{"id":{"repo_id":"uiuc","oai_identifier":"oai:www.ideals.illinois.edu:2142/99106"},"canonical_url":"https://search.dev.ndltd.org/etd/uiuc/oai:www.ideals.illinois.edu:2142/99106","repository":{"repo_id":"uiuc","name":"University of Illinois - Urbana-Champaign","base_url":"https://www.ideals.illinois.edu/oai-pmh"},"display":{"title":"Visualization and differential privacy","abstract":"Privacy-preserving statistical databases are designed to provide information about a population while preventing end-users from learning about an individual. Meanwhile, scholars have shown that a sophisticated adversary can break such assumption against primitive privacy protections. Differential Privacy (DP) measures how likely an adversary learns about an individual from statistical database queries. Recent state-of-the-art Privacy-Enhancing Technologies (PETs) often implement noise injection based mechanisms in order to satisfy a strong DP protection level. While these privacy protection guidelines minimize risks of private information disclosure, many people have raised concerns on impracticality of the implementation. Based on statistical figures and quantitative experiment results, much literature formalized the utility-privacy tradeoff caused by the noise injection. In contrast, this work describes a qualitative analysis of the Laplacian noise mechanism, one of the most prevalently used DP mechanisms, with regards to the utility-privacy tradeoff on various types of visualization products. The dataset used for the analysis is a time series meter readings from smart grid electricity consumption of selected households from the Republic of Ireland. We examined how five types of visualization products, bar graphs, pie charts, heatmaps, linear plots and scatterplots, present information from statistical database queries. Visualization products showed seasonal, daily and weekly periodic consumption patterns such that power utilities can make a qualitative analysis of consumption profiles. We call these patterns as “visual cues.” After applying the Laplacian noise mechanism on these visualization products, we made qualitative observations on the privacy-preserved figures and looked for notable changes. The project provides graphic findings of a relationship among the composability of queries, the number of queries, and the scale of the Laplacian noise. We observed that visualization products which required less than ten queries from the dataset suffered minimal information loss. However, we spotted a high degradation of visual cues when we implemented the noise mechanism to heatmaps with up to 25,200 composable queries. These visualizations no longer conveyed most key information that used to be present on their unprotected counterparts. To best of our knowledge, no state-of-the-art existing pre/post-processing techniques significantly recovered most visual cues. Finally, we found that some visualizations belonged to neither of the first cases. privacy-preserving linear plots (based on 336 composable queries) and scatterplots (based on 3,639 pairs of parallel queries) inherited some visual cues after executing privacy-preserving procedures. We further discovered some pre/post-processing mechanisms that recovered visual cues.","abstract_html":"Privacy-preserving statistical databases are designed to provide information about a population while preventing end-users from learning about an individual. Meanwhile, scholars have shown that a sophisticated adversary can break such assumption against primitive privacy protections. Differential Privacy (DP) measures how likely an adversary learns about an individual from statistical database queries. Recent state-of-the-art Privacy-Enhancing Technologies (PETs) often implement noise injection based mechanisms in order to satisfy a strong DP protection level. While these privacy protection guidelines minimize risks of private information disclosure, many people have raised concerns on impracticality of the implementation. Based on statistical figures and quantitative experiment results, much literature formalized the utility-privacy tradeoff caused by the noise injection. In contrast, this work describes a qualitative analysis of the Laplacian noise mechanism, one of the most prevalently used DP mechanisms, with regards to the utility-privacy tradeoff on various types of visualization products. The dataset used for the analysis is a time series meter readings from smart grid electricity consumption of selected households from the Republic of Ireland. We examined how five types of visualization products, bar graphs, pie charts, heatmaps, linear plots and scatterplots, present information from statistical database queries. Visualization products showed seasonal, daily and weekly periodic consumption patterns such that power utilities can make a qualitative analysis of consumption profiles. We call these patterns as “visual cues.” After applying the Laplacian noise mechanism on these visualization products, we made qualitative observations on the privacy-preserved figures and looked for notable changes. The project provides graphic findings of a relationship among the composability of queries, the number of queries, and the scale of the Laplacian noise. We observed that visualization products which required less than ten queries from the dataset suffered minimal information loss. However, we spotted a high degradation of visual cues when we implemented the noise mechanism to heatmaps with up to 25,200 composable queries. These visualizations no longer conveyed most key information that used to be present on their unprotected counterparts. To best of our knowledge, no state-of-the-art existing pre/post-processing techniques significantly recovered most visual cues. Finally, we found that some visualizations belonged to neither of the first cases. privacy-preserving linear plots (based on 336 composable queries) and scatterplots (based on 3,639 pairs of parallel queries) inherited some visual cues after executing privacy-preserving procedures. We further discovered some pre/post-processing mechanisms that recovered visual cues.","abstract_has_math":false,"creators":["Lee, Hyun Bin"],"institution":"University of Illinois at Urbana-Champaign","degree_name":"M.S.","degree_level":"Thesis","degree_discipline":"Computer Science","degree_department":null,"school":null,"contributors":["Gunter, Carl A."],"advisors":[],"committee_chairs":[],"committee_members":[],"year":2018,"date_issued":"2018-03-02T19:59:40Z","date_published":"2018-03-02T19:59:40Z","updated_at":"2026-07-22T22:24:37Z","subjects":["Visualization","Differential privacy"],"languages":["en"],"rights":["Copyright 2017 Hyun Bin Lee"],"rights_urls":[],"identifier_entries":[]},"links":{"outbound_url":"http://hdl.handle.net/2142/99106","outbound_label":"Handle","outbound_source":"dc:identifier"},"metadata_groups":[{"id":"people","label":"People","entries":[{"key":"dc:contributor","label":"Contributor","values":["Gunter, Carl A."]},{"key":"dc:creator","label":"Author","values":["Lee, Hyun Bin"]}]},{"id":"academic_context","label":"Academic Context","entries":[{"key":"dc:date","label":"Dc Date","values":["2018-03-02T19:59:40Z","2020-03-03T10:15:22Z","2017-07-14","2017-08"]},{"key":"dc:type","label":"Dc Type","values":["text"]},{"key":"thesis:degree_discipline","label":"Discipline","values":["Computer Science"]},{"key":"thesis:degree_level","label":"Degree Level","values":["Thesis"]},{"key":"thesis:degree_name","label":"Degree Name","values":["M.S."]},{"key":"thesis:institution_name","label":"Thesis Institution Name","values":["University of Illinois at Urbana-Champaign"]}]},{"id":"subjects_keywords","label":"Subjects and Keywords","entries":[{"key":"dc:subject","label":"Dc Subject","values":["Visualization","Differential privacy"]}]},{"id":"language_rights","label":"Language and Rights","entries":[{"key":"dc:language","label":"Dc Language","values":["en"]},{"key":"dc:rights","label":"Dc Rights","values":["Copyright 2017 Hyun Bin Lee"]}]},{"id":"identifiers","label":"Identifiers","entries":[{"key":"dc:identifier","label":"Identifier","values":["http://hdl.handle.net/2142/99106"]}]},{"id":"additional","label":"Additional Metadata","entries":[{"key":"dc:description","label":"Description","values":["Privacy-preserving statistical databases are designed to provide information about a population while preventing end-users from learning about an individual. Meanwhile, scholars have shown that a sophisticated adversary can break such assumption against primitive privacy protections. Differential Privacy (DP) measures how likely an adversary learns about an individual from statistical database queries. Recent state-of-the-art Privacy-Enhancing Technologies (PETs) often implement noise injection based mechanisms in order to satisfy a strong DP protection level. While these privacy protection guidelines minimize risks of private information disclosure, many people have raised concerns on impracticality of the implementation. Based on statistical figures and quantitative experiment results, much literature formalized the utility-privacy tradeoff caused by the noise injection. In contrast, this work describes a qualitative analysis of the Laplacian noise mechanism, one of the most prevalently used DP mechanisms, with regards to the utility-privacy tradeoff on various types of visualization products. The dataset used for the analysis is a time series meter readings from smart grid electricity consumption of selected households from the Republic of Ireland. We examined how five types of visualization products, bar graphs, pie charts, heatmaps, linear plots and scatterplots, present information from statistical database queries. Visualization products showed seasonal, daily and weekly periodic consumption patterns such that power utilities can make a qualitative analysis of consumption profiles. We call these patterns as “visual cues.” After applying the Laplacian noise mechanism on these visualization products, we made qualitative observations on the privacy-preserved figures and looked for notable changes. The project provides graphic findings of a relationship among the composability of queries, the number of queries, and the scale of the Laplacian noise. We observed that visualization products which required less than ten queries from the dataset suffered minimal information loss. However, we spotted a high degradation of visual cues when we implemented the noise mechanism to heatmaps with up to 25,200 composable queries. These visualizations no longer conveyed most key information that used to be present on their unprotected counterparts. To best of our knowledge, no state-of-the-art existing pre/post-processing techniques significantly recovered most visual cues. Finally, we found that some visualizations belonged to neither of the first cases. privacy-preserving linear plots (based on 336 composable queries) and scatterplots (based on 3,639 pairs of parallel queries) inherited some visual cues after executing privacy-preserving procedures. We further discovered some pre/post-processing mechanisms that recovered visual cues.","Submission published under a 24 month embargo labeled 'U of I Access', the embargo will last until 2019-08-01","The student, Hyun Bin Lee, accepted the attached license on 2017-07-13 at 20:45.","The student, Hyun Bin Lee, submitted this Thesis for approval on 