Thursday, March 29, 2018

150 Million Users Of The MyFitnessPal App Had Their Data Stolen By A Third Party

Under Armour, the owner of the food and nutrition application and website, recently learned that an unauthorized party acquired users’ usernames, email addresses and passwords.

Approximately 150 million users of the MyFitnessPal food and nutrition app had their usernames, email addresses, and password stolen in a data security breach, its owner, Under Armour said Thursday.

Under Armour said it was notifying users of the application about the issue.

The statement said the company was made aware of the data breach on March 25. At this point, the company believes 150 million user accounts were affected.

The affected data did not include government-issued identifiers, like Social Security numbers and driver's license numbers, according to the statement.

Payment card data was also not affected.



from BuzzFeed - USNews https://bzfd.it/2IbDcYD

The Personal Stylist Who Says She Was Sexually Harassed By Ryan Seacrest Has Filed A Police Report

Angela Weiss / AFP / Getty Images

Ryan Seacrest's former personal stylist, who alleges that for years he sexually assaulted and harassed her, has filed a police report in Los Angeles, writing in a column that she "won't be silenced."

Seacrest has strongly denied Suzie Hardy's allegations of sexual misconduct during her time as his stylist between 2007 and 2012, and E! said it an internal probe found "insufficient evidence" to substantiate the claims.

In her column for the Hollywood Reporter titled "I Won't Be Silenced, And I've Filed A Police Report," Hardy vowed to press her case, alleging E!'s owner, NBC Universal, conducted an incomplete investigation.

E! has said that "any claims that question the legitimacy of this investigation are completely baseless," citing a two-month inquiry in which outside attorneys interviewed more than two dozen people.

Los Angeles police on Thursday confirmed that a report had been filed against Seacrest, but would not provide any further information, citing privacy rules.

Hardy initially went public with her story in February, days before Seacrest was set to appear on the Oscar red carpet. She told Variety at the time that that Seacrest harassed her and grabbed her genitals, gave her a "bear hug" while wearing only underpants, and forcefully slapped her buttocks, leaving a red welt.

Two weeks after Hardy reported her allegations to E!'s human resources department, she said she was fired.

Hardy said she filed her police report to ensure that her claims against Seacrest will be properly investigated, writing that the silence surrounding her allegations in Hollywood "has been deafening."

"So much for 'Let's believe the women,' right? Unless you're the president of the United States or a TV cash cow, apparently," Hardy wrote in THR. "Those who work with Ryan seem to hope I will just go away. Well, I'm not going away. I'm thriving in the truth and feel more inspired than ever."

Seacrest's attorney told BuzzFeed News in a statement that Hardy was reviving old claims after being refused money in exchange for silence.

"After Mr. Seacrest denied each and every one of Ms. Hardy’s decade old claims, after Mr. Seacrest refused to pay Ms. Hardy any money whatsoever, and after an independent legal investigation did not support her claims, Ms. Hardy went to the press attacking the legitimacy of the investigation," attorney Andrew Baum said. "Now, after being refused money and unhappy with the independent legal investigation, Ms. Hardy now claims to have spoken to the authorities. We will continue to cooperate and we remain confident that Mr. Seacrest will once again be cleared of any wrongdoing."

LINK: A Former E! Employee Is Backing Claims That Ryan Seacrest Sexually Harassed His Former Stylist

LINK: A Producer For E! Says She Was Fired For Running A Comment From Eva Longoria About Catt Sadler

LINK: Catt Sadler Has Left E! Entertainment After Learning Her Cohost Makes Almost Double Her Salary




from BuzzFeed - USNews https://bzfd.it/2GoHSdf

Trump Repeated A Lie About His Long-Promised Border Wall Starting Construction

President Donald Trump on Thursday repeated a lie that construction on his long-promised wall at the U.S.-Mexico border had started.

"We started building our wall, I'm so proud of it. We started. We have $1.6 billion. You saw the pictures yesterday. I said what a thing of beauty," he said while addressing a crowd of union workers and supporters in Ohio.

Thing is, the pictures he was no doubt referring to were the ones he tweeted on Wednesday, which were from work that began in 2009.

