Cryptelio

Hacks & Exploits

The Sandbox Faces Exploit as Hackers Mint Billions in Unauthorized SAND Tokens

Cryptelio Editorial Published 22 Aug 2026 · 08:45 UTC

The Sandbox has reported a significant security breach affecting its SAND OFT on Base, where attackers exploited the LayerZero delegate permissions to mint unauthorized SAND tokens. According to blockchain security firm Blockaid, the exploit has resulted in the minting of approximately $49 billion in face-value SAND across more than 400 transactions.

The ongoing attack was identified on August 22, 2026, leading The Sandbox to confirm that its cross-chain bridge on both Base and the BNB Smart Chain (BSC) was compromised. In response, the team has halted all bridging activities to isolate the affected tokens and prevent further unauthorized transfers or redemptions.

The Sandbox stated that the exploit impacted less than 0.01% of the total SAND supply, with tokens on Ethereum and Polygon remaining unaffected. The project reassured users that their wallets were not compromised and that the Ethereum reserves backing the bridged SAND are intact.

As a precaution, The Sandbox has advised users against trading SAND on Base and BSC. The team is currently preparing a snapshot of the affected pools and is working on a compensation plan for eligible liquidity providers. A full incident report and technical post-mortem will be released following the investigation.

In light of the exploit, several Korean exchanges, including Bithumb and Upbit, have suspended SAND deposits and withdrawals, citing security concerns. This incident is part of a broader trend, with multiple exploits reported in the DeFi space this month, particularly targeting bridge vulnerabilities.

FAQ

What happened in The Sandbox security breach?

The Sandbox experienced a significant security breach where hackers exploited LayerZero delegate permissions to mint approximately $49 billion in unauthorized SAND tokens across more than 400 transactions.

How did The Sandbox respond to the exploit?

The Sandbox halted all bridging activities on both Base and the BNB Smart Chain (BSC) to isolate the affected tokens and prevent further unauthorized transfers or redemptions.

Was the entire SAND supply affected by the exploit?

No, the exploit impacted less than 0.01% of the total SAND supply, and tokens on Ethereum and Polygon remain unaffected.

What precautions has The Sandbox advised users to take?

The Sandbox has advised users against trading SAND on Base and BSC as a precautionary measure.

Will there be any compensation for affected users?

Yes, The Sandbox is preparing a snapshot of the affected pools and is working on a compensation plan for eligible liquidity providers, with a full incident report to be released after the investigation.

Read story →