GRC Report Staff

FinCEN Says Financial Institutions Flagged Nearly $5 Billion Tied to Suspected Human Smuggling

Financial institutions flagged nearly $5 billion in suspicious activity potentially connected to human smuggling between 2023 and 2025, according to an analysis released Thursday by the U.S. Treasury Department’s Financial Crimes Enforcement Network. FinCEN examined 67,540 Bank Secrecy Act reports from the three-year period, looking for the financial patterns that appeared repeatedly around suspected smuggling activity.

Uber Freight Investigates Cyber Incident After Hackers Claim Data Theft

Uber Freight says its logistics business is investigating a cybersecurity incident after the hacking and extortion group Helix claimed it had stolen data from the company, according to Reuters, which first reported the incident. An Uber Freight spokesperson told Reuters there had been no impact on business operations and that its systems were operating normally.

RentGrow to Pay $2.25 Million to Resolve Tenant Screening Allegations

A federal court has entered a stipulated order requiring RentGrow to pay a $2.25 million civil penalty and accept an injunction to resolve allegations that its tenant-screening practices violated the Fair Credit Reporting Act and the Federal Trade Commission Act, the Justice Department announced Wednesday. The Federal Trade Commission investigated the case and referred it to the department.

EU Packaging Rules Take Effect, Putting PFAS Restrictions First

The European Union’s Packaging and Packaging Waste Regulation, known as the PPWR, began to apply across the bloc on Aug. 12, bringing with it restrictions on per- and polyfluoroalkyl substances in food-contact packaging. Packaging containing PFAS above limits set by the regulation can no longer be placed on the EU market.

NewRez Reaches $15.5 Million Multistate Settlement Over Force-Placed Insurance

NewRez LLC has agreed to a $15.5 million multistate settlement after regulators found the mortgage servicer charged more than 4,200 borrowers for force-placed insurance even though they already had active homeowners policies.

South Korea Fines KT $37.4 Million After Rogue Cell Equipment Exposed Customer Data

South Korea’s Personal Information Protection Commission has imposed a $37.4 million (KRW 53.979 billion) administrative fine on KT after concluding that failures in the telecom company’s security controls allowed attackers to reach its internal network and expose the personal information of 16,647 subscribers. The regulator also ordered KT to correct the deficiencies and publish the results of the sanctions, while recommending broader improvements to its privacy program.

Fiducian Ordered to Pay $5.2 Million After ESG Claims Outran Fund Oversight

An Australian investment manager has been ordered to pay approximately $5.2 million (AUD $7.3 million) after a court found that it failed to properly oversee an ESG fund while making claims about the fund’s ethical and socially responsible investment approach that it did not have reasonable grounds to make.