Sandcastles Crumble: SAND Suffers Widespread Token Breach
The Sandbox (SAND) suffered a cross-chain security breach on August 22, 2026, resulting in approximately 14.9 billion unbacked SAND tokens being minted without proper backing.
According to reports, an unauthorized actor exploited the Layer Zero Omnichain Fungible Token implementation to compromise the SAND token contract operating on Base, allowing them to create tokens without corresponding collateral from authentic SAND reserves locked on Ethereum.
The attackers leveraged an 'approveAndCall' mechanism to compromise the delegate authorization, granting them unrestricted minting privileges. This manipulation resulted in roughly 14.75 million SAND being extracted from the Ethereum OFT Adapter within 60 seconds, generating approximately $675,000 in tangible proceeds.
The Sandbox team immediately disabled bridge functionality on Base and BNB Smart Chain networks to prevent further unauthorized transactions and isolated SAND liquidity on these networks. Major South Korean cryptocurrency platforms Upbit and Bithumb also paused SAND deposit and withdrawal services.