#FactCheck: AI-Generated Video Falsely Shared as Footage of Vehicles Swept Away in Floods on Tibet-Nepal Border
Executive Summary
A video showing vehicles being swept away by floodwaters is going viral on social media. It is being claimed that the video shows flooding along the Nepal-Tibet border.However, CyberPeace Research found that the video is AI-generated.
Claim
The video shows debris suddenly falling from a mountain while vehicles are moving along a road. During the incident, vehicles seen on the road near a fast-flowing river are swept away into the water one after another. The archive of the post can be viewed here.
https://www.facebook.com/reel/1796949138009288

Fact Check
To verify the viral video claiming to show vehicles being swept away by floods along the Tibet-Nepal border, we conducted a reverse image search of its keyframes. However, during our research, we did not find the video in any credible media report or authentic source that identified it as genuine footage of flooding along the Nepal-Tibet border. During our research, we closely examined the video and noticed several inconsistencies that raised questions about its authenticity. In cases where heavy vehicles are caught in or swept away by fast-flowing water, the force of the current, the vehicles losing balance and being submerged are generally visible. In contrast, the vehicles in the viral video appear to float almost in a straight direction through the water without any visible resistance, raising doubts about the authenticity of the footage.
The video also shows several blue buses travelling on the road. On closer examination, the design and appearance of these buses appear to be almost identical. In addition, the letters and numbers visible on some vehicle number plates appear unusual, blurred and distorted. Such visual inconsistencies are commonly observed in AI-generated content. To further verify these findings, we scanned the viral video using the AI detection tool Hive Detect. The tool’s analysis identified the video as potentially AI-generated, with a score of 84.5 per cent.

We also analysed the video using another AI detection platform, DetectVideo AI. The tool likewise identified the video as potentially AI-generated, with a score of 89 per cent.

Conclusion
The evidence gathered during our research makes it clear that the video being circulated with the claim that vehicles were swept away by floodwaters along the Tibet-Nepal border is AI-generated.
Related Blogs

Executive Summary
Assembly election results for West Bengal, Assam, Kerala, Tamil Nadu and the Union Territory of Puducherry have been declared, with the Bharatiya Janata Party (BJP) set to form the government in West Bengal after defeating the Trinamool Congress (TMC). Amid celebrations and reports of violence in the state, several misleading videos and images are also circulating on social media. One such viral clip shows people waving the Indian tricolour and saffron flags during a street celebration. Social media users are claiming that the video captures people celebrating a political change and BJP’s victory in West Bengal. Research by CyberPeace Research Wing found that the claim is false. The viral video is not from West Bengal but from Prayagraj and actually shows celebrations after India’s victory in the ICC Men's T20 World Cup 2026.
Claim
An X user named “Ashok Shrivastav” shared the video on May 6, 2026, claiming that people in West Bengal were celebrating the departure of Mamata Banerjee and the TMC government. The user further claimed that people were waving only the national flag and saffron flags, not BJP flags.

Fact Check
To verify the claim, we extracted several keyframes from the viral video and conducted a reverse image search using Google Lens. The clip was found on multiple social media handles falsely linked to West Bengal.

However, the oldest version of the video was uploaded on March 8, 2026, by an Instagram page named “Streets of Sangam.” The caption identified the location as Prayagraj and included hashtags related to the World Cup and Loknath. During the comparison of the viral and original videos, we noticed a shop sign reading “Suman Ornaments.” Using Google Street View, we traced the location to Baba Loknath area in Prayagraj, where the same shop could be identified near Loknath Gate.

Conclusion
Our research confirms that the viral claim is fake. The video being shared as BJP victory celebrations in West Bengal is actually from Prayagraj, Uttar Pradesh, and dates back to March 2026, when locals celebrated Team India’s T20 World Cup victory. The old clip is now being misleadingly circulated with a false political narrative.
