#FactCheck - AI-Generated Image Falsely Linked to Mira–Bhayandar Bridge
Executive Summary
Mumbai’s Mira–Bhayandar bridge has recently been in the news due to its unusual design. In this context, a photograph is going viral on social media showing a bus seemingly stuck on the bridge. Some users are also sharing the image while claiming that it is from Sonpur subdivision in Bihar. However, an research by the CyberPeace has found that the viral image is not real. The bridge shown in the image is indeed the Mira–Bhayandar bridge, which is under discussion because its design causes it to suddenly narrow from four lanes to two lanes. That said, the bridge is not yet operational, and the viral image showing a bus stuck on it has been created using Artificial Intelligence (AI).
Claim
An Instagram user shared the viral image on January 29, 2026, with the caption:“Are Indian taxpayers happy to see that this is funded by their money?” The link, archive link, and screenshot of the post can be seen below.

Fact Check:
To verify the claim, we first conducted a Google Lens reverse image search. This led us to a post shared by X (formerly Twitter) user Manoj Arora on January 29. While the bridge structure in that image matches the viral photo, no bus is visible in the original post.This raised suspicion that the viral image had been digitally manipulated.

We then ran the viral image through the AI detection tool Hive Moderation, which flagged it as over 99% likely to be AI-generated

Conclusion
The CyberPeace research confirms that while the Mira–Bhayandar bridge is real and has been in the news due to its design, the viral image showing a bus stuck on the bridge has been created using AI tools. Therefore, the image circulating on social media is misleading.
Related Blogs

Executive Summary
A video is going viral on social media claiming that a salon has been opened inside a State Bank of India (SBI) ATM in Bihar. The video is also being used by some users to take political jibes at the central and state governments led by the Bharatiya Janata Party (BJP). However, the CyberPeace Research Wing’s research has found that this claim is misleading. The location shown in the viral video was earlier an SBI ATM, which had been shut down around six months ago. After the bank discontinued its operations at the site, the ATM machine and other equipment were removed. However, the external structure of the ATM cabin and the SBI signage were not removed at that time. After the premises were vacated, the property owner rented out the space to a salon operator. Since the SBI board and branding were still visible on the structure, the video created confusion and went viral with misleading claims.
Following the circulation of the video, the bank later removed its signage from the location and also cleared all remaining SBI branding from the structure. Our research also found that the bank had removed the ATM machine and equipment months earlier, but the cabin structure and SBI board were left behind. After that, the space was rented out for commercial use as a salon. In this context, it would be incorrect to claim that a salon was opened inside an active SBI ATM.
Claim
A Facebook user ‘Soumitra Roy’ shared a video on 11 May 2026 claiming:
“Someone has opened a barber shop inside an SBI ATM in Bihar. The BJP’s double-engine government has developed Bihar so much that loan EMIs can now be deducted directly inside ATMs. This is Modi’s masterstroke.”
- https://www.facebook.com/reel/980962511535926
- https://perma.cc/WTY2-WEQQ

Fact Check
To verify the viral claim, a keyword search based on the video was conducted. Several media reports were found, which clarified the full context of the incident. A report uploaded on the YouTube channel ‘Live Cities’ on 12 May 2026 stated that a salon was running at a former ATM location in Danapur, Bihar. The bank had already vacated the premises about six months earlier, but its signage had not been removed. The report also includes an interview with the property owner, who confirmed that the bank had removed its ATM machine and equipment six months ago and later the space was rented out to a salon operator.

The viral video was also found on the Jagran website in a news report dated 11 May 2026. The report states that an SBI ATM previously existed at the location. The bank had removed the ATM machine due to operational reasons but left behind the external structure and signage. Later, the space was rented out to a salon operator, who began running his business from the same setup.

Conclusion
Our research found that the viral post is misleading. It is incorrect to claim that a salon was opened inside an SBI ATM. The truth is that the bank had shut down the ATM at this location around six months ago and removed all machines and equipment. After that, the premises were rented out to a salon operator, which led to confusion due to the presence of old SBI signage.

Executive Summary
A video of an Indian Army officer leaving a meeting alongside a police official is being widely circulated on social media. Some users are sharing the clip with the claim that the officer walked out of a meeting after the government refused to provide funding for security preparations related to Pakistan and China. CyberPeace Research Wing’s research found the viral claim to be false. Our research revealed that the video is not related to any dispute over defence funding. It actually shows a press conference held in Patiala in March 2025 regarding an attack on an Indian Army Colonel. During the press conference, the Army officer demanded a transparent, time-bound, fair and impartial research, while the police official provided details about the action taken in the case.
Claim
Facebook user ‘Salman Pathan’ shared the video on July 15, 2026, with the claim: “After the government refused funding for security arrangements/preparations related to Pakistan and China, an Indian Army officer left the meeting.” The post further questioned the government over alleged priorities in spending public money.
https://www.facebook.com/reel/3995874277215044
https://perma.cc/JL7A-2A6B?type=standard

Fact Check
To verify the claim, we extracted keyframes from the viral video and conducted a reverse image search using Google Lens. During the research, we found that the same video was uploaded on March 25, 2025, by X user ‘Man Aman Singh Chhina’. The post stated:
“Chief of Staