HIPAA Digest | Catapult Business Innovations – November 1, 2025

CISA; NSA Issue Guidance on Hardening Microsoft Exchange Server Security

New federal guidance from CISA and NSA on hardening Microsoft Exchange Server highlights essential patches and configuration changes; following this guidance helps protect PHI, maintain HIPAA privacy and security, and reduce breach risk in email systems.

Read full article

SNFs to pay $182K for social media, website HIPAA lapses

Long-term care facilities faced a $182,000 penalty for HIPAA lapses tied to marketing on social media and their website, illustrating how PHI can be exposed through marketing channels without proper policies and controls.

Read full article

Community outraged after firing of employee, concern about HIPAA violations

The report highlights a firing tied to alleged HIPAA violations, underscoring the need for strong employee training, consistent policies, and rapid incident response to prevent PHI exposures.

Read full article