Blog Authors

Latest from Bright Law Blog

The Australian Competition and Consumer Commission (ACCC) has announced that National Australia Bank Limited (NAB) has paid penalties totalling $751,200 after the ACCC issued it with four infringement notices for alleged contraventions of the Consumer Data Right (CDR) Rules.

The infringement notices relate to alleged failures by NAB to disclose, or accurately disclose, credit limit

Austrac has announced its timetable for guidance to support both current reporting entities and tranche 2 entities to implement effective AML/CTF measures.

Austrac’s guidance in 2025, will include:

  • the scope of the new regulated services;
  • core obligations and how they can be practically implemented;
  • AML/CTF starter program kits for small businesses in tranche 2 sectors.

APRA has reminded its regulated entities, including superannuation licensees, of their binding obligations under Prudential Standard CPS 234 Information Security (CPS 234). Paragraph 21 of CPS 234 mandates that entities implement information security controls commensurate with the vulnerabilities, threats, criticality, and sensitivity of their information assets.

APRA says it has observed weaknesses, especially

ASIC has published its 2025 review of the consumer lease industry following recent action to enforce legislative changes made in 2022.
ASIC’s review revealed that several providers have stopped offering consumer leases and some have started to offer alternative regulated credit products, such as sale of goods by instalment contracts and lines of credit to

The Department of Home Affairs has announced that ransomware payment reporting is now active on this form.

Under section 27 of the Cyber Security Act 2024, a reporting business entity has an obligation to use this form to report to the Government if you have made or are aware another entity has made on