Skip to main content

Search complete. 49 mentions across 17 episodes found for "Vite".

Sep 28, 2026

CJ ReynoldsPANELIST
58:22
If you're not familiar with AntFu, they're very prolific in the open source space.
CJ ReynoldsPANELIST
58:26
They work on Vite and Vue, and they also created SlideDev.
CJ ReynoldsPANELIST
58:31
And on top of that, lots of dev tools for all of those things.
CJ ReynoldsPANELIST
58:35
This isn't a problem everyone's going to have because not everyone's building dev tools, but AntFu has built a lot of dev tools and has taken everything he's learned and put it into a framework.
CJ ReynoldsPANELIST
58:45
So it's called DevFrame.
CJ ReynoldsPANELIST
58:46
And the idea is you define your tool in a somewhat agnostic way, and then you have handlers for different frameworks.
CJ ReynoldsPANELIST
58:55
So the same dev tool could run in Nitro or Hono or Next.js or SvelteKit or Vite or RSBuild.
CJ ReynoldsPANELIST
59:03
So this is going to be huge for library and framework creators that want to maybe add more telemetry or more info about what's happening inside of your app when you add them to your app.
Jake BennettHOST
6:35
nice okay Two more items here.
Jake BennettHOST
6:39
Raymond Malcolm 10 contributed a dev server URL method to the Vite class, which I did not know this was a thing.
Jake BennettHOST
6:45
You have a Vite class inside of Laravel? Didn't know that.
Jake BennettHOST
6:48
But that dev server URL will allow you to retrieve the URL of the Vite development server.
Jake BennettHOST
6:53
This could be used for something like generating asset URLs in your application, etc.
Jake BennettHOST
6:57
Pretty cool new contribution there.