.webp)
Introduction
Delhi is Delhi-ing these days — whether it's the protest, the monsoon weather, the ongoing Monsoon Session of Parliament, metro disruptions, or just the general chaos of it all. Amid everything else, it's been over 30 days, starting from late June 2026, since the large public march organised in part by the group known as the Cockroach Janta Party (CJP) converged near Parliament and on Jantar Mantar, and the city hasn't quite exhaled since. Like every large, fast-moving public event, it's come with a parallel flood online: photos, video clips, injury claims, and hot takes pouring in from participants, bystanders, and news outlets alike, all competing for your instagram scroll.
CyberPeace is a non-partisan digital trust and safety organisation, and what we do care about is the online information environment building up around the event — helping people spot misinformation and manipulated media, and encouraging a bit more caution before hitting "share" while rumours are moving faster than facts.
Delhi Police has already made a public appeal along similar lines, asking citizens against online spread of unverified rumours, noting that misinformation could make an already tense situation worse. This advisory builds on that, with some practical guidance for everyday citizens navigating the protest in light of social media.
Why This Matters Right Now
30 plus days in, the story has layers: the original hunger strike, the march itself, police action, viral clips, and now a second wave of commentary reacting to the reactions. Old footage resurfaces relabelled as "live." Numbers get inflated or deflated depending on who's sharing them. Screenshots go around stripped of context. The longer a protest runs, the murkier the timeline gets for anyone just scrolling past — which is exactly when misinformation finds the most room to spread.
The internet access was also restricted in parts of the city during the march, which has itself become a point of attention.
Given how much unverified information is already circulating, it's worth treating any single account of "what actually happened". The full picture will likely take time to emerge through credible reporting and scrutiny.
Why This Moment Is Especially Prone to Misinformation
A few things are working together here to make mis-information spread faster than usual: Emotions are running high. Clashes, injuries, and confrontations naturally provoke strong reactions, and content that makes people angry or afraid tends to get shared quickly, with far less scrutiny than a calm, verified report would get.
There are information gaps. Reports of internet restrictions in parts of the city leave holes that get filled with speculation or worse, old footage recycled and passed off as live updates.
The event is politically charged, which means competing narratives are synthetically being pushed from multiple directions, sometimes deliberately, making it harder to find neutral ground.
There's simply a huge volume of content. Thousands of clips and photos are being posted from one event, which makes it easy for unrelated or out-of-context material to slip in alongside the real thing. And then there's satire. Part of this movement has roots in political satire, so parody posts and meme accounts can easily be mistaken for genuine news if they're shared without context.
Common Types of Misleading Content to Watch For
A few patterns tend to show up again and again during events like this:
- Old footage getting relabelled - Photos or videos from a completely different protest, city, or even country, re-shared with a caption claiming it's from this event.
- Clips taken out of context - A short moment, like a scuffle, shown without what happened right before or after it, changing how it reads.
- Doctored images - Photos edited to add, remove, or exaggerate people, banners, injuries, or crowd size.
- Fake official statements - Screenshots or graphics designed to look like they came from Delhi Police or a government department, but never actually issued.
- Made-up casualty numbers - Figures shared with no real source, often vaguely attributed to "eyewitnesses."
- Impersonation accounts - Handles designed to look like an official police or organiser account, sometimes just one letter off from the real one.
- AI-generated visuals - Fully or partly synthetic images and videos showing scenes or crowds that never actually happened.
- Rumours about shutdowns - Unverified claims about internet blackouts, road closures, or metro shutdowns that may be old, exaggerated, or simply untrue.
What Citizens Should Do:
- Pause before you forward. If a clip or claim makes you feel an instant, strong reaction, that's often the moment to slow down, not speed up.
- Check the timestamp and source. A five-day-old protest generates a lot of recycled footage. Reverse image/video search before assuming something is "breaking."
- Cross-check with more than one outlet. If only one account or page is reporting something dramatic, wait for corroboration.
- Be wary of numbers without sources. Injury counts, crowd sizes, and arrest figures are easy to exaggerate in either direction.
- Don't share unverified visuals of injuries or violence. Beyond accuracy concerns, this can also cause real harm to the people shown.
- When in doubt, don't repost — verify first, or simply sit it out.
