Lyce · Hybrid Watch

hw_dc2d7e16b3f18d01

NoName057(16) launches broad DDoS wave against Czech government, regional and defence-related web infrastructure.

From 28 to 30 September 2026, NoName057(16) shifted its European campaign to the Czech Republic. Recorded targets included public-administration portals, regional authorities, CzechInvest and CzechTrade services, procurement systems, police-related infrastructure, Prague Airport and other organisations connected to transport, energy and the defence-industrial sector. Czech cybersecurity reporting characterised the activity as a continuing wave rather than a single isolated outage and stated that the attackers explicitly justified the campaign through Czech support for Ukraine. yberXTron also reports that Dark Storm Team followed the same Germany → Italy → Czechia sequence and overlapped with NoName057 targets, but describes coordination between the groups only as an inference.

Occurrence
2026-09-29
Publication
2026-09-29
First observed
2026-10-10T04:30:13.070Z
Review status
Not assessed
Countries
CZ
Updated
2026-10-10T04:30:13.070Z

Attribution

Official

Facts

No facts

Sources

  1. Role
    discovery_lead
    Date
    2026-09-29T15:54:23Z

    From 28 to 30 September 2026, NoName057(16) shifted its European campaign to the Czech Republic. Recorded targets included public-administration portals, regional authorities, CzechInvest and CzechTrade services, procurement systems, police-related infrastructure, Prague Airport and other organisations connected to transport, energy and the defence-industrial sector. Czech cybersecurity reporting characterised the activity as a continuing wave rather than a single isolated outage and stated that the attackers explicitly justified the campaign through Czech support for Ukraine. yberXTron also reports that Dark Storm Team followed the same Germany → Italy → Czechia sequence and overlapped with NoName057 targets, but describes coordination between the groups only as an inference.