Malicious javascript compromise on npmjs.com

These packages, about a billion downloads prior

supports-hyperlinks
chalk-template
simple-swizzle
slice-ansi
error-ex
is-arrayish
wrap-ansi
backslash
color-string
color-convert
color
color-name

Thread follows.

@GossiTheDog
OK...so I just had a wallet drained. I'm still trying to figure out how it happened. It only got one of my wallets...so I don't know what's up with that. I'm very literate on cyber security, and I'm certain I didn't click on a suspicious email link. What is this code doing to drain the wallets, running an exploit? That would be strange...it was an android-based wallet (unstoppable).