How to Check a Claim Before You Share It:
A checklist goes a long way here:
- Pause for a second. Content built to provoke a strong reaction is often designed to get past your defenses before you think twice. Just slowing down is itself protective.
- Ask where it actually came from. Is this from a named journalist or outlet you can verify, or an anonymous forward with no clear origin? Messages that have clearly been passed around many times deserve extra suspicion.
- Look for more than one source. If something significant is genuinely true, you'll usually find several independent, reputable outlets reporting it not just one channel or account.
- Check the date and place. A quick reverse image or video search can tell you if a photo or clip has shown up online before, and what it was originally about.
- Wait for official confirmation. For anything involving police action, injuries, or arrests, check verified accounts like Delhi Police, PIB, established news wires before treating a claim as settled fact.
- Be suspicious of absolute language. Words like "confirmed," "breaking," or "exposed," used without naming any actual source, are a classic misinformation tell.
- Look at the account, not just the post. New accounts with no history, or ones that only ever post about this one topic, deserve a second look.
- Notice when something feels too satisfying. If a claim perfectly confirms what you already believed, that's exactly when you should slow down and check it; it's the content you're least likely to question on your own.
Reliable Fact-Checking Platforms and AI Detection Tools:
These resources can help you check specific claims, images, or videos:
- For fact-checking: PIB Fact Check (factcheck.pib.gov.in) for anything involving government statements or orders; Alt News (altnews.in) and BOOM Live (boomlive.in), two independent Indian outlets that regularly cover protest- and politics-related claims.
- For reverse image and video searches: Google Images, Google Lens, and TinEye can show you where a photo first appeared and in what context. InVID-WeVerify is a free browser plugin built for journalists that breaks videos into keyframes and lets you reverse-search individual frames.
- For AI and synthetic media detection: Hive Moderation and Sensity AI offer public tools for checking images and video. Deepware Scanner focuses specifically on deepfake video. And most major platforms like Meta, YouTube, X are now labeling some AI-generated content automatically, though the absence of a label doesn't mean something's real.
- A few terms worth knowing: A cheapfake is misleading media made with simple editing, cropping, slowing down, re-captioning rather than AI. These are still far more common than actual AI deepfakes. A deepfake is synthetic audio, video, or image content made with AI to convincingly show someone saying or doing something they didn't. Synthetic media is the broader umbrella term for any AI-generated content, whether or not it's being used to deceive.
Reporting Mechanism ~ If You Come Across Suspected Misinformation
Don't share it further, even to mock or correct it any engagement can boost its reach. Check it against the fact-checking tools above before deciding what you think is true. Report it directly on the platform. If it falls under the category of ‘Unlawful Content’ as per IT Rules, you can reach out to the grievance officer of the platform for removal of such content.
If it involves a government statement or order, send it to PIB Fact Check. If it looks like incitement, impersonation, extortion, or another cybercrime, report it to the National Cyber Crime Reporting Portal (cybercrime.gov.in) or call 1930.
Further Steps & helplines
- To file a cybercrime complaint: National Cyber Crime Reporting Portal - 1930 or cybercrime.gov.in
- To flag a fake government-related claim: PIB Fact Check - factcheck.pib.gov.in
- For an on-ground emergency: dial 100 / 112
- CyberPeace Helpline: +91 9570000066 or helpline@cyberpeace.net
- For fact check and debunking of any suspicious viral information, you can reach out to cyberpeace at helpline@cyberpeace.net
- If this advisory feels useful, consider sharing it in family WhatsApp groups, community networks, or student and youth organisations as it helps slow the spread of unverified content when more people are thinking about it.
CyberPeace's Message to Citizens
Being first to share something isn't the same as being right. In moments like this, the most useful thing any of us can do is slow down, verify before sharing, be a little suspicious of content that confirms exactly what we already believed, and trust named, accountable sources over anonymous forwards. Misinformation during civic unrest doesn't just mislead people; it can raise tensions, put individuals at risk, and chip away at trust in both the media and the institutions meant to maintain public order.Our goal is simply to help people navigate the information around it a little more safely and critically.
