Solved This seems to be a huge security flaw in Edge and MS Defender.

Microsoft Edge is clearly inconsistent in blocking all EICAR tests from the OP except for the phishing test.
Anyway, the postulate from the OP ( "This seems to be a huge security flaw in Edge and MS Defender") is untrue, especially when Microsoft has its own testground website:
Untrue?

Well maybe its just the way my mind works. I know this is a test sight, and you guys know it is too. But my computer and software do not.

What I mean is... I go to the test site, the owners of the site say "You should NOT be able to see this page. If you can see it something is wrong (my words not theirs).

So I don't panic, because we all know this is a test page, but if my software for security doesn't stop this test page, then what happens when I accidently land on the real deal, will my software stop that?

In my mind, just using the logic, of knowing one page was allowed, then maybe all will be allowed. Thus I am in trouble.
 
  • Like
Reactions: Divine_Barakah
In my mind, just using the logic, of knowing one page was allowed, then maybe all will be allowed.

Unfortunately, this logic has nothing to do with antiphishing effectiveness. You have to include the probabilities in your logic.
For example, when testing a highly counterfeit coin that has a 99% probability of showing a tail, the first head can occur on the first throw with a probability similar to that on the 10th throw (the difference is very small).
 
Last edited:
Here we go with statistics 🥳

I am afraid so.:)
This problem is visible in the AV testing reports (several AVs tested against the same samples). The information on whether the missed sample was the first tested, the 10th, or the 400th does not affect the AV effectiveness, so it is skipped.
 
Last edited: