Artificial Intelligence Advances Threaten Privacy of Health Data

Advances in artificial intelligence have created new threats to the privacy of people's health data, a new University of California, Berkeley, study shows. Led by UC Berkeley engineer Anil Aswani, the study suggests current laws and regulations are nowhere near sufficient to keep an individual's health status private in the face of AI development. The research was published Dec. 21 in the JAMA Network Open journal.

The findings show that by using artificial intelligence, it is possible to identify individuals by learning daily patterns in step data, such as that collected by activity trackers, smartwatches and smartphones, and correlating it to demographic data.

The mining of two years' worth of data covering more than 15,000 Americans led to the conclusion that the privacy standards associated with 1996's HIPAA (Health Insurance Portability and Accountability Act) legislation need to be revisited and reworked.

"We wanted to use NHANES (the National Health and Nutrition Examination Survey) to look at privacy questions because this data is representative of the diverse population in the U.S.," said Aswani. "The results point out a major problem. If you strip all the identifying information, it doesn't protect you as much as you'd think. Someone else can come back and put it all back together if they have the right kind of information."

"In principle, you could imagine Facebook gathering step data from the app on your smartphone, then buying health care data from another company and matching the two," he added. "Now they would have health care data that's matched to names, and they could either start selling advertising based on that or they could sell the data to others."

According to Aswani, the problem isn't with the devices, but with how the information the devices capture can be misused and potentially sold on the open market.

"I'm not saying we should abandon these devices," he said. "But we need to be very careful about how we are using this data. We need to protect the information. If we can do that, it's a net positive."

Though the study specifically looked at step data, the results suggest a broader threat to the privacy of health data.

"HIPAA regulations make your health care private, but they don't cover as much as you think," Aswani said. "Many groups, like tech companies, are not covered by HIPAA, and only very specific pieces of information are not allowed to be shared by current HIPAA rules. There are companies buying health data. It's supposed to be anonymous data, but their whole business model is to find a way to attach names to this data and sell it."

Aswani said advances in AI make it easier for companies to gain access to health data, the temptation for companies to use it in illegal or unethical ways will increase. Employers, mortgage lenders, credit card companies and others could potentially use AI to discriminate based on pregnancy or disability status, for instance.

"Ideally, what I'd like to see from this are new regulations or rules that protect health data," he said. "But there is actually a big push to even weaken the regulations right now. For instance, the rule-making group for HIPAA has requested comments on increasing data sharing. The risk is that if people are not aware of what's happening, the rules we have will be weakened. And the fact is the risks of us losing control of our privacy when it comes to health care are actually increasing and not decreasing."

Liangyuan Na, Cong Yang, Chi-Cheng Lo, Fangyuan Zhao, Yoshimi Fukuoka, Anil Aswani.
Feasibility of Reidentifying Individuals in Large National Physical Activity Data Sets From Which Protected Health Information Has Been Removed With Use of Machine Learning.
JAMA Netw Open. 2018;1(8):e186040. doi: 10.1001/jamanetworkopen.2018.6040

Most Popular Now

Artificial Intelligence Solution Improve…

Clinical trials are a critical tool for getting new treatments to people who need them, but research shows that difficulty finding the right volunteer subjects can undermine the effectiveness of...

South West London Pathology Picks CliniS…

One of the first pathology networks in the country, set up to serve more than two million people in south west London, has signed a contract with CliniSys for a...

Call for Tenders: Studies on eHealth, In…

The European Commission is launching a tender for two studies to survey and analyse progress on the digital transformation of the health and care in the EU, in particular with...

AI-based AI-Rad Companion Chest CT Softw…

AI-Rad Companion Chest CT(1), an intelligent software assistant for radiology, was recently awarded the CE mark, which means Siemens Healthineers can start marketing this artificial intelligence (AI)-based software as a...

Spot On for Healthcare Technology Startu…

10 - 12 October 2019, Berlin, Germany. XPOMET Medicinale brings together care providers, patients, and in general stakeholders from all health-related fields and geographic regions. The Festival of Future Medicine and...

Isansys Named as Finalist for OBN's Most…

Isansys Lifecare is proud to announce it has been shortlisted in the Most Transformative Digital Healthcare Company category at the OBN Annual Awards 2019. The award recognises the significant uptake...

7th MEDICA MEDICINE + SPORTS CONFERENCE

18 - 21 November 2019, Düsseldorf, Germany. What lengths do top athletes go to in order to reach peak performances and which findings in the field of professional sports are relevant...

How can We Successfully Converge the Hea…

Opinion Article by Erik Janssen, VP, Innovative Solutions, Neurology, UCB Pharma. The fourth industrial revolution is upon us and fundamentally changing the way we live, work and interact across all industries...

Carestream Health Completes Sale of Heal…

Carestream Healthhas completed the sale of the company's healthcare information solutions business to Royal Philips (NYSE: PHG, AEX: PHIA), a global leader in health technology, in 26 of the 38...

Allscripts Listed on Lot One of Health S…

Allscripts has been included on a new list of accredited suppliers of electronic patient records that has been published by NHS England and NHSX. The company is one of just...