Skip to main content
Home/Risks/IBM2025/Reidentification

Reidentification

Sub-category
Risk Domain

AI systems that memorize and leak sensitive personal data or infer private information about individuals without their consent. Unexpected or unauthorized sharing of data and information can compromise user expectation of privacy, assist identity theft, or cause loss of confidential intellectual property.

"Even with the removal or personal identifiable information (PII) and sensitive personal information (SPI) from data, it might be possible to identify persons due to correlations to other features available in the data."

Supporting Evidence (1)

1.
"Including irrelevant but highly correlated features to personal information for model training can increase the risk of reidentification."

Other risks from IBM2025 (63)