Article in Proceedings INPROC-2022-01

BibliographyStach, Christoph; Gritti, Clémentine; Przytarski, Dennis; Mitschang, Bernhard: Can Blockchains and Data Privacy Laws be Reconciled? A Fundamental Study of How Privacy-Aware Blockchains are Feasible.
In: Hong, Jiman (ed.); Bures, Miroslav (ed.); Petrlic, Ronald (ed.); Sorge, Christoph (ed.): Proceedings of the 37th ACM/SIGAPP Symposium On Applied Computing.
University of Stuttgart, Faculty of Computer Science, Electrical Engineering, and Information Technology.
pp. 1-10, english.
Brno: ACM, April 2022.
ISBN: 978-1-4503-8713-2; DOI: 10.1145/3477314.3506986.
Article in Proceedings (Conference Paper).
CR-SchemaK.4.1 (Computers and Society Public Policy Issues)
K.6.5 (Security and Protection)
Keywordsblockchains; immutable; tamper-proof; GDPR; privacy assessment
Abstract

Due to the advancing digitalization, the importance of data is constantly increasing. Application domains such as smart cars, smart cities, or smart healthcare rely on the permanent availability of large amounts of data to all parties involved. As a result, the value of data increases, making it a lucrative target for cyber-attacks. Particularly when human lives depend on the data, additional protection measures are therefore important for data management and provision. Blockchains, i.e., decentralized, immutable, and tamper-proof data stores, are becoming increasingly popular for this purpose. Yet, from a data protection perspective, the immutable and tamper-proof properties of blockchains pose a privacy concern. In this paper, we therefore investigate whether blockchains are in compliance with the General Data Protection Regulation (GDPR) if personal data are involved. To this end, we elaborate which articles of the GDPR are relevant in this regard and present technical solutions for those legal requirements with which blockchains are in conflict. We further identify open research questions that need to be addressed in order to achieve a privacy-by-design blockchain system.

ContactSenden Sie eine E-Mail an Christoph.Stach@ipvs.uni-stuttgart.de.
Department(s)University of Stuttgart, Institute of Parallel and Distributed Systems, Applications of Parallel and Distributed Systems
Project(s)NUCLIDE
Entry dateDecember 21, 2021
   Publ. Department   Publ. Institute   Publ. Computer Science