Cyber Incident Victim: Pilous
Date:
Jan 2023
Location:
Czechia
Summary
NoName057(16) conducted a cyberattack targeting Pilous, a Czech industrial manufacturer, disrupting both its primary website and online store operations. The pro-Russian hacktivist group employed distributed denial-of-service tactics, accompanied by propagandistic messaging asserting geopolitical motives and recruiting for further disruptive activities.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 1 technique |
| Threat Actor | Type | Location |
|---|---|---|
| 1 actor | Available to members | Available to members |
Description
On January 17, 2023, the pro-Russian hacktivist group NoName057(16) claimed responsibility for a distributed denial-of-service (DDoS) attack targeting PILOUS, a Czech industrial manufacturer specializing in metal-cutting band saws. The group announced the incident through their Telegram channel, publishing Check-Host network verification links demonstrating the operational disruption of PILOUS's primary website (https://check-host.net/check-report/e453330k710) and their e-commerce platform (https://check-host.net/check-report/e453674kf20). This attack formed part of NoName057(16)'s coordinated campaign against Czech critical infrastructure entities, framed as retaliation for the Czech Republic's political stance regarding Russia's invasion of Ukraine. The announcement included recruitment appeals for their DDoS initiative alongside propaganda slogans such as "Победа Za нами!" ("Victory is ours!"). Technical specifics regarding attack duration, mitigation efforts, or exact downtime metrics were not disclosed in the group's communiqué.

The incident disrupted PILOUS's public-facing digital assets, impairing access to corporate information and online sales capabilities during the attack period. NoName057(16) leveraged the operational impact as demonstrative evidence of their disruptive capacity, using the Check-Host reports to validate the attack's effectiveness to their audience. The group framed the targeting as ideologically motivated, consistent with their pattern of attacking entities in nations supporting Ukraine. No information regarding PILOUS's incident response protocols, defensive measures, or service restoration timelines was provided in the source material. The attack exemplified NoName057(16)'s continued focus on European industrial targets, utilizing relatively unsophisticated DDoS tactics to achieve visibility through disruption while amplifying their geopolitical messaging via Telegram.
