{"id":"https://openalex.org/W4396833271","doi":"https://doi.org/10.1145/3613904.3642116","title":"Deepfakes, Phrenology, Surveillance, and More! A Taxonomy of AI Privacy Risks","display_name":"Deepfakes, Phrenology, Surveillance, and More! A Taxonomy of AI Privacy Risks","publication_year":2024,"publication_date":"2024-05-11","ids":{"openalex":"https://openalex.org/W4396833271","doi":"https://doi.org/10.1145/3613904.3642116"},"language":"en","primary_location":{"id":"doi:10.1145/3613904.3642116","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3613904.3642116","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3613904.3642116","source":null,"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3613904.3642116","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5062891440","display_name":"Hao-Ping Lee","orcid":"https://orcid.org/0000-0002-8063-1034"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Hao-Ping (Hank) Lee","raw_affiliation_strings":["Human-Computer Interaction Institute, Carnegie Mellon University, United States"],"raw_orcid":"https://orcid.org/0000-0002-8063-1034","affiliations":[{"raw_affiliation_string":"Human-Computer Interaction Institute, Carnegie Mellon University, United States","institution_ids":["https://openalex.org/I74973139"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027671632","display_name":"Yu\u2010Ju Yang","orcid":"https://orcid.org/0009-0005-1989-0044"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yu-Ju Yang","raw_affiliation_strings":["Carnegie Mellon University, United States"],"raw_orcid":"https://orcid.org/0009-0005-1989-0044","affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, United States","institution_ids":["https://openalex.org/I74973139"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056176334","display_name":"Thomas \u015eerban von Davier","orcid":"https://orcid.org/0000-0002-0678-3996"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Thomas Serban Von Davier","raw_affiliation_strings":["Department of Computer Science, University of Oxford, United Kingdom"],"raw_orcid":"https://orcid.org/0000-0002-0678-3996","affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Oxford, United Kingdom","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078288310","display_name":"Jodi Forlizzi","orcid":"https://orcid.org/0000-0002-7161-075X"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jodi Forlizzi","raw_affiliation_strings":["Human-Computer Interaction Institute, Carnegie Mellon University, United States"],"raw_orcid":"https://orcid.org/0000-0002-7161-075X","affiliations":[{"raw_affiliation_string":"Human-Computer Interaction Institute, Carnegie Mellon University, United States","institution_ids":["https://openalex.org/I74973139"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5006053551","display_name":"Sauvik Das","orcid":"https://orcid.org/0000-0002-9073-8054"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Sauvik Das","raw_affiliation_strings":["Human-Computer Interaction Institute, Carnegie Mellon University, United States"],"raw_orcid":"https://orcid.org/0000-0002-9073-8054","affiliations":[{"raw_affiliation_string":"Human-Computer Interaction Institute, Carnegie Mellon University, United States","institution_ids":["https://openalex.org/I74973139"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5062891440"],"corresponding_institution_ids":["https://openalex.org/I74973139"],"apc_list":null,"apc_paid":null,"fwci":29.4088,"has_fulltext":false,"cited_by_count":62,"citation_normalized_percentile":{"value":0.99716075,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"19"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10883","display_name":"Ethics and Social Impacts of AI","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/3311","display_name":"Safety Research"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9988999962806702,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.7198527455329895},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6964470148086548},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.6415625214576721},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.6325652599334717},{"id":"https://openalex.org/keywords/privacy-by-design","display_name":"Privacy by Design","score":0.5736697912216187},{"id":"https://openalex.org/keywords/privacy-software","display_name":"Privacy software","score":0.5544650554656982},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5248406529426575},{"id":"https://openalex.org/keywords/privacy-protection","display_name":"Privacy protection","score":0.43869996070861816},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.37355440855026245},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.11637941002845764}],"concepts":[{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.7198527455329895},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6964470148086548},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.6415625214576721},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.6325652599334717},{"id":"https://openalex.org/C193934123","wikidata":"https://www.wikidata.org/wiki/Q7246028","display_name":"Privacy by Design","level":3,"score":0.5736697912216187},{"id":"https://openalex.org/C509729295","wikidata":"https://www.wikidata.org/wiki/Q7246032","display_name":"Privacy software","level":3,"score":0.5544650554656982},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5248406529426575},{"id":"https://openalex.org/C3017597292","wikidata":"https://www.wikidata.org/wiki/Q25052250","display_name":"Privacy