SmartScreen is one of Microsoft's security features in the Edge browser to warn about websites that have been flagged as dangerous. But a security researcher has discovered a way that cyber criminals can use to abuse this possibility by delivering false warnings.
Manuel Caballero explains his blog, that Microsoft Edge has a vulnerability that allows ms-appx: and ms-appx-web: two commands that can generate fake warnings similar to those issued by SmartScreen and which could be used in more complex ways.
For example, attackers could use these warnings to persuade their unsuspecting victims to call a phone number from where they would try to steal various information.
SmartScreen is a feature that is available on both Microsoft Edge and Internet Explorer, but this bug has only been proven in the default Windows 10 browser.
In essence, SmartScreen is an extremely useful feature that keeps users safe from websites that are used to spread malware.
Microsoft currently has no solution to the problem and is probably preparing to fix it in the next updates. At present, the defect exists and has already been reported to the general public. For this, be very careful when browsing Edge, until Microsoft decides to fix it.
Of course, you can always use another browser that offers more security (see Firefox and Google Chrome).
https://www.brokenbrowser.com/spoof-addressbar-malware/