In a dramatic security incident unfolding across the multiplayer gaming landscape in late August 2026, popular asymmetrical social horror title Secret Neighborโdeveloped by Hologryph and published by tinyBuildโwas abruptly taken offline after a malicious threat actor executed a destructive database breach and server infrastructure attack. The breach resulted in widespread wiping of player profiles, stats, cosmetic inventories, and level progression across all platforms.
Key Incident Highlights:
โข Attack Vector: Malicious actor gained unauthorized administrative credentials to backend systems.
โข Impact Scope: Total wipe of player profile records, currency balances, cosmetic unlocks, and level progression.
โข Extortion Demands: Perpetrator demanded that Secret Neighbor be permanently delisted and removed from sale on Steam, Xbox, PlayStation, Nintendo Switch, and iOS.
โข Developer Stance: Hologryph and tinyBuild firmly refused all extortion demands and reported the attacker to law enforcement.
โข Mitigation & Recovery: Multiplayer servers temporarily shut down while developers partner directly with Microsoft PlayFab to restore lost player data from backend snapshots.
1. Official Developer Announcement
On August 26, 2026, developer Hologryph and publisher tinyBuild issued an official emergency community bulletin via the Steam Community Hub detailing the security breach, confirming the temporary server shutdown, and setting the record straight on player safety and extortion demands.

Verbatimcode Developer Statement (tinyBuild-Jay on behalf of Hologryph / tinyBuild Games):
"Hello everyone,
Last Saturday, Secret Neighbor was the subject of an attack by an individual who had managed to obtain credentials with admin access to our backend systems.
With these credentials, the individual was able to access and wipe player profiles, progression, and other in-game data as well as carry out a coordinated attack on our server systems and infrastructure across all platforms on which Secret Neighbor is currently available.
Please be aware that no personal data or information has been compromised or leaked, the only data affected by this attack relates to in-game player profiles and progression.
The individual responsible for this attack has stated that they intend to continue targeting the game and its backend systems, until the game is removed from sale across all platforms. As such, we have temporarily shut down the game until we have addressed the breach and closed any vulnerabilities that may have led to this incident.
We donโt have an exact timeframe for how long this might take, but rest assured that we are working to get this resolved as quickly as possible and needless to say, we will not be removing the game from sale on any platforms.
With this being an intentional attack on our title and our players, accompanied by explicit blackmail, we are taking this situation very seriously. We have been in contact with the relevant authorities regarding the individual in question and are working with PlayFab to try and recover any deleted data.
We apologise for the inconvenience here, and will keep you all updated on our progress and how the situation unfolds going forwards.
Hologryph / tinybuild Games"
2. The Anatomy of the Attack: Compromised Admin Credentials
The incident began when an unauthorized individual acquired administrative access credentials to the backend game management infrastructure powering Secret Neighbor. With elevated administrator permissions, the attacker bypassed standard rate limits and access controls to manipulate backend database entries directly.
The attacker executed automated scripts that purged player tables, effectively wiping user profiles, unlocked cosmetic items, rank leaderboards, and character progressions for thousands of active players worldwide. Following the data purge, the threat actor initiated a coordinated disruption attack against the game's matchmaking clusters and server infrastructure across all supported ecosystems (PC/Steam, Xbox One & Series X|S, PlayStation 4/5, Nintendo Switch, and iOS).
3. The Delisting Ultimatum & Cyber Extortion
Unlike typical ransomware or financially-motivated cyber incidents where attackers demand cryptocurrency, the perpetrator issued a bizarre and aggressive ultimatum: demanding that tinyBuild and Hologryph permanently delist Secret Neighbor from all storefronts and discontinue selling the title altogether.
The attacker explicitly threatened that if the developers refused to pull the game from digital distribution channels, continuous disruption attacks would be aimed at any newly spun-up backend infrastructure.
