HIPAA Digest | Catapult Business Innovations – October 1, 2025

Cybersecurity Awareness Month 2025: Building a Cyber Strong America

This piece outlines practical steps for strengthening cyber defenses during Cybersecurity Awareness Month, including phishing training, incident response, and vendor risk management—key for protecting PHI when you work with vendors or AI tools.

Read full article

A former employee alleged Verily violated HIPAA. What healthcare marketers should know about the claims

Reports of a HIPAA claim against Verily underscore vendor privacy risk for healthcare marketing initiatives. It stresses the importance of vetting vendors, enforcing HIPAA commitments in contracts, and preparing for breach or enforcement actions when PHI is involved.

Read full article

Hour-Long Email Phishing Breach Affects PHI of 150,000 – BankInfoSecurity

A phishing breach exposed PHI of 150,000 individuals, illustrating how email-based attacks can impact healthcare data and why ongoing employee training and robust incident response are essential for any company handling PHI.

Read full article

Delaware Rehab Facilities Settle Social Media and Breach Notification HIPAA Violations

A settlement with Delaware rehab facilities emphasizes the risk of HIPAA violations around social media sharing and breach notifications, underscoring the costs of noncompliance and the need for clear data-privacy policies and timely breach reporting.

Read full article

Mobile-health Network Solutions Unveils Proprietary Phi GPT, AI-Powered Health Companion

The launch of an AI-powered health companion highlights growing use of AI in health data, but also raises questions about PHI handling and HIPAA compliance when using AI tools—important for decision-makers considering AI vendors.

Read full article