He wrote, "Great briefing this afternoon on the start of our Southern Border WALL!"

The 2009 construction project is to replace a 2.25-mile section in the California-Mexico border wall, according to a statement from US Customs and Border Protection in February. The original, made of scrap metal and other material, went up in the 1990s.

"Although the existing wall has proven effective at deterring unlawful cross border activity, smuggling organizations damaged and breached this outdated version of a border wall several hundred times during the last two years," Customs and Border Patrol (CBP) said in a statement.

A Department of Homeland Security official told BuzzFeed News on Wednesday that Trump had met with Homeland Security Secretary Kirstjen Nielsen and CBP Commissioner Kevin McAleenan on Wednesday afternoon, but did not provide details of the briefing.

The Border Patrol office in San Diego tweeted pictures of the project in February, with some of them making it into Trump's tweet.

Trump has repeatedly promised to build a wall along the U.S.-Mexico border and to compel Mexico to pay for it, a plan his Mexican counterparts have rebuffed multiple times.

White House Chief of Staff John Kelly said in January that Trump had "changed his attitude" on the wall and had started to favor paring back the wall's scale while acknowledging that Mexico would not pay for it, though the president contradicted Kelly's statements the next day.

Some of his most ardent supporters have turned against him for his perceived inaction on the wall. Ann Coulter, once a cheerleader of the president's views on immigration, recently called him "a shallow, lazy ignoramus."

LINK: Trump Tweeted Pictures Claiming "The Start" Of His Border Wall, But It Was Actually An Old Project



from BuzzFeed - USNews https://bzfd.it/2GEy9Tf

You Can Make Decent Money By Selling The Box Or Bag You Got Your Designer Clothes In

I throw my Glossier pouches away, but apparently you can sell them for $25 apiece.

The other day, I was perusing Poshmark, an online marketplace for buying and selling used fashion, after my first-ever sale on the site. I typed in a designer brand, then immediately changed the filter to "price low to high," because, duh. The first pages of results were for used boxes or bags. Not purses, but actual shopping bags.

The other day, I was perusing Poshmark, an online marketplace for buying and selling used fashion, after my first-ever sale on the site. I typed in a designer brand, then immediately changed the filter to "price low to high," because, duh. The first pages of results were for used boxes or bags. Not purses, but actual shopping bags.

Poshmark

Yes, as in the bag they give you when you shop at a designer store. Like Michael Kors, for example.

Yes, as in the bag they give you when you shop at a designer store. Like Michael Kors, for example.

Poshmark

Or the box your jewelry comes in.

Or the box your jewelry comes in.

Poshmark

Or literal shoeboxes for $4.

Or literal shoeboxes for $4.

Poshmark

Or...this, being sold for $4?

Or...this, being sold for $4?

Poshmark

And there are a LOT being sold.

And there are a LOT being sold.

Poshmark

But do people actually buy them? According to one seller, yes. A "posher" named Nadeen told BuzzFeed News she has made about $15 from selling boxes online, in addition to selling her used clothes. Which is, not bad?

But do people actually buy them? According to one seller, yes. A "posher" named Nadeen told BuzzFeed News she has made about $15 from selling boxes online, in addition to selling her used clothes. Which is, not bad?

Poshmark

She said she has sold boxes for Pandora and Michael Kors.

"I’m selling it because many people always need a gift box, especially for brands they buy in other stores that aren’t specifically for that name brand (such as TJ Maxx, Ross, or Marshall’s)," she said. "I thought that by selling it, someone who needed that gift box could have easy access to it since I don’t need it anymore and it’s cute."

Some sellers have lofty goals. This "posher" is selling a bunch of Lululemon tote bags (which you get for free when you buy anything in store or online) for $95.

Some sellers have lofty goals. This "posher" is selling a bunch of Lululemon tote bags (which you get for free when you buy anything in store or online) for $95.

Poshmark

The seller clarified in the description that the $95 was for all the bags.

You can also spend "$15 each for each large bag and small blue bag. $10 each for small red bags."

Another hot item are Glossier pouches, which you get any time you buy a product. This listing features five of them, being sold for $22 each.

Another hot item are Glossier pouches, which you get any time you buy a product. This listing features five of them, being sold for $22 each.

