LLM responds with fake name of packages. Real package made using the fake name and gets installed 30,000 times in 3 months. Malicious actors could use this behavior.