Conclusion
Protests and public unrest always generate a flood of information, and not all of it will be accurate. What keeps that information environment healthy isn't any single authority or platform, it's the everyday habits of the people deciding, one post at a time, whether to check something or just pass it along. Delhi's news cycle will keep moving, and this advisory isn't asking anyone to disengage from it. It's just a nudge to stay a little more careful with what you believe and what you pass on in this social media age. Pause. Verify. Scroll healthy. Stay CyberPeaceful.
References
- https://rajkaran.in/delhi-police-urges-calm-amid-cjp-protest-warns-against-rumours-as-clashes-erupt-during-chalo-sansad-march
- https://www.youtube.com/shorts/0kkSCYrjRGc
- https://factcheck.pib.gov.in/
- https://www.altnews.in/
- https://www.boomlive.in/
- https://www.vishvasnews.com/
- https://www.factcrescendo.com/
- https://cybercrime.gov.in/
Contributors
- Neeraj Soni, Sr. Research Analyst, Policy & Advocacy, CyberPeace
- Ritika Goswami, Intern - Policy & Advocacy, CyberPeace

Introduction
Rapid growth in India’s Digital Economy has opened up various options for companies to utilise digital technology as part of their operations. Examples of these technologies include cloud computing; online payment systems; digitally enabled supply chains; and platforms that facilitate remote working. As small and medium enterprises(SMEs) represent a major part of India’s economy, they have quickly been able to capitalise on the benefits these technologies provide in improving their operational efficiency and developing an increased presence within the market. However, this rapid pace of digitalisation creates an exposure to a much greater breadth of cyber-security threats than ever for SMEs. Today, perhaps the greatest cyber-threat facing SMEs in India is ransomware, an increasing frequent type of cyber-attack that has been increasing on a global scale over the past few years and in response, there have been numerous initiatives by various government agencies, industry organisations, and cyber-security firms designed to educate the general public on the risks of ransomware.
What is Ransomware?
Ransomware is a type of malware, which prevents all users being able to access their file system or access their data until they pay a ransom. In a standard ransomware event an attacker will breach the company's network, and encrypt all critical files so that they are unable to be used. The attacker usually demands payment in bitcoin because it is a difficult trace and promises to provide a key to unlock the data in exchange for the payment. Attackers gain access to company networks by using social engineering techniques such as phishing email, stolen password, or exploiting an unpatched vulnerability in the software that is running on the company's network.
The Rising Threat of Ransomware
Cybercriminals have created one of the most destructive varieties of cybercrimes around the world through ransomware; while experts in the cybersecurity field project losses to global ransomware damage may reach $30 billion by 2025. There has also been a marked increase in SMEs being attacked by ransomware-based cybercriminals throughout India. NASSCOM has done research and found that many SMEs in India have experienced attempted ransomware attacks in the past few years alone. According to incident reports provided through CERT-In, there has been a noticeable increase in the number of cybercrime occurrences throughout different sectors of India’s economy since those reports began. These developments have shown an increase in the size and level of sophistication of ransomware related threats.
Why Indian SMEs Remain Vulnerable Despite Awareness
Despite increased awareness about cyber threats, there is a large number of Indian SMEs that continue to be vulnerable to ransomware. The main reason is financial limitations. Many small businesses typically have limited financial resources and those limited resources more often than not, go towards operations, including production, logistics, and marketing - cybersecurity costs are usually viewed as additional costs.
Another significant problem facing SMEs is a shortage of skilled cybersecurity professionals. Large enterprises typically have dedicated security teams responsible for protecting the enterprise, whereas SMEs will employ IT staff generally without any specific expertise in detecting/countering cyber threats. Human error are also significant contributors to these cyber incursion events. An employee can inadvertently click on an email link or download an infected attachment, or use a weak password - all of which could provide opportunities for cybercriminals to access the company's network. Phishing emails continue to be the most common approach for initiating ransomware.
