The TrustSink attack, detailed by Varonis Threat Labs and reported by BleepingComputer on September 22, 2026, targets organizations using Microsoft Entra's support for external MFA providers. These providers allow companies to integrate third-party authentication services for multifactor authentication. When a user signs in, Entra can redirect them to an external provider for a second factor; if the provider returns a signed token confirming completion, Entra accepts the MFA as satisfied.
Varonis found that an attacker with a highly privileged Entra account can register a malicious External Authentication Method (EAM) as such a provider. During a user's login, the rogue provider displays a convincing copy of Microsoft's password prompt instead of a legitimate second-factor challenge. If the victim re-enters their password, the credential is sent to the attacker's server. The malicious provider then generates a valid signed token to Entra, allowing the login to complete without error.
According to Varonis, resetting a captured password did not remove the rogue provider; it remained in the authentication flow and captured the replacement password at the user's next sign-in. The researchers emphasized that TrustSink is not an initial-access attack — it requires the attacker to already control a highly privileged Entra account.