GHSA-flagged malware brands - 16 autotel-*, 4 awaitly-*, and `ai-sdk-ollama` packages (Nov 2025–Jun 2026) marked embedded-malicious-code on 2026-06-29/30
GitHub's Advisory Database dropped CWE-506 (Embedded Malicious Code) records on 2026-06-29 and 2026-06-30 against 21 npm "brand" packages built up over months: the entire autotel-* observability family (16 packages, 400+ versions), the awaitly promise-utility family (4 packages, ~180 versions), and the ai-sdk-ollama Vercel AI-SDK typosquat (55 versions). Every published version of every listed package is now classified as malware.
Versions named here: 4.0.0, 4.1.0, 4.1.1, 5.0.0, 5.0.1, 6.0.0, 6.0.1, 7.0.0, 7.0.1, 8.0.0, 8.0.1, 9.0.0, 9.0.1, 10.0.0, 10.0.1, 11.0.0, 11.0.1, 12.0.0, 12.0.1, 13.0.0, 13.0.1, 14.0.0, 14.1.0, 14.1.1, 15.0.0, 15.0.1, 16.0.0, 16.0.1, 16.0.2, 17.0.0, 17.0.1, 18.0.0, 18.0.1, 18.0.2, 18.0.3, 19.0.0, 19.0.1, 20.0.0, 20.0.1, 21.0.0, 21.0.1, 22.0.0, 22.0.1, 22.0.2, 23.0.0, 23.0.1, 23.0.2, 24.0.0, 24.0.1, 25.0.0, 25.0.1, 26.0.0, 26.0.1, 27.0.0, 27.0.1, 27.0.2, 28.0.0, 28.0.1, 28.0.2, 29.0.0, 29.0.1, 29.0.2, 29.0.3, 29.0.4, 29.0.5, 29.0.6, 30.0.0, 30.0.1, 30.0.2, 30.0.3, 30.0.4, 31.0.0, 31.0.3, 31.0.4, 31.1.0, 31.1.1, 31.1.2, 31.1.3, 31.1.4, 32.0.0, 32.0.1, 32.1.0, 33.0.0, 34.0.0, 34.1.0, 34.1.1, 35.0.0, 35.0.1, 35.0.2, 36.0.0, 37.0.0, 38.0.0, 39.0.0, 40.0.0, 41.0.0, 41.0.1, 41.0.2