Regulators are contacting businesses which they suspect are in breach of GDPR to give them the chance to become compliant (I was in companies that received such communications). If the company is in good faith, they’ll fix whatever the regulator found or explain why haven’t breached the law.
These cases don’t get discussed in the media probably because they aren’t published anywhere.
Before a company gets a fine, at least for now, it must do some really crazy stuff and/or refuse to cooperate with the regulators.