SAND bridge exploit contained after unbacked token mint

1 hour ago 2



The Sandbox has contained a cross-chain bridge vulnerability that allowed an attacker to mint unbacked SAND on Base and BNB Smart Chain, with the project estimating the direct impact at less than 0.01% of the token’s 3 billion supply. Summary The attacker minted unbacked SAND on Base and BNB Smart Chain through compromised bridge permissions. The Sandbox disabled transfers involving both networks while keeping Ethereum and Polygon SAND unaffected. Upbit and Bithumb halted SAND deposits and withdrawals after detecting a possible security incident. On-chain researchers estimated that about 14.75 million Ethereum-backed SAND left the bridge adapter. The Sandbox plans to compensate eligible liquidity providers based on balances recorded before the attack. The Sandbox said it had fully contained the vulnerability affecting its SAND bridge on Base and BNB Smart Chain, adding that no user wallets were compromised and SAND held on Ethereum and Polygon remained secure. The Sandbox team has identified and fully contained a recent vulnerability regarding the SAND cross-chain bridge on Base and BNB Smart Chain (BSC). The impact is minimal, representing less than 0.01% of the total SAND token s...

Read Entire Article