Privacy
doc
rfc6973: Privacy Considerations for Internet Protocols
personal data 是否可以识别到个体
undetectability:攻击者无法确认某项内容是否存在
unlinkability:无法确认两个信息是否存在关联
treat
surveillance, store data compromise, intrusion, misattribution
correlation, identification, secondary use, disclosure, exclusion
mitigation
data minimization (anonymity, pseudonymity, identity confidentiality, data minimization within identity management)
user participation
security (confidentiality, peer entity authentication, unauthorized usage, inappropriate usage)