IP Library Granted Patent US 9,747,467
Granted Patent B2
US 9,747,467 · App. 14/749,761 · Granted Aug 29, 2017

Anonymized data generation method and apparatus

Inventor: Yuji Yamaoka (Kawasaki, JP)
Assignee: FUJITSU LIMITED
G06F21/6254G06F17/30563G06F17/30598H04L63/04H04L63/0421
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,747,467
App. No.
14/749,761
Granted
Aug 29, 2017
Kind
B2
Abstract

A method for generating anonymized data includes: (A) extracting, from plural data blocks, each of which includes a secret attribute value and a numeric attribute value, plural groups of data blocks, wherein each of the plural groups includes data blocks that include a first data block, which has not been grouped, whose frequency distribution of the secret attribute value satisfies a predetermined condition and whose numeric attribute values are within a certain area that has a predetermined size; and (B) replacing the numeric attribute values of the data blocks that belong to each group of the plural groups with a numeric attribute value calculated for the group. And, the certain area is determined without any relation with other certain areas for other groups.

Claims (29)

1. An anonymized data generation method, comprising:

generating, by using a computer and from a plurality of data blocks each of which includes a secret attribute value and a numeric attribute value, a plurality of groups each of which includes plural data blocks that satisfy a predetermined condition, wherein the predetermined condition includes a first condition and a second condition, the first condition being a condition that frequency distribution of secret attribute values included in the plural data blocks matches a predetermined pattern, and the second condition being a condition that points represented by numeric attribute values included in the plural data blocks are included in a first area that has a predetermined size; and

replacing, by using the computer and for each of the plurality of groups, a numeric attribute value included in each of plural data blocks that belong to the group with a numeric attribute value calculated for the group, and

wherein the generating comprises:

classifying each of the plurality of data blocks into any of a plurality of second areas that have the predetermined size and do not overlap with each other, based on a numeric attribute value included in the data block; and

upon detecting that a set of data blocks included in a certain second area does not satisfy the predetermined condition, changing the set by deleting a data block from the set and/or adding, to the set, a data block included in another second area adjacent to the certain second area, so that changed set satisfies the predetermined condition.

2. The anonymized data generation method as set forth in claim 1 , further comprising deleting, by using the computer and for each of the plurality of groups, secret attribute values included in plural data blocks that belong to group.

3. The anonymized data generation method as set forth in claim 1 , wherein the generating comprises extracting, from a group of the plurality of groups, a first data block that is other than data blocks, which are mandatory for a state where the first condition is satisfied.

4. The anonymized data generation method as set forth in claim 1 , wherein the first condition includes a lower limit value for a number of kinds of secret attribute values, and the changing comprises:

extracting, on a basis of a data block included in the set and from the another second area, a second data block that is to be added to the set so that a number of kinds of secret attribute values included in the data blocks included in the set and the second data block is equal to or greater than the lower limit value; and

determining the first area that has the predetermined size based on a numeric attribute value included in the extracted second data block.

5. The anonymized data generation method as set forth in claim 1 , further comprising upon detecting that a third data block that does not belong to any of the plurality of groups, classifying, by using the computer, the third data block to a group of the plurality of groups, when a distance between a point represented by a numerical attribute value included in the third data block and a reference position of a certain area that includes points represented by numerical attribute values included in plural data blocks that belong to the group is equal to or less than a distance that corresponds to the predetermined size, and the first condition is still satisfied even when the third data block is added to the group.

6. The anonymized data generation method as set forth in claim 1 , wherein the replacing comprises:

randomly generating, for each of the plurality of groups, an area that has the predetermined size and includes points represented by numeric attribute values included in plural data blocks which belong to the group; and

replacing, for each of the plurality of groups, a numeric attribute value included in each of plural data blocks which belong to the group with a numeric attribute value that corresponds to a position within an area generated for the group.

7. A non-transitory computer-readable storage medium storing a program that causes a computer to execute a process, the process comprising:

generating, from a plurality of data blocks each of which includes a secret attribute value and a numeric attribute value, plural a plurality of groups each of which includes plural data blocks that satisfy a predetermined condition, wherein the predetermined condition includes a first condition and a second condition, the first condition being a condition that frequency distribution of secret attribute values included in the plural data blocks matches a predetermined pattern, and the second condition being a condition that points represented by numeric attribute values included in the plural data blocks are included in a first area that has a predetermined size; and

replacing, for each of the plurality of groups, a numeric attribute value included in each of plural data blocks that belong to the group with a numeric attribute value calculated for the group, and

wherein the generating comprises:

classifying each of the plurality of data blocks into any of a plurality of second areas that have the predetermined size and do not overlap with each other, based on a numeric attribute value included in the data block; and

upon detecting that a set of data blocks included in a certain second area does not satisfy the predetermined condition, changing the set by deleting a data block from the set and/or adding, to the set, a data block included in another second area adjacent to the certain second area, so that changed set satisfies the predetermined condition.

8. An information processing apparatus, comprising

a memory; and

a processor coupled to the memory and configured to:

generate, from a plurality of data blocks each of which includes a secret attribute value and a numeric attribute value, a plurality of groups each of which includes plural data blocks that satisfy a predetermined condition, wherein the predetermined condition includes a first condition and a second condition, the first condition being a condition that frequency distribution of secret attribute values included in the plural data blocks matches a predetermined pattern, and the second condition being a condition that points represented by numeric attribute values included in the plural data blocks are included in a first area that has a predetermined size; and

replace, for each of the plurality of groups, a numeric attribute value included in each of plural data blocks that belong to the group with a numeric attribute value calculated for the group, and

wherein the generating comprises:

classifying each of the plurality of data blocks into any of a plurality of second areas that have the predetermined size and do not overlap with each other, based on a numeric attribute value included in the data block; and

upon detecting that a set of data blocks included in a certain second area does not satisfy the predetermined condition, changing the set by deleting a data block from the set and/or adding, to the set, a data block included in another second area adjacent to the certain second area, so that changed set satisfies the predetermined condition.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 15, 2015
From: YAMAOKA, YUJI
To: FUJITSU LIMITED
Reel/Frame 036095/0986 →
Continuity (2)
Continuation PCTJP2013050631 · Jan 16, 2013
Related Publication 20150294121A1 · Oct 15, 2015