security2 publishers
Mass scanners are pulling AWS keys and Terraform state from Vite dev servers exposed with --host
F5 Labs logged more than 800 attacks and about 32,000 raw events against its honeypots in a month, using an April bypass of Vite's server.fs.deny to read .env files, cloud credentials and terraform.tfstate.
Reality
- Evidence66
- Adoption55
- Hype gap+15
- Incentives55
- Confidence68