Poshmark

Some listings include stickers, which you also get any time you make a purchase at Glossier.

Some listings include stickers, which you also get any time you make a purchase at Glossier.

Poshmark

And it appears that yes, these apparently are selling. Check out these pouches, being sold for $25 each, which sold out on this "posher's" account.

And it appears that yes, these apparently are selling. Check out these pouches, being sold for $25 each, which sold out on this "posher's" account.

Poshmark

Some shoppers do call the "poshers" out for selling the free bags though.

Some shoppers do call the "poshers" out for selling the free bags though.

Poshmark

Including this person, who said you don't even need to buy anything from Lululemon to get one.

Including this person, who said you don't even need to buy anything from Lululemon to get one.

Poshmark

BuzzFeed News contacted both Glossier and Lululemon about this phenomenon, but didn't immediately hear back.

Neither did Poshmark, when asked about selling practices on its site.



from BuzzFeed - USNews https://bzfd.it/2E65a5E

A Christian Publisher Was Running The Same Ad Fraud Scheme As Newsweek Media Group

BuzzFeed

The malicious code used by Newsweek Media Group websites as part of an ad fraud scheme has been found on sites owned by Christian Media Corporation, an online publisher that, just like NMG, has close ties to a controversial religious leader and the university he founded.

The code was detected by researchers at DoubleVerify, a digital media measurement company that previously found it on several properties owned by NMG. The code enables a publisher running it to earn revenue on ads that would otherwise not meet industry standards for viewability.

Wayne Gattinella, the CEO of DoubleVerify, told BuzzFeed News that after weeks of scanning it has only found the code on sites connected to these two companies. “This suggests a very tight relationship, technically or otherwise, between these two organizations,” he said.

Reporting by BuzzFeed News also found that five CMC websites have been engaging in the same type of ad fraud that was also present on several NMG websites.

These findings raise questions about CMC and NMG’s connections to each other, and their relationships with Olivet University and a larger network of companies and organizations linked to Korean pastor David Jang.

CMC and NMG both previously funneled millions of dollars to Olivet as part of what the university has described as research and development agreements. Both companies continue to work with the university, and their executives have served as advisers and trustees for Olivet. In 2013 and 2014, NMG, under its previous corporate name, was itself listed as a trustee of Olivet. The company gave Olivet more than $2.8 million during that period.

NMG is already facing scrutiny for a recent string of layoffs, controversial firings, the continued employment of a chief content officer who was fired from Reuters over complains of sexual harassment, and the fact that the company is the target of a widening fraud investigation by the Manhattan District Attorney’s Office. That probe recently saw members of the DA’s office execute a search warrant at the upstate New York campus of Olivet University. This followed a January search of Newsweek’s Manhattan offices.

In separate statements to BuzzFeed News, NMG and CMC blamed “overseas” technology partners for the malicious code. This appears to contradict a previous statement from NMG to the Wall Street Journal earlier this month that placed the blame on two of its employees. CMC and NMG did not reply to questions about what, if any, business ties exist between the companies.

“NMG works with overseas tech firms that service several publishers. The code in question originated from one of them,” said NMG. The company did not reply when asked why it now blames overseas partners when it previously pointed the finger at two employees.

“The programmatic advertising (and its codes) and audience development are outsourced, and CMC is looking into its overseas IT vendors to analyze the matter and any inconsistencies,” read the statement from CMC.

Both companies said their ties to Olivet University and Pastor David Jang have no connection to advertising practices or the malicious code.

“To imply that this code originated from a university or a church that the co-founders and executives may attend is categorically false and amounts to clear defamation and religious discrimination,” read a statement from Newsweek Media Group.

“Dr. David Jang is an evangelical theologian who loves the Lord Jesus Christ and the Bible,” read the statement from CMC. “He has no role with CMC.”

The university also told BuzzFeed News it has no connection to the code or to related ad fraud.

“This issue has zero, absolutely no relevance at all to Olivet University,” Ronn Torossian, spokesperson for Olivet, told BuzzFeed News. “To be clear, these are not related to any work we have done in R&D. None at all, and any claims otherwise are false and completely made up.”

