Technology Review - Published By MIT
Advertisement

Blindfolding Big Brother, Sort of

Continued from page 1

By Kate Greene

Monday, January 30, 2006

smaller text tool iconmedium text tool iconlarger text tool icon

TR: Who currently uses your software?

JJ: The current customers are governments that are interested in using this to share data with themselves. This is an interesting notion that I think would be a shock to most citizens of any country: You can walk into any government organization and you'll have one group working on, say, money laundering, and ten doors down you have another group working on drug cartels. The only way they have today to figure out whether they're working on the same person is to play the game that I refer to as Go Fish. That means one of them has to pick up the phone and call the other and say "Majed Moqed? Khalid al Mihdhar? Threes? Tens? Jacks? Twos?" They're not going to read the whole list.

This technique allows an entity, whether it's corporate or government, to compare data that's trapped in silos, sensitive data that you wouldn't want to escape. The identity data flows into a central index, and in that index, it figures out when people are the same or related. But it can't tell you the name or the address or the phone number of the people who are the same because it doesn't know. When there's a match, each of the records that match has its pedigree or attribution on it that tells you which system and which record. So it creates a pointer and tells you which record to ask the other group about.

TR: And this is obviously useful for counterterrorism.

JJ: Here's the scenario: The government has a list of people we should never let into the country. It's a secret. They don't want people in other countries to know. And the government tends to not share this list with corporate America. Now, if you have a cruise line, you want to make sure you don't have people getting on your boat who shouldn't even be in the United States in the first place. Prior to the U.S. Patriot Act, the government couldn't go and subpoena 100,000 records every day from every company. Usually, the government would have to go to a cruise line and have a subpoena for a record. Section 215 [of the Patriot Act] allows the government to go to a business entity and say, "We want all your records." Now, the Fourth Amendment, which is "search and seizure," has a legal test called "reasonable and particular." Some might argue that if a government goes to a cruise line and says, "Give us all your data," it is hard to envision that this would be reasonable and particular.

But what other solution do they have? There was no other solution. Our Anonymous Resolution technology would allow a government to take its secret list and anonymize it, allow a cruise line to anonymize their passenger list, and then when there's a match it would tell the government: "record 123." So they'd look it up and say, "My goodness, it's Majed Moqed." And it would tell them which record to subpoena from which organization. Now it's back to reasonable and particular.

Comments

  • Who Knew?
    One of the best articles I've read.

    Database Append - One Way Hashing - Reasonable & Sensative - and my fav, Immutable Audit Log?

    Well done.
    Rate this comment: 12345
    Guest (Colin)
    01/30/2006
    Posts:1
  • Blindfolding Big Brother
    the only thing I would say about the corrupt individual may exist on either side, so the intergrity may be lost. I do believe that this is a defenite step forward in resolving the encrypt and decrypt hassels, but we need to monitor data offloads. Data offloads are primarily a big problem we need to electronically monitor this type of event.
    I want to congratulate you it was a very good article and great idea.
    Jay Pons
    jesuspons@bellsouth.net
    Rate this comment: 12345
    Guest (Jay Pons)
    02/08/2006
    Posts:1

Log In

Forgot your password?     Register »
Advertisement

Videos

Laser-Triggered Chemical Reactions
Featured Content
Sponsored by:
White Papers

Twelve ways to reduce costs with SQL Server 2008
Find out how to reduce costs and get more efficient

Download

Total Economic Impact of SQL Server 2008 Upgrade
Forrester reports on increasing productivity and management capabilities

Download 

Achieving Cost and Resource Savings with UC
How Office Communications Server R2 and Exchange Server can make your business smarter and more efficient

Download 

The Compelling Case for Conferencing
Read how you can improve workload support and find IT efficiencies

Download

How Windows Server 2008 R2 Helps Optimize IT and Save you Money
Read how you can improve workload support and find IT efficiencies

Download

Windows Server 2008 R2 Hyper-V Live Migration
See how Windows Server 2008 R2 and Hyper-V enable virtualization and Live Migration

Download
Advertisement
Subscribe to Technology Review's daily e-mail update. Enter your e-mail address

TECHNOLOGY RESOURCES
Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.