Financial institutions across the UK, Europe and Asia-Pacific are facing mounting pressure to strengthen their anti-money laundering (AML) frameworks, with regulators making clear that current compliance efforts fall short of expectations.
Record enforcement activity sends clear message
The global AML enforcement landscape in 2025 and into 2026 has demonstrated that regulatory tolerance for control weaknesses has reached a new low. While global AML-related fines totalled $3.8 billion in 2025—down 18% from the previous year—this figure masks significant regional divergence, with penalties in Europe, the Middle East and Africa (EMEA) surging by 767% and Asia-Pacific rising by 44%.resources.
In the UK alone, the Financial Conduct Authority (FCA) imposed £124 million in fines during 2025, with the majority tied to AML and financial crime control failures. The message from regulators is unequivocal: financial firms must move beyond policy documentation to implementing actionable, effective controls that can detect and prevent illicit financial flows.
High-profile cases underscore systemic failures
Several landmark enforcement actions in 2025 highlighted the consequences of inadequate AML governance. Neobank Monzo received a £21 million fine in July for serious and prolonged failings in its AML framework between 2018 and 2020, with the FCA identifying deficiencies across customer due diligence, ongoing monitoring, handling of high-risk customers and suspicious activity reporting.
Traditional institutions faced similar scrutiny. Barclays was hit with a £42 million penalty after regulators found significant weaknesses in how it assessed and managed financial crime risks linked to two high-risk client relationships, WealthTek and Stunt & Co. The case exposed persistent challenges around client risk assessment and escalation procedures, particularly where complex corporate structures and investment-related activity were involved.
The largest UK penalty of the year went to Nationwide Building Society, which was fined £44.1 million (£59 million) for transaction monitoring failures that enabled COVID-19 furlough fraud totalling £27.3 million. This case illustrated how vulnerabilities in transaction oversight systems can have long-lasting regulatory consequences, with enforcement action occurring years after the initial control failures.resources.
Regulatory expectations evolving rapidly
The regulatory environment has undergone substantial transformation, with new frameworks coming into force that demand more sophisticated compliance approaches. In the European Union, the 2024 AML/CFT legislative package established the Authority for Anti-Money Laundering and Countering the Financing of Terrorism (AMLA), which will exercise direct and indirect supervisory powers over high-risk financial sector entities.
The UK has confirmed plans to bring AML supervision of legal and accountancy sectors under the FCA, while Companies House reforms have introduced new identity verification requirements. These changes reflect a broader regulatory shift toward consolidated oversight and enhanced accountability across the entire financial services ecosystem.
In Australia, AUSTRAC updated its regulator statement of expectations in May 2026, emphasising that businesses must adopt a genuine risk-based approach rather than applying uniform controls across all customers. The regulator explicitly stated it expects firms to focus on strengthening their understanding of the risks they face and to document both those risks and the controls implemented to mitigate them.
Technology adoption remains a challenge
Despite substantial investments in AML measures, many financial institutions continue to struggle with inefficient transaction monitoring systems. Industry surveys reveal that technological blind spots and customer due diligence gaps remain among the most commonly overlooked areas of AML compliance.
Nearly a quarter of the top 10 largest AML fines in 2025 targeted cryptocurrency-related entities, exposing significant gaps in compliance frameworks amid booming transaction volumes and stablecoin adoption. Regulators are increasingly demanding that these firms adopt sophisticated AML protocols comparable to those in traditional banking, with 39 EU banks now under direct AMLA supervision.
Data gaps have emerged as a critical vulnerability, with outdated politically exposed person (PEP) lists, unverified ultimate beneficial owner (UBO) information, and weak source-of-wealth checks identified as material factors in approximately 68% of UK AML cases analysed between 2020 and 2025.
Governance and culture at the forefront
The Bank of Scotland case, which resulted in a £160,000 penalty from the Office of Financial Sanctions Implementation (OFSI) in November 2025, exemplifies where enforcement focus now lies. The penalty stemmed from a PEP-screening failure where a manual review incorrectly cleared a name that remained designated on the UK sanctions list. As one compliance analyst noted: “The alert fired. The escalation didn’t. That gap is where enforcement now lives.
This highlights a broader trend: controls are failing at the data and escalation layer, not the policy layer. Regulators are increasingly focused on whether governance structures, corporate culture, and accountability mechanisms are sufficient to ensure that compliance frameworks function effectively in practice.
The European Central Bank has emphasised that increased regulatory and supervisory focus alone will not be enough to successfully combat money laundering and terrorist financing. Institutions must ensure that AML issues attract proper management attention and that members of their management bodies possess sufficient knowledge, skills and experience to perform their duties effectively.
What firms must do now
Industry experts and regulators agree that financial institutions need to prioritise several immediate actions:
- Upgrade compliance systems: Firms must invest in modern, sophisticated AML protocols that can handle complex transaction patterns and emerging risks, particularly in cryptocurrency and digital assets.
- Strengthen governance: Senior management must demonstrate clear accountability for AML outcomes, with regular board-level oversight of financial crime risks.
- Improve data quality: Institutions need to ensure PEP lists, UBO information, and source-of-wealth documentation are current, verified and integrated into real-time monitoring systems.
- Enhance escalation procedures: Alert generation is insufficient; firms must establish robust escalation pathways that ensure suspicious activity receives timely senior review.
- Adopt genuine risk-based approaches: Rather than applying uniform controls, institutions must meaningfully assess customer and transaction risks and calibrate their interventions accordingly.
Regional enforcement trends diverge
While North American AML enforcement activity fell by 58% in 2025, the sharp increase in EMEA and APAC penalties reflects the conclusion of long-running investigations and intensified regulatory scrutiny in specific sectors. Singapore recorded a 579% jump in AML/CFT fines following its S$3 billion money-laundering scandal, with the Monetary Authority of Singapore sharpening its focus on private banking and source-of-wealth enforcement.resources.f
The US Federal Reserve’s termination of decade-long AML enforcement orders against Standard Chartered in March 2026 demonstrates that sustained compliance improvement can eventually lead to regulatory relief, though the path took over 13 years.
Looking ahead
As the FATF begins its new presidency under the UK in 2026, attention is expected to concentrate on emerging risks in virtual assets, trade-based money laundering, and the effectiveness of beneficial ownership registries. Financial institutions that fail to evolve their AML frameworks in line with these priorities risk facing increasingly severe enforcement action.
The regulatory consensus is clear: financial firms must do more than maintain compliance on paper. They must embed effective, actionable controls that can detect and prevent financial crime in an increasingly complex global environment.bankingsupervision.