The Sandbox says SAND bridge exploit drained 14,742,341.84 tokens from Ethereum vault

AI Market Summary
The Sandbox disclosed a post-incident forensic update on the SAND LayerZero bridge integration for Base and BNB Chain, confirming ~14.74M SAND drained from the Ethereum vault (~0.5% of max supply). Unbacked SAND minted on Base/BSC is not redeemable, bridging remains disabled, and exchange rails are being restricted. The higher-than-initial loss estimate and bridge design flaw elevate counterparty and liquidity risks for SAND on affected networks.
Impact level
● High
Affected assets
SAND/USDT-0.12%
AI Insight · SAND/USDTAI Insight
▼ Bearish
Trade now
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
The Sandbox has released findings on a recent SAND bridge security incident. It said an attacker exploited a configuration function in the SAND token contract on Base and BNB Chain, where the contract also served as the LayerZero bridge integration, and set themselves as the sole verifier for incoming bridge messages. The attacker then stole about 14.74 million SAND from the Ethereum vault backing the bridge, roughly 0.5% of the fixed 3 billion maximum supply, while the team said it quickly contained the exploit and completed on-chain forensics.