Agentic AI-Powered Re-Identification: An Emerging, Scalable Threat to Mobility Microdata Privacy

arXiv:2606.27936 · cs.CR, cs.AI, stat.AP · Submitted 2026-06-26 · Read on arXiv

cs.CR, cs.AI, stat.AP

Submitted: 2026-06-26

Updated: 2026-06-26

Comments: 15 pages, 2 figures

Journal ref: Privacy in Statistical Databases (PSD 2026), Lecture Notes in Computer Science, vol. 16925, pp. 319-332, Springer, Cham (2027)

DOI: 10.1007/978-3-032-37883-5_21

License: http://creativecommons.org/licenses/by/4.0/

The gist: The widespread collection of fine-grained location data by commercial data brokers creates a re-identification risk that is not widely recognised by the public.

Terminology

Abstract

The widespread collection of fine-grained location data by commercial data brokers creates a re-identification risk that is not widely recognised by the public. While prior research has established that mobility traces are highly unique and that individuals can, in principle, be identified from a handful of spatio-temporal points, such attacks have historically required significant manual effort from skilled analysts, limiting their practical scale. In this feasibility study, we demonstrate in a real world setting that agentic AI fundamentally changes this threat model. We present an end-to-end pipeline in which large language model agents autonomously search the open web, cross-reference public records and social media, and resolve raw coordinate sequences to candidate identities - without human intervention. We evaluate the pipeline on a spatio-temporal dataset containing simulated location points anchored at and around true home and work addresses, focusing on a high-risk disclosure scenario. Our results demonstrate that, from spatio-temporal data and public sources alone, our agentic AI successfully re-identified 18 of the 25 re-identifiable individuals (72%) and 18 of 43 cases overall (41.9%). We discuss implications for Statistical Disclosure Control (SDC) practice and outline the near-future escalation that data custodians and regulators must anticipate. De facto anonymity - an implicit foundation of SDC practice - is shifting. Agentic AI strengthens the case that re-identification is reasonably likely by any means under the GDPR Recital-26 standard, at costs of minutes-and-dollars per target.

Sources

Related papers