Related Experiment Video
Updated: Jan 28, 2026

Identification of Fatty Acids in Bacillus cereus
Published on: December 5, 2016
Re-Identification Risk in HIPAA De-Identified Datasets: The MVA Attack
Victor Janmey1, Peter L Elkin1
1Department of Biomedical Informatics, Jacobs School of Medicine and Biomedical Sciences, State University of New York at Buffalo, Buffalo, NY.
Abstract:
We present a re-identification attack that uses indirect (non-HIPAA) identifiers to target a vulnerable subset of records de-identified to the HIPAA Safe Harbor standard, those involving motor vehicle accidents (MVAs). Documentation of an MVA in a patient note creates a significant risk to patient privacy through the MVA re-identification attack, with a relative risk of 537 compared to the general population. Patients in a significant MVA resulting in either permanent injury, hospitalization or death (for any victim) should have the accident location information omitted due to the significant risk of re-identification of HIPAA de-identified data. Clinicians should also consider omitting location information for any MVA, as it significantly increases the risk of re-identification.
Related Concept Videos
Acid Attack on Concrete
The rate at which hydrogen...
Sulfate Attack on Concrete
Sulfates from sources like soil, groundwater, or industrial effluents...
Relative Risk
Factors Affecting the Risk of Infection
The integrity and count of the white blood cells help the body resist pathogens and fight infection. When impaired, it reduces the body's resistance to pathogens. The acidic pH levels of the gastrointestinal, genitourinary tracts, and skin...
Identifying Statistically Significant Differences: The F-Test
Methods of Classification and Identification

