HIPAA Digest | Catapult Business Innovations – September 16, 2025



Catapult Daily HIPAA News Digest

Mid South Rehab Data Breach Exposes Sensitive PHI and PII – Claim Depot

A recent data breach at a rehabilitation provider exposed protected health information (PHI) and personally identifiable information (PII), underscoring the ongoing vendor risk and breach-notification responsibilities businesses face. For decision-makers, the article highlights why robust data protections, vendor due diligence, and prepared incident response plans are essential to avoid penalties and protect patient trust.

Read full article

Sen. Wyden Urges FTC to Take Action Against Microsoft for “Gross Cybersecurity Negligence” – The HIPAA Journal

The article reports a U.S. senator pressing the FTC to scrutinize a major tech vendor for cybersecurity negligence, signaling heightened regulatory scrutiny on how vendors safeguard healthcare data. For business leaders, it reinforces the need to audit third-party security controls and have solid breach response plans in place when outsourcing AI or cloud services.

Read full article

Alphabet’s Verily Sued by Former Executive Over Alleged HIPAA Breaches – The HIPAA Journal

The article covers a former executive suing Verily over alleged HIPAA violations, highlighting the potential HIPAA liability faced by health tech vendors. For decision-makers, it underscores why strict vendor risk management, audits, and clear data-use agreements are critical when deploying AI, data analytics, or cloud services in healthcare.

Read full article

HIPAA Compliance Checklist: What Every Medical Practice Should Review in 2025 – CENTRAL – NEWS CHANNEL NEBRASKA

The piece provides a practical HIPAA checklist for medical practices to tighten privacy and security controls in 2025, covering areas like data handling, third-party risk, and breach preparedness. For business owners and marketers using AI tools or outsourcing services, it offers a concrete roadmap to reduce risk and protect patient data while maintaining compliance.

Read full article

AI Chatbots in the Medical Field: Healthcare Hero or HIPAA Nightmare? – The National Law Review

The article examines how AI chatbots in healthcare can raise HIPAA concerns, including data privacy, consent, and security when handling patient information. For decision-makers, it highlights the need for governance, vendor risk management, and careful deployment of AI tools in customer-facing or clinical workflows to avoid HIPAA violations and reputational risk.

Read full article