CMC and NMG ran "identical" code

CMC / Via cmcigroup.com

CMC is led by William Anderson, who served as the treasurer of Olivet University’s board of trustees as recently as 2016.

CMC’s ties to Jang’s ministries are public and well-documented, including in a previous Mother Jones investigation and a series of investigations by Christianity Today, among other public documents. Similar to NMG, CMC “gave more than a million dollars to Olivet through licensing and R&D agreements in 2013 and 2014.”

The chair of the board of advisers of CMC is Rev. Dr. Geoff Tunnicliffe, who has served in the top role at the World Evangelical Alliance, an organization closely linked to Olivet University and Jang according to public statements, documents, and previous reporting. In 2007, Tunnicliffe gave the commencement address and received an honorary degree from Olivet. He also joined with Jang to cut the ribbon on a new evangelical center that opened in New York, and is listed, along with the WEA, as a key partner of Olivet University’s research and development programs. CMC also lists Jang’s World Olivet Assembly and the WEA among its “Global Advisory Partners.”

The relationship between CMC, Olivet, and other Jang-affiliated organizations is what initially put the company in the same sphere as NMG. But the discovery of identical malicious code on CMC and NMG properties, as well as similar ad fraud strategies, reveals that the similarities also extend to unique, and dubious, advertising practices and technology.

Executives from DoubleVerify emphasized to BuzzFeed News that it’s incredibly rare to see this kind of malicious code running on sites operated by seemingly legitimate publishers. They also said the code on CMC’s sites was identical to that found on NMG’s.

“It’s the same fingerprint, it’s literally the identical code between the two entities,” said Gattinella of DoubleVerify.

DoubleVerify identified the malicious code on a total of nine sites owned by CMC: christianpost.com, christiantimes.com, christianitydaily.com, christiantoday.com, christianexaminer.com, crossmap.com, breathecast.com, bibleportal.com, and gnli.com.

Along with the CMC sites, DoubleVerify also located the code on an additional, previously unreported site linked to NMG, techtimes.com. When contacted by BuzzFeed News, NMG said techtimes.com is owned by a separate legal entity and “is not managed or controlled by NMG.”

That’s not entirely true. BuzzFeed News confirmed with multiple ad exchanges that ad inventory for techtimes.com was being sold directly by NMG as recently as this week. The ads.txt file for techtimes.com also listed several direct relationships with ad exchanges that use the unique seller ID assigned to Newsweek Media Group or an affiliated brand. (Ads.txt is an ad industry initiative used by many top publishers to list the ad exchanges and other resellers that are authorized to sell their inventory.)

After BuzzFeed News contacted NMG with information about it selling ads for techtimes.com, the site’s ads.txt file was edited to remove all NMG seller IDs.

Techtimes.com is part of a company called 33 Universal that was partly owned and chaired by NMG co-founder and former chief officer Jonathan Davis. In 2012 several 33 Universal sites were integrated into the NMG’s operations, according to a journalist who worked at the company at the time. Many sites that were once part of 33 Universal are still owned by NMG, according to domain registration records. Some, such as celebeat.com and designtimes.com, have not been updated since last year.

NMG’s statement to BuzzFeed News said Davis "has since divested his interests” in 33 Universal. (His wife, Tracey Davis, is the president of Olivet University.)

Buying and manipulating traffic

Along with the code and ties to Olivet and Jang, another similarity between CMC and NMG properties is the way they have been buying traffic and manipulating it in ways that meet industry definitions for ad fraud.

A BuzzFeed News story from January revealed that several NMG websites were committing ad fraud by purchasing low-quality traffic from ad networks and manipulating it to appear as if it was high-quality referral traffic. The company initially denied engaging in ad fraud, but its subsequent admission of the presence of malicious code further supported the findings of ad fraud investigation firm Social Puncher, which were backed up by similar data from DoubleVerify and by reporting from BuzzFeed News.

Traffic data from web analytics service SimilarWeb shows that five CMC sites have purchased traffic from ad networks that specialize in generating it using pop-up and pop-under windows opened on unsuspecting users, a tactic previously detailed by BuzzFeed News.

