The VITI Security Blog
Practical writing on managed IT + cybersecurity.
By the engineers doing the work - not a marketing team summarizing it. We write when we have something to say, not when the calendar says we should.

Vicidial Multi-Server Setup: 2026 Guide
A practitioner-grade walkthrough of the Vicidial multi-server cluster we deploy for clients running 500–5,000 agents — components, MySQL replication, trunk routing, security hardening, and the pitfalls we have debugged the hard way.

What is VAPT? Critical 2026 Guide for India
A clear, jargon-free guide to VAPT: how vulnerability assessment and penetration testing differ, the six VAPT engagement types, the testing lifecycle, and how to choose a partner.

Network Security Best Practices: 2026 Guide
A pragmatic 2026 playbook for SMBs: why castle-and-moat security is dead, what zero trust actually means, and how to build a microsegmented, EDR-protected network on a realistic budget.

Post-Quantum Cryptography India 2026
NIST finalised ML-KEM, ML-DSA, and SLH-DSA as the federal post-quantum standards. By 2026 the migration is no longer "future" — here is the concrete roadmap for Indian enterprises.

CTEM 2026: Critical Exposure Management
Gartner-coined CTEM has gone from buzzword to mainstream practice in 2025–2026. Why annual VAPT is becoming insufficient and what CTEM looks like operationally.

Ransomware in India 2026: Mid-Market Targets
Ransomware operators have shifted from large enterprise to mid-market through 2025. Indian SMBs are now the highest-volume target. What changes for defenders.

AI Phishing Attacks 2026: MFA Fatigue Guide
Voice cloning, generated email, and deepfake video calls have made traditional phishing controls porous. What works in 2026.

DPDP Act Enforcement: 2026 Audit Findings
India's Digital Personal Data Protection Act has been in staged enforcement through 2025. A year of real audit findings, recurring gaps, and what auditors actually look for.

Agentic AI Security: Critical 2026 Controls
Enterprise agentic AI deployments multiplied through 2025–2026 — and so did the security incidents. A practitioner-grade look at what changes when an LLM has tool access.
