GHSA-flagged malware brands - 16 autotel-*, 4 awaitly-*, and `ai-sdk-ollama` packages (Nov 2025–Jun 2026) marked embedded-malicious-code on 2026-06-29/30
GitHub's Advisory Database dropped CWE-506 (Embedded Malicious Code) records on 2026-06-29 and 2026-06-30 against 21 npm "brand" packages built up over months: the entire autotel-* observability family (16 packages, 400+ versions), the awaitly promise-utility family (4 packages, ~180 versions), and the ai-sdk-ollama Vercel AI-SDK typosquat (55 versions). Every published version of every listed package is now classified as malware.
Versions named here: 0.1.1, 0.1.2, 0.1.3, 0.1.4, 0.1.7, 0.1.8, 0.1.9, 0.1.10, 0.1.11, 0.1.12, 0.1.13, 0.1.14, 0.1.15, 0.1.16, 2.0.0, 2.0.1, 3.0.0, 3.0.1, 4.0.0, 4.0.1, 5.0.0, 5.0.1, 6.0.0, 6.0.1, 7.0.0, 7.0.1, 8.0.0, 8.0.1, 9.0.0, 9.0.1, 10.0.0, 10.0.1, 11.0.0, 11.0.1, 13.0.0, 13.0.1, 14.0.0, 14.0.1, 15.0.0, 15.0.1, 15.0.2, 16.0.0, 16.0.1, 17.0.0, 17.0.1, 17.0.2, 18.0.0, 18.0.1, 19.0.0, 19.0.1, 20.0.0, 20.0.1, 21.0.0, 21.1.0, 21.1.1, 22.0.0, 22.0.1, 23.0.0, 23.0.1, 24.0.0, 24.0.1, 25.0.0, 25.0.1, 26.0.0, 26.0.1, 26.0.2, 27.0.0, 27.0.1, 28.0.0, 28.0.1, 28.0.2, 28.0.3, 29.0.0, 29.0.1