Once the window is open, the traffic is first routed to a CMC domain such as c2.cmcigroup.com or tc.cmcigroup.com before being passed along to a CMC site with advertising. Redirecting traffic in this manner disguises its origins and makes it appear as if it’s organic referral traffic, rather than low-quality purchased traffic. The practice is forbidden by Google’s ad network as well as by many major ad networks and ad exchanges. It’s also the same practice that NMG was engaged in.

Vine Report / Via vinereport.com

SimilarWeb data shows that top CMC properties like the Christian Post received traffic laundered through c2.cmcigroup.com, and that last year it also received it from tc.cmcigroup.com. CMC also operates sites such as vinereport.com that receive almost 100% of their audience as a result of this method of buying and manipulating traffic, according to SimilarWeb. Vinereport.com is a general news and entertainment site that appears not to publish any religious content in spite of being run by a Christian publisher. DoubleVerify said it flagged vinereport.com for ad impression fraud in the first quarter of this year.

In spite of the new evidence of connections between CMC and NMG’s sites, neither company would speak on the record to address questions about formal or informal ties. A source with knowledge of one company emphasized that they are separate legal entities.

Of course, NMG said the same about techtimes.com, which it was selling ads for.



from BuzzFeed - USNews https://ift.tt/2GlQIIN

The Government Wants Visa Applicants To Hand Over Their Social Media Usernames

Nicolas Asfouri / AFP / Getty Images

The State Department wants people who are applying for a visa to enter the United States to hand over their social media usernames as well as past phone numbers and email addresses.

In documents scheduled to be published in Friday's Federal Register, the state department is seeking input from the public on the proposed new requirements over the next 60 days.

Under the proposal, visa applicants would be required to provide "identifiers" they've used on social media platforms in the previous five years as well as previously used telephone numbers, email addresses, and international travel.

"The Department will collect this information for identity resolution and vetting purposes based on statutory visa eligibility standards," the notice for the document on Federal Register states.

The state department estimates the new proposal would affect approximately 710,000 people applying for immigrant visas and nearly 14 million people applying for nonimmigrant visas to enter the country on business or for education purposes.

Social media, email, and phone number histories are currently sought from visa applicants marked for extra scrutiny, according to the Associated Press. Approximately 65,000 people are currently affected by this, including those who have traveled to terrorist-controlled areas, the AP reported.

LINK: People Are Worried About DHS Plans To Gather Social Media Info



from BuzzFeed - USNews https://ift.tt/2GGXNH2

The Brother Of The Parkland School Shooter Has Been Barred From Having Guns And Must Get Therapy

Pool / Reuters

The brother of the Parkland, Florida, school shooter has been barred from possessing guns and must undergo mental health counseling as part of his sentencing related to trespassing on the campus.

Zachary Cruz, 18, the younger brother of Marjory Stoneman Douglas High School shooter Nikolas Cruz, was arrested for trespassing March 19 while skateboarding on the campus. Police said they had warned him to stay away from the school, but that he had visited three times since the Feb. 14 shooting that killed 17 people.

In a statement read by his lawyer, Zachary Cruz said he just wanted to "try to make sense of this." He also apologized "to anyone who felt scared or threatened by his presence" on the campus. On Thursday, he pleaded no contest to the trespassing charge and was released from Broward County Jail after also being sentenced to six months of probation.

Zachary Cruz, brother of Nikolas Cruz, is escorted into the courtroom for a hearing on March 29, 2018.

Susan Stocker / AP

His attorney argued that he was being punished for his brother's crimes and that his $500,000 bond was unconstitutional.

Conditions of his probation also include refraining from contact with the victims' families and wearing a GPS monitor.

Florida's Baker Act, which allows officials to prohibit individuals who potentially pose a threat from buying or owning firearms, became law just one week before Zachary Cruz's arrest.

The shooting at Marjory Stoneman Douglas precipitated a national debate over gun violence that swept up elected officials and high school students across the country, culminating in a nationwide march on Saturday that drew hundreds of thousands of people.

LINK: Police Want To Block The Brother Of The Suspected Parkland School Shooter From Owning A Gun



from BuzzFeed - USNews https://ift.tt/2E21TEt