Albania
ALB
On 10 March 2026, attackers compromised the Parliament of Albania through VPN access using credentials belonging to an unnamed third-party service provider. After lateral movement into the virtual infrastructure, the attackers deleted 183 virtual machines in the VDI environment, deleted a significant amount of user file-share data and exfiltrated a portion of the compromised information. Parliament staff lost access to the VDI environment, which Albania's National Cyber Security Authority described as a key component of daily end-user operations, and AKSK classified the incident as having significant operational impact. Core critical servers, official email and public-facing services remained functional. Homeland Justice claimed responsibility, and AKSK assessed the activity as matching Iranian state-linked operations.
Estimated severity
80 / 100
Source reliability
95 / 100
Approximate Date
10/03/2026
Targeted Company
PARLIAMENT OF THE REPUBLIC OF ALBANIA
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
Albania
ALB
No other affected countries reported
Target country
Albania
Affected countries
Impacted regions
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Please rotate your phone