„Assessing Anonymity Techniques Employed in German Court Decisions: A De-Anonymization Experiment“ Accepted to USENIX Security Symposium 2023

Symbolic picture for the article. The link opens the image in a large view.

The paper „Assessing Anonymity Techniques Employed in German Court Decisions: A De-Anonymization Experiment“ has been accepted to 32nd USENIX Security Symposium. This is a joint work of Dominic Deuber, Michael Keuchen and Nicolas Christin.

Democracy requires transparency. Consequently, courts of law must publish their decisions. At the same time, the interests of the persons involved in these court decisions must be protected. For this reason, court decisions in Europe are anonymized using a variety of techniques. To understand how well these techniques protect the persons involved, we conducted an empirical experiment with 54 law students, whom we asked to de-anonymize 50 German court decisions. We found that all anonymization techniques used in these court decisions were vulnerable, most notably the use of initials. Since even supposedly secure anonymization techniques proved vulnerable, our work empirically reveals the complexity involved in the anonymization of court decisions, and thus calls for further research to increase anonymity while preserving comprehensibility. Toward that end, we provide recommendations for improving anonymization quality. Finally, we provide an empirical notion of “reasonable effort,” to flesh out the definition of anonymity in the legal context. In doing so, we bridge the gap between the technical and the legal understandings of anonymity.