4. Studio Defense: Hologryph & tinyBuild's Unyielding Response
Developer Hologryph and publisher tinyBuild responded swiftly and decisively to protect both their player community and the integrity of their intellectual property:
- Refusal to Comply: The companies made it unequivocally clear that they will not comply with extortion or pull Secret Neighbor from digital storefronts.
- Immediate Server Shutdown: To prevent ongoing data manipulation and isolate the compromised systems, Hologryph intentionally took the live multiplayer game servers offline.
- Escalation to Law Enforcement: The cyberattack, credential breach, and extortion threats were formally documented and submitted to relevant legal authorities and cybercrime investigative units.
- Storefront Availability: While matchmaking and online multiplayer modes remain offline during maintenance, the game remains listed on storefronts like Steam and console marketplaces.
5. Collaboration with Microsoft PlayFab for Data Recovery
Secret Neighbor relies heavily on Microsoft PlayFab as its cloud backend platformโmanaging title data, player entity states, CloudScript execution, virtual currencies, and catalog inventories. Hologryph's engineering team is collaborating closely with PlayFab technical teams to carry out comprehensive data forensic analysis and restore player accounts.
The recovery pipeline focuses on four primary phases:
| Phase | Technical Objective | Status |
|---|
| Phase 1: Credential Revocation & Patching | Invalidate all leaked administrative API keys, roll secret keys, and enforce strict IP-whitelisted zero-trust IAM policies. | Complete |
| Phase 2: Database Backup Extraction | Query historic PlayFab title backups and transaction event logs to restore player inventory and progression snapshots. | In Progress |
| Phase 3: Integrity Testing & Staging | Deploy restored state to staging servers, verify profile synchronization across platforms, and run security audits. | Upcoming |
| Phase 4: Server Relaunch & Compensation | Re-open global server clusters, roll out community update, and grant restitution rewards for the disruption. | Planned |
6. Player Privacy & Account Security Confirmation
Following comprehensive audits of the compromised systems, Hologryph and tinyBuild issued vital assurances regarding user privacy:
Zero Personal Identifiable Information (PII) Compromised:
The security breach was strictly confined to backend game progression databases and in-game entity states. No private user data, credit card information, billing details, plain-text passwords, or third-party platform credentials (Steam, PSN, Xbox, Nintendo) were stored in the breached database or exposed during the incident.
7. Context: The Hello Neighbor Franchise & Secret Neighbor
First launched in October 2019, Secret Neighbor expanded tinyBuild and Dynamic Pixels' acclaimed Hello Neighbor universe into the asymmetrical multiplayer genre. Up to six players take on the roles of a group of neighborhood kids attempting to rescue their friend from Mr. Peterson's sinister basementโwhile one player is secretly disguised as the Neighbor in disguise.
The game has garnered millions of downloads and a dedicated following across consoles and PC. The sudden attack on its community progression underscores growing cybersecurity challenges facing live-service multiplayer indie titles.
8. Community Safety Advisory & Official Guidelines
During the server downtime, Hologryph and tinyBuild urged players to remain vigilant against phishing and third-party scams targeting concerned community members:
- Do NOT Trust Unofficial Recovery Tools: Scammers frequently capitalize on outages by circulating fake "account restore" executables or malicious links on Discord, YouTube, and TikTok. Hologryph is performing all restoration server-side automatically.
- No Action Required from Players: You do not need to re-enter your credentials or submit support tickets to recover progress; backend snapshot restoration will apply globally once complete.
- Follow Verified Channels Only: Monitor official announcements exclusively through the Secret Neighbor Steam Community Hub, the verified tinyBuild Discord server, and official @Hologryph / @tinyBuild social accounts.
9. What Lies Ahead: Server Restoration Outlook
As of late August 2026, the developers have not set a specific deadline or exact return date for server reinstatement. Hologryph has emphasized that guaranteeing security hardening and ensuring full recovery of player records takes precedence over a rushed reactivation.
Further updates regarding the PlayFab data restoration progress and estimated server launch windows will be shared by Hologryph as soon as security verification testing concludes.
Diskusi (0)