Contact tracing has emerged as one of the main mitigation strategies to prevent the spread of pandemics such as COVID-19. Recently, several efforts have been initiated to track individuals, their movements, and interactions using technologies, e.g., Bluetooth beacons, cellular data records, and smartphone applications. Such solutions are often intrusive, potentially violating individual privacy rights and are often subject to regulations (e.g., GDPR and CCPR) that mandate the need for opt-in policies to gather and use personal information. In this paper, we introduce Quest, a system that empowers organizations to observe individuals and spaces to implement policies for social distancing and contact tracing using WiFi connectivity data in a passive and privacy-preserving manner. The goal is to ensure the safety of employees and occupants at an organization, while protecting the privacy of all parties. Quest incorporates computationally- and information-theoretically-secure protocols that prevent adversaries from gaining knowledge of an individual's location history (based on WiFi data); it includes support for accurately identifying users who were in the vicinity of a confirmed patient, and then informing them via opt-in mechanisms. Quest supports a range of privacy-enabled applications to ensure adherence to social distancing, monitor the flow of people through spaces, identify potentially impacted regions, and raise exposure alerts. We describe the architecture, design choices, and implementation of the proposed security/privacy techniques in Quest. We, also, validate the practicality of Quest and evaluate it thoroughly via an actual campus-scale deployment at UC Irvine over a very large dataset of over 50M tuples.
翻译:作为防止传染病蔓延的主要减灾战略之一,例如COVID-19。最近,利用技术,例如蓝牙信标、蜂窝数据记录和智能手机应用等,开展了几项努力,跟踪个人及其移动和互动情况,这些解决办法往往具有侵扰性,有可能侵犯个人隐私权,并经常受到条例(例如,GDPR和CCPR)的制约,这些条例规定需要选择进入政策,以收集和使用个人信息。在本文件中,我们引入了一个查询系统,使各组织能够以被动和隐私保护的方式,利用WiFi连接数据,对个人、其移动和互动进行跟踪,以跟踪个人、移动和接触。这些解决办法往往具有侵扰性,有可能侵犯个人隐私权,而且往往受到法规(例如,GDP和CCPR)的制约,这些条例规定必须使对手无法了解个人所在地历史(基于WiFi数据);它包括支持准确识别病人附近的用户,然后通过WiFiFi连接连接连接的连接数据,然后通过选择保密性安全性安全性安全性机制向他们通报。我们通过安全性安全性安全性安全性安全性应用系统系统对区域进行影响。