protection","level":2,"score":0.43869996070861816},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.37355440855026245},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.11637941002845764}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3613904.3642116","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3613904.3642116","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3613904.3642116","source":null,"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3613904.3642116","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3613904.3642116","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3613904.3642116","source":null,"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4396833271.pdf"},"referenced_works_count":76,"referenced_works":["https://openalex.org/W72496981","https://openalex.org/W1892323599","https://openalex.org/W1978860163","https://openalex.org/W2053637704","https://openalex.org/W2063681056","https://openalex.org/W2120396827","https://openalex.org/W2129835639","https://openalex.org/W2148565121","https://openalex.org/W2152065333","https://openalex.org/W2199542973","https://openalex.org/W2207884471","https://openalex.org/W2550898138","https://openalex.org/W2574271863","https://openalex.org/W2738428139","https://openalex.org/W2781265533","https://openalex.org/W2795776492","https://openalex.org/W2808450727","https://openalex.org/W2884943453","https://openalex.org/W2906503686","https://openalex.org/W2953522645","https://openalex.org/W2963704628","https://openalex.org/W2981659567","https://openalex.org/W2981731882","https://openalex.org/W2993032149","https://openalex.org/W2996745344","https://openalex.org/W2996880115","https://openalex.org/W2998255389","https://openalex.org/W2999331643","https://openalex.org/W3003385079","https://openalex.org/W3037873118","https://openalex.org/W3042583461","https://openalex.org/W3089726498","https://openalex.org/W3092032417","https://openalex.org/W3095347735","https://openalex.org/W3103802018","https://openalex.org/W3112787034","https://openalex.org/W3120632666","https://openalex.org/W3123012225","https://openalex.org/W3125569121","https://openalex.org/W3130391092","https://openalex.org/W3135024179","https://openalex.org/W3135347465","https://openalex.org/W3161073803","https://openalex.org/W3165722314","https://openalex.org/W3173304153","https://openalex.org/W3199665477","https://openalex.org/W3205256332","https://openalex.org/W3210165781","https://openalex.org/W4211126031","https://openalex.org/W4213187648","https://openalex.org/W4220883149","https://openalex.org/W4221104163","https://openalex.org/W4224985411","https://openalex.org/W4246157826","https://openalex.org/W4281939280","https://openalex.org/W4283156811","https://openalex.org/W4283217613","https://openalex.org/W4288057711","https://openalex.org/W4288057734","https://openalex.org/W4288086176","https://openalex.org/W4289438483","https://openalex.org/W4293211147","https://openalex.org/W4306820534","https://openalex.org/W4312619705","https://openalex.org/W4317952105","https://openalex.org/W4320058162","https://openalex.org/W4320519413","https://openalex.org/W4327990559","https://openalex.org/W4366590915","https://openalex.org/W4380320066","https://openalex.org/W4381250863","https://openalex.org/W4383681024","https://openalex.org/W4402304442","https://openalex.org/W6602972026","https://openalex.org/W6801286000","https://openalex.org/W6809287224"],"related_works":["https://openalex.org/W2101582069","https://openalex.org/W2127814706","https://openalex.org/W2994243660","https://openalex.org/W2118333568","https://openalex.org/W2675231964","https://openalex.org/W2549995367","https://openalex.org/W2116878667","https://openalex.org/W4225340788","https://openalex.org/W2800932586","https://openalex.org/W2041722016"],"abstract_inverted_index":{"Privacy":[0],"is":[1,100],"a":[2,25,106,129],"key":[3],"principle":[4],"for":[5],"developing":[6],"ethical":[7],"AI":[8,14,28,35,47,75,103],"technologies,":[9],"but":[10],"how":[11,40],"does":[12],"including":[13],"technologies":[15,48,76,104],"in":[16,50],"products":[17],"and":[18,44,139],"services":[19],"change":[20],"privacy":[21,29,36,55,72,111,133],"risks?":[22],"We":[23,38,68],"constructed":[24],"taxonomy":[26],"of":[27,46,97,131,142],"risks":[30,73,82,90,112,134],"by":[31],"analyzing":[32],"321":[33],"documented":[34],"incidents.":[37],"codified":[39],"the":[41,66,110,132,137],"unique":[42],"capabilities":[43,138],"requirements":[45,141],"described":[49],"those":[51],"incidents":[52],"generated":[53],"new":[54],"risks,":[56],"exacerbated":[57,87],"known":[58],"ones,":[59],"or":[60,86],"otherwise":[61],"did":[62],"not":[63],"meaningfully":[64],"alter":[65,109],"risk.":[67],"present":[69],"12":[70],"high-level":[71],"that":[74,101],"either":[77],"newly":[78],"created":[79],"(e.g.,":[80,88,121],"exposure":[81],"from":[83,91,136],"deepfake":[84],"pornography)":[85],"surveillance":[89],"collecting":[92],"training":[93],"data).":[94],"One":[95],"upshot":[96],"our":[98],"work":[99],"incorporating":[102],"into":[105],"product":[107],"can":[108],"it":[113],"entails.":[114],"Yet,":[115],"current":[116],"approaches":[117],"to":[118],"privacy-preserving":[119],"AI/ML":[120],"federated":[122],"learning,":[123],"differential":[124],"privacy,":[125],"checklists)":[126],"only":[127],"address":[128],"subset":[130],"arising":[135],"data":[140],"AI.":[143]},"counts_by_year":[{"year":2026,"cited_by_count":19},{"year":2025,"cited_by_count":36},{"year":2024,"cited_by_count":7}],"updated_date":"2026-05-18T08:16:58.900851","created_date":"2025-10-10T00:00:00"}