Furthermore - many SMEs have implemented digital platforms, such as cloud-based applications and payment processing, without appropriately executing cybersecurity planning prior to implementation. Many of the issues that have arisen from such rapid digitisation are due to a lack of sufficient planned cybersecurity measures as part of the implementation process. This has also resulted in a situation where technological advancements such as Ransomware as a Service (RaaS) have created an even larger pool of potential perpetrators (cybercriminals) with little-to-no expertise being able to launch a widespread ransomware campaign using readily available/pre-manufactured tools.
Real-World Cyber Incidents Affecting Indian SMEs
As several examples recently demonstrate, Indian SMEs continue to experience significant cyber attack risks. Recently, a logistics firm located in Gurugram found itself locked out of nearly 4,000 shipments due to a ransomware attack, which cost them ₹12 lakhs to fix because they had poor backups and another incident in Gurugram which highlights how vulnerable many SMEs in the country continue to be to ransomware attacks. In the case of a garments company, a hacker compromised the company's server by placing ransomware on its system. The company was forced to shut down its computerised warehouse system as a result of the attack. Only after the company had lost access to its system, did it receive a ransom demand from the hacker, in the form of an email requesting payment of 15 bitcoins (approximately ₹25 lakh), in order for the hacker to restore the company's access to the system. The hacker also threatened to delete the company's financial and banking records if the ransom were not paid. Gurgaon Police's Cyber Cell received the report of the incident, and registered a first information report (FIR) against unknown hackers. The case represents an opportunity for SMEs to evaluate the risks associated with ransomware.
Bridging the Gap Between Awareness and Implementation
Although awareness campaigns can show organisations what types of cybersecurity risks they’re exposed to, these campaigns will not keep businesses from being victims of a ransomware attack by themselves.. The most critical step forward is the implementation of the principles of cybersecurity from an understanding viewpoint to that of an active action. Organisations need to go beyond being aware of the risks related to cyber and then put measures in place to mitigate those risks.
To improve cybersecurity, organisations may need to spend money on developing and maintaining systems; set up regular training for employees on handling cyber threats and implementing an incident response plan to address security incidents; back up data regularly; maintain the hardware and software used in the organisation's computer systems at least once a month (or more often if necessary); and monitor all aspects of its computer systems continuously for weaknesses or problems.
The Way Forward: Strengthening SME Cybersecurity
In order to truly address the ransomware threat, collaboration by businesses, government agencies and cyber security professionals is mandatory. One of the biggest roles in this collaboration is through governmental initiatives to enhance the overall level of awareness of digital security among SMEs (small to medium-sized enterprises). Improved SME understanding of cyber risks will be based on the availability of affordable security solutions that are specifically tailored for small businesses.
Industry partnerships as well as public-private partnerships also aid the sharing of threat intelligence to strengthen collaborative defense against all cybercriminal activity.
Conclusion
Despite Indian SMEs being aware of cyber threats, they have been unable to implement safeguards or Cyber Security plans due to limited financial resources, insufficient qualified personnel, human errors, and the rapid pace at which digital technology is being adopted without adequate Cyber Security measures. In order to respond effectively to the growing threat of Ransomware, Indian SMEs must evolve from being aware of cyber threats to proactively developing Cyber Security strategies that will allow them to prevent, prepare for, and recover from the increased cyber threat posed by the rapidly growing digitalisation of business within an increasingly globalised economy.
References
- https://www.ibm.com/think/topics/ransomware
- https://primeinfoserv.com/indias-sme-cybersecurity-crisis-real-incidents-real-lessons-2024-2025/
- https://timesofindia.indiatimes.com/city/gurgaon/ransomware-attack-on-apparel-firm-all-data-lost/articleshow/59496777.cms#
- https://ciso.economictimes.indiatimes.com/news/cybercrime-fraud/indian-businesses-face-nearly-700-ransomware-attacks-per-day-kaspersky/120471668
- https://smestreet.in/msmenews/indian-smes-remain-alarmingly-exposed-to-ransomware-threats-sophos-report-2025-9456628
- https://m.economictimes.com/news/how-to/how-can-indian-smes-combat-ransomware-attacks/articleshow/108047111.cms