]
Xiao Yue, Huiju Wang, Dawei Jin, Mingqiang Li, and Wei Jiang. 2016. Healthcare data gateways: found healthcare intelligence on blockchain with novel privacy risk control. Journal of medical systems 40, 10 (2016), 1–8.
[32]
Shiwen Zhang, Tingting Yao, Voundi Koe Arthur Sandor, Tien-Hsiung Weng, Wei Liang, and Jinshu Su. 2021. A novel blockchain-based privacy-preserving framework for online social networks. Connection Science 33, 3 (2021), 555–575.
[33]
Ping Zhao, Hongbo Jiang, Chen Wang, Haojun Huang, Gaoyang Liu, and Yang Yang. 2019. On the Performance of kk -Anonymity Against Inference Attacks With Background Information. IEEE Internet of Things Journal 6, 1 (2019), 808–819. https://doi.org/10.1109/JIOT.2018.2858240

Recommendations

Comments

Information & Contributors

Information

Published In

cover image Distributed Ledger Technologies: Research and Practice
Distributed Ledger Technologies: Research and Practice Just Accepted
EISSN:2769-6480
Table of Contents
Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than the author(s) must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected].

Publisher

Association for Computing Machinery

New York, NY, United States

Publication History

Online AM: 13 June 2024
Accepted: 23 May 2024
Revised: 21 March 2024
Received: 30 March 2023

Check for updates

Author Tags

  1. Security and Privacy
  2. Blockchain
  3. Distributed Systems
  4. Advertising

Qualifiers

  • Research-article

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • 0
    Total Citations
  • 56
    Total Downloads
  • Downloads (Last 12 months)56
  • Downloads (Last 6 weeks)11
Reflects downloads up to 04 Oct 2024

Other Metrics

Citations

View Options

View options

PDF

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

Get Access

Login options

Full Access

Media

Figures

Other

Tables

Share

Share

Share this Publication link

Share on social media