33 MINS LATER

Michael DyryndaHOST
39:48
If you're understanding, Fresh helps Laravel developers streamline package development with robust support for testing CI and AI integration.
Michael DyryndaHOST
39:56
It provides you with an opinionated skeleton with testing CI and Workbench available, as well as integration with Laravel Boost.
MattHOST
5:27
So I've been kind of preparing for that.
MattHOST
5:30
TypeScript? Are you using TypeScript? It's TypeScript, Vite, and a little bit of Node.
MattHOST
5:36
Okay.
MattHOST
5:37
Yeah.
Jennifer BagleyHOST
50:16
You're not to the point where you can build a product that you should take to market with AI, period, exclamation point, period, exclamation point.
Chris HeneyGUEST
50:25
Now, depending on your builder, you can kind of get better there using SSG generators for your, let's say you're using Vite.
Chris HeneyGUEST
50:35
And thanks for those who correct me that it's not Vite, because I always used to say Vite.
Chris HeneyGUEST
50:42
But Vite, Vite as a plugin SSG, Vike as a formally Vite plugin SSR gained its own identity as it started to be able to be a interoperable generator for Vue.
Chris HeneyGUEST
51:01
Vue is absolutely amazing.
Chris HeneyGUEST
51:05
The architect behind it is like a solopreneur dude, but it beats the pants off of React and Angular in so many ways.
Kamran AyoubHOST
8:56
And if you've been following along the podcast, you know, we've talked about some of the stuff that's new with Oxy and things like that.
Kamran AyoubHOST
9:03
But one thing I wanted to highlight, which I don't know if we talked too much about, but the React compiler is stable and is now part of Vite 8.
Kamran AyoubHOST
9:12
So if you are using V8, you get access to the React compiler.
Kamran AyoubHOST
9:15
I do think that we talked about the React compiler being available in Next.js, but it's also part of just V8 projects if you're using that.
Artificial IntelligenceNARRATOR
3:05
If a wallet contains zero stake, there is no reason to request an approval transaction for a staking amount the user cannot actually provide.
Artificial IntelligenceNARRATOR
3:13
Front-end architecture The front-end is built with React, Vite, Ethers, JS, Wagmai.
Artificial IntelligenceNARRATOR
3:19
It provides wallet connection and exposes the most important protocol state.
Artificial IntelligenceNARRATOR
3:23
Users can see alongside their own.
Sarah LaneHOST
2:07
HackingCat disputes parts of the report, saying some tools are theirs, but the lockers definitely are not.
Sarah LaneHOST
2:15
[digital swish] Vite servers spill cloud secrets.
Sarah LaneHOST
2:20
A mass scanning campaign is targeting internet-exposed Vite development servers to steal cloud credentials and configuration files.
Sarah LaneHOST
2:29
The attackers are exploiting a high-severity file read bypass affecting multiple Vite versions.
Sarah LaneHOST
2:36
F5 observed more than 800 attacks and roughly 32,000 raw events in one month.
Sarah LaneHOST
2:43
The scans looked for environment files, AWS credentials and backups, Azure access tokens, Terraform state, serverless configuration, and Linux password files.
Sarah LaneHOST
2:55
F5 recommends updating Vite, blocking public access to Port 5173 and suspicious/@fs/ requests, and rotating every secret that may have been reachable from an exposed, unpatched server.
Sarah LaneHOST
3:12
[digital swish] Twitch extension goes token phishing.
Gerald AugerHOST
22:43
To me, that's just a really interesting development over the years.
Sarah LaneSOUNDBITE_SPEAKER
22:47
Vite servers spill cloud secrets.
Sarah LaneSOUNDBITE_SPEAKER
22:50
A mass scanning campaign is targeting internet-exposed Vite development servers to steal cloud credentials and configuration files.
Sarah LaneSOUNDBITE_SPEAKER
22:59
The attackers are exploiting a high-severity file read bypass affecting multiple Vite versions.
Sarah LaneSOUNDBITE_SPEAKER
23:05
F5 observed more than 800 attacks and roughly 32,000 raw events in one month.
Sarah LaneSOUNDBITE_SPEAKER
23:12
The scans looked for environment files, AWS credentials and backups, Azure access tokens, Terraform state, serverless configuration, and Linux password files.
Sarah LaneSOUNDBITE_SPEAKER
23:25
F5 recommends updating Vite, blocking public access to port 5173 and suspicious /@fs/ requests, and rotating every secret that may have been reachable from an exposed, unpatched server.
Gerald AugerHOST
23:43
Okay, so this is pretty gross.
Jerry BellHOST
0:35
Run that hunt even after you patch, because root meant they could tidy up behind themselves.
Jerry BellHOST
0:39
Two, if your developers have a Vite dev server reachable from the Internet, an attacker can append a query parameter to a web request and walk off with the files Vite is supposed to refuse: .env files, AWS credentials, Terraform state, and so on.
Jerry BellHOST
0:55
F5's honeypot logged more than eight hundred attacks in a month.
Jerry BellHOST
0:59
Upgrade Vite, then ask why development server was on the Internet in the first place.
Jerry BellHOST
1:03
Three, Google's Threat Intelligence group watched a crew handing a coding chatbot a prompt and a set of instructions, and the agent built and ran a mass credential harvesting campaign in under six hours.
Jerry BellHOST
1:15
They ran the scanning pipeline, fixed their own errors, and rotated infrastructure mid-campaign.
TJ VanTollHOST
3:46
... we saw this with Bun.
TJ VanTollHOST
3:49
We saw this with Astro, so many others, that they make the Vite people, right? The sa- same sort, same story there, that-
Paige NiedringhausHOST
3:58
Yep
TJ VanTollHOST
3:59
...
TJ VanTollHOST
3:59
they m- make some attempt at profitability because they took in venture capital money, in the case of a lot of these projects, especially Vite, and they try to put together some sort of service to make money, that service struggles, and then eventually some big player [laughs] in the industry swoops them up-
Paige NiedringhausHOST
4:17
Buys them
TJ VanTollHOST
4:17
... and a- and then acquires them and buys them.

7 more episodes mention Vite.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.