GRC Report Staff

CNMC Says Apple & Amazon Delayed Compliance With 2023 Antitrust Order

Spain’s competition authority is once again turning its attention to Apple and Amazon, and this time not for the original conduct that led to a €194 million fine, but for what it says was a failure to stop it quickly enough.

Ofcom Sends Clear Warning With £1.4 Million Fine Over Missing Age Checks

Ofcom has announced it has fined adult content provider 8579 LLC a total of £1.4 million for failing to put age checks in place, as required under the Online Safety Act.

EBA Sees Stronger ICT Risk Supervision Under DORA but Urges Further Convergence Across the EU

The European Banking Authority on Monday released its follow-up to a 2022 peer review examining how national supervisors assess ICT risk under the Supervisory Review and Evaluation Process, or SREP.

A Code Error in PayPal’s Loan System Left Sensitive Data Exposed for Months

PayPal is notifying a number of customers that their personal information was exposed following a coding error in its PayPal Working Capital loan application, an issue that persisted for more than five months before being identified.

Swedbank Faces Regulatory Review Over Customer Due Diligence Controls

Sweden’s financial watchdog has opened a fresh investigation into Swedbank, this time zeroing in on whether the bank has complied with money laundering regulations, and, more specifically, whether it has done enough to truly know its customers.

SEC Wins Default Judgment Against Bluesky Eagle Capital Management Over False SEC Filings

A federal judge in Manhattan has handed the U.S. Securities and Exchange Commission a win in its case against purported investment adviser Bluesky Eagle Capital Management, entering a final judgment by default after the firm failed to defend itself against allegations that it made material misrepresentations in an SEC filing.

Sweden Reports Record Personal Data Breaches in 2025 as IMY Links Surge to Major Darknet Leaks

It was a record-breaking year for data breaches in Sweden and not the kind anyone wants to celebrate. The Swedish Data Protection Authority, known as IMY, reported that 12,276 personal data breach notifications were filed in 2025, the highest number recorded since the General Data Protection Regulation came into force in 2018.