2017-07-13 at 20:46.","This Thesis was approved for publication on 2017-07-14 at 16:21.","DSpace SAF Submission Ingestion Package generated from Vireo submission #11462 on 2018-03-02 at 13:02:12","Made available in DSpace on 2018-03-02T19:59:40Z (GMT). No. of bitstreams: 2 LEE-THESIS-2017.pdf: 2121652 bytes, checksum: 3cb7964de7632573b01a17ec928eb2ca (MD5) LICENSE.txt: 4209 bytes, checksum: a72e507dc984642d2ab6decf912a1343 (MD5) Previous issue date: 2017-07-14","Embargo set by: Seth Robbins for item 105060 Lift date: 2020-03-02T19:59:52Z Reason: Author requested U of Illinois access only (OA after 2yrs) in Vireo ETD system","Embargo set by: Seth Robbins for item 105060 Lift date: 2020-03-02T20:02:46Z Reason: Author requested U of Illinois access only (OA after 2yrs) in Vireo ETD system","U of I Only Restriction Lifted for Item 105060 on 2020-03-03T10:15:22Z."]},{"key":"dc:format","label":"Dc Format","values":["application/pdf"]},{"key":"dc:title","label":"Title","values":["Visualization and differential privacy"]}]}],"canonical_facts":{"dc:contributor":["Gunter, Carl A."],"dc:creator":["Lee, Hyun Bin"],"dc:date":["2018-03-02T19:59:40Z","2020-03-03T10:15:22Z","2017-07-14","2017-08"],"dc:description":["Privacy-preserving statistical databases are designed to provide information about a population while preventing end-users from learning about an individual. Meanwhile, scholars have shown that a sophisticated adversary can break such assumption against primitive privacy protections. Differential Privacy (DP) measures how likely an adversary learns about an individual from statistical database queries. Recent state-of-the-art Privacy-Enhancing Technologies (PETs) often implement noise injection based mechanisms in order to satisfy a strong DP protection level. While these privacy protection guidelines minimize risks of private information disclosure, many people have raised concerns on impracticality of the implementation. Based on statistical figures and quantitative experiment results, much literature formalized the utility-privacy tradeoff caused by the noise injection. In contrast, this work describes a qualitative analysis of the Laplacian noise mechanism, one of the most prevalently used DP mechanisms, with regards to the utility-privacy tradeoff on various types of visualization products. The dataset used for the analysis is a time series meter readings from smart grid electricity consumption of selected households from the Republic of Ireland. We examined how five types of visualization products, bar graphs, pie charts, heatmaps, linear plots and scatterplots, present information from statistical database queries. Visualization products showed seasonal, daily and weekly periodic consumption patterns such that power utilities can make a qualitative analysis of consumption profiles. We call these patterns as “visual cues.” After applying the Laplacian noise mechanism on these visualization products, we made qualitative observations on the privacy-preserved figures and looked for notable changes. The project provides graphic findings of a relationship among the composability of queries, the number of queries, and the scale of the Laplacian noise. We observed that visualization products which required less than ten queries from the dataset suffered minimal information loss. However, we spotted a high degradation of visual cues when we implemented the noise mechanism to heatmaps with up to 25,200 composable queries. These visualizations no longer conveyed most key information that used to be present on their unprotected counterparts. To best of our knowledge, no state-of-the-art existing pre/post-processing techniques significantly recovered most visual cues. Finally, we found that some visualizations belonged to neither of the first cases. privacy-preserving linear plots (based on 336 composable queries) and scatterplots (based on 3,639 pairs of parallel queries) inherited some visual cues after executing privacy-preserving procedures. We further discovered some pre/post-processing mechanisms that recovered visual cues.","Submission published under a 24 month embargo labeled 'U of I Access', the embargo will last until 2019-08-01","The student, Hyun Bin Lee, accepted the attached license on 2017-07-13 at 20:45.","The student, Hyun Bin Lee, submitted this Thesis for approval on 2017-07-13 at 20:46.","This Thesis was approved for publication on 2017-07-14 at 16:21.","DSpace SAF Submission Ingestion Package generated from Vireo submission #11462 on 2018-03-02 at 13:02:12","Made available in DSpace on 2018-03-02T19:59:40Z (GMT). No. of bitstreams: 2 LEE-THESIS-2017.pdf: 2121652 bytes, checksum: 3cb7964de7632573b01a17ec928eb2ca (MD5) LICENSE.txt: 4209 bytes, checksum: a72e507dc984642d2ab6decf912a1343 (MD5) Previous issue date: 2017-07-14","Embargo set by: Seth Robbins for item 105060 Lift date: 2020-03-02T19:59:52Z Reason: Author requested U of Illinois access only (OA after 2yrs) in Vireo ETD system","Embargo set by: Seth Robbins for item 105060 Lift date: 2020-03-02T20:02:46Z Reason: Author requested U of Illinois access only (OA after 2yrs) in Vireo ETD system","U of I Only Restriction Lifted for Item 105060 on 2020-03-03T10:15:22Z."],"dc:format":["application/pdf"],"dc:identifier":["http://hdl.handle.net/2142/99106"],"dc:language":["en"],"dc:rights":["Copyright 2017 Hyun Bin Lee"],"dc:subject":["Visualization","Differential privacy"],"dc:title":["Visualization and differential privacy"],"dc:type":["text"],"thesis:degree_discipline":["Computer Science"],"thesis:degree_level":["Thesis"],"thesis:degree_name":["M.S."],"thesis:institution_name":["University of Illinois at Urbana-Champaign"]},"updated_at":"2026-07-22T22:24:37Z"}