National Post (National Edition)

Forget the Kardashian­s. Meet the new influencer­s.

MEET THE NEW BREED OF INFLUENCER­S TAPPING SOCIAL MEDIA’S ‘GOLD RUSH’

- BY JAMES McLEOD

To scroll through her Instagram, Victoria Hui, a.k.a. @thelustlis­tt, is living an impossibly glamorous life.

She’s on vacation every single day, posting meticulous­ly beautiful photos with an ever-so-slight pinkish hue that give each image a dreamlike quality, like a perfect memory. There she is laughing on the streets of Paris; strolling across the Brooklyn Bridge, holding a bouquet of flowers; or relaxing on a resort beach in Mexico.

In the captions, Hui tends to include informatio­n about what swimsuit she’s wearing, who made her purse, or where she’s visiting, along with a jumble of hashtags. And then, nearly indistingu­ishable from all her other photos, there is one of Hui posing in front of the Danforth Music Hall in Toronto, with a corny joke in the caption, a few emojis and, right at the end of the caption, a hashtag: #ad.

That little hashtag is the only hint that this photo might be different. This is the one that pays the bills.

Turns out, Hui’s life isn’t a constant vacation. Instead, posting on Instagram is her full-time job as an all-in-one marketing profession­al, and she’s part of a new class of online influencer­s who are doing an end run around traditiona­l advertisin­g channels and turning social media into a lucrative platform for selling brands.

Facebook Inc. said Friday that hackers had stolen informatio­n that could have allowed them to take over 50 million user accounts, in the latest mishap for the social media company, which has spent months struggling to regain the confidence of policy-makers and the public.

The company said that as many as 90 million Facebook users — out of a total of 2.2 billion — will have to log back into their accounts as a result of the breach. Notificati­ons will appear at the top of the Facebook news feed for the 50 million users who were directly affected, executives said on a call with reporters.

The hackers were able to gain access to profile informatio­n, such as users’ names, hometowns and genders, Facebook said. It is possible they could have had access to more informatio­n, but Facebook said its investigat­ion is in the early stages. No credit card informatio­n was exposed, Facebook executives said, and so far there is no evidence the attackers sought to access private messages or post fraudulent messages from the accounts.

“This is a serious issue and we’re committed to addressing it,” said Facebook chief executive Mark Zuckerberg. “This underscore­s that there are constant attacks from people who are trying to take over accounts or steal informatio­n from people in our community.”

Facebook discovered the breach on Tuesday after noticing a spike in user activity on Sept. 16., which prompted engineers to investigat­e further. They soon found three interlocki­ng bugs on Facebook’s website that attackers had been using to gain access to accounts.

The attackers exploited Facebook’s systems through a flaw in the company’s “View As” feature, the company said, which allows a Facebook user to view his or her own profile as somebody else might see it.

Embedded in the “View As” feature was a video uploader that was incorrectl­y generating security tokens — pieces of code that, under normal circumstan­ces, are designed to let a user remain logged in even after navigating away from Facebook’s website.

The incident prompted Facebook to disable the “View As” feature for the time being, and users are not being asked to change their passwords. The company has not determined who is responsibl­e for the attack.

“People’s privacy and security is incredibly important, and we’re sorry this happened,” Facebook said in a blog post. “It’s why we’ve taken immediate action to secure these accounts and let users know what happened.”

The company said that the security issue was patched Thursday night. Facebook’s stock dropped more than three per cent following the news.

The disclosure adds to a brutal year for Facebook, which is still grappling with the fallout from its Cambridge Analytica fiasco and the prospect of new regulation­s or legislatio­n in Washington that could target tech companies. Zuckerberg and his top lieutenant­s have been summoned repeatedly to Capitol Hill to answer for their company’s role in spreading misinforma­tion and hate speech online.

Democratic Sen. Mark Warner, the ranking member of the Senate Intelligen­ce Committee, called the breach “deeply concerning” and called for a full investigat­ion. “This is another sobering indicator that Congress needs to step up and take action to protect the privacy and security of social media users,” said Warner. “As I’ve said before — the era of the Wild West in social media is over.”

Other lawmakers on Wednesday grilled representa­tives from Alphabet Inc.owned Google, Twitter Inc. and a number of telecom companies on their approach to user privacy, in some cases demanding commitment­s to concrete proposals such as a requiremen­t that companies disclose data breaches within 72 hours of discovery. The companies largely balked at discussing specifics, instead pledging to work with the Senate Commerce Committee to craft a comprehens­ive national privacy law.

Meanwhile, tech companies such as Facebook face growing scrutiny by state and federal law enforcemen­t who are exploring whether to invoke antitrust law against some of the industry’s practices. The U.S. Federal Trade Commission has held a series of hearings on the issue, and the Justice Department this week met with numerous state attorneys-general to discuss Silicon Valley’s handling of user data.

The meeting opened the door to a possible multi-state probe into the tech industry even as federal officials weigh whether they have the resources to mount an antitrust effort. On Friday, the Justice Department’s antitrust chief, Makan Delrahim, said he was receptive to complaints about tech companies but that regulators lack “credible evidence” to build an antitrust case. In the U.S., antitrust lawsuits typically require regulators to marshal enough economic data to persuade a judge that competitio­n has been harmed by a company’s actions.

Facebook on Wednesday notified U.S. federal authoritie­s as well as European data security officials of the security incident, but on Friday it declined to say whether it has reached out to other law enforcemen­t agencies.

Ireland’s Data Protection Commission — charged with monitoring compliance with GDPR, the European Union’s new data privacy law — said in a statement Friday that Facebook’s disclosure “lacks detail” and that it was pushing the company to reveal more as a “matter of urgency.” Violations of GDPR can carry enormous penalties: Up to four per cent of a company’s annual revenue.

 ??  ??
 ?? MARCIO JOSE SANCHEZ / THE ASSOCIATED PRESS FILES ?? Facebook CEO Mark Zuckerberg says this week’s breach “underscore­s that there are constant attacks from people who are trying to take over accounts or steal informatio­n from people in our community.”
MARCIO JOSE SANCHEZ / THE ASSOCIATED PRESS FILES Facebook CEO Mark Zuckerberg says this week’s breach “underscore­s that there are constant attacks from people who are trying to take over accounts or steal informatio­n from people in our community.”

Newspapers in English

Newspapers from Canada