CFPB Finds More Vehicles Eligible for Repossession Than Pre-Pandemic

The rate of auto repossessions at the end of 2022 surpassed pre-pandemic levels; CFPB report highlights increased vehicle repossession rates.
Source

CFPB Orders Equifax to Pay $15 Million for Improper Investigations of Credit Reporting Errors

• The CFPB ordered Equifax to pay $15 million for failing to properly investigate consumer disputes. • This enforcement action pertains to the handling of credit reporting errors.
Source

CFPB Takes Action Against Draper & Kramer Mortgage for Discriminatory Mortgage Lending Practices

The CFPB took action against Draper & Kramer Mortgage Corporation for discriminatory mortgage lending activities; the company discouraged homebuyers from applying in majority-Black and Hispanic neighborhoods in Chicago and Boston.
Source

Civil Penalty Inflation Adjustments

The Bureau is adjusting the maximum amount of civil penalties for inflation within its jurisdiction; this change affects compliance officers and risk managers.
Source

Cryptohack Roundup: Paxful's $4M Penalty

Paxful receives a $4M AML penalty; Coinbase introduces agentic AI wallets; $1M fraud indictment and other international incidents reported.
Source

Texas AG Investigating Conduent, BCBS Texas in Hack

- The Texas attorney general has launched an investigation into Conduent Business Services and BCBS Texas following a significant data breach affecting 15.5 million Texans. - This incident could potentially break U.S. data breach records.
Source

Capital Health to Pay $4.5M in LockBit Breach Settlement

- Capital Health agreed to pay $4.5 million in settlement for a 2023 ransomware attack affecting over 500,000 patients and employees. - The breach involved data theft by the LockBit group.
Source

Ambulance Billing Firm Pays $515K Fine to 2 States in Hack

- Comstar paid $515,000 to Massachusetts and Connecticut regulators for a 2022 hacking incident affecting nearly 350,000 residents. - The firm also paid $75,000 last year to settle HIPAA allegations related to the same breach.
Source

EHR Vendor Veradigm to Pay $10.5M to Settle Hack Lawsuit

Veradigm agreed to pay $10.5 million to settle a hack lawsuit involving a breach affecting more than a dozen healthcare clients and 2.5 million patients; the incident was discovered in mid-2025 after it occurred in December 2024.
Source

PharMerica Will Pay at Least $5.2M to Settle Hack Lawsuit

PharMerica will pay at least $5.27 million as part of a preliminary class action settlement for a 2023 data theft incident affecting 5.8 million individuals; the company agreed to enhance its security measures.
Source

Orthopedic Practice Pays $500K Settlement to NYS in Hack

• An orthopedic practice in upstate New York was hacked, affecting over 650,000 individuals' sensitive information. • The practice agreed to pay a $500,000 settlement and implement stronger security practices.
Source

NCUA: Craftsman Credit Union, Detroit, Closes

• Craftsman Credit Union of Detroit was liquidated by the Michigan Department of Insurance and Financial Services. • NCUA was appointed as the liquidating agent.
Source

NCUA: Taupa Lithuanian Credit Union, Cleveland, Liquidated

Taupa Lithuanian Credit Union of Cleveland has been liquidated by the Ohio Division of Financial Institutions; NCUA was appointed as the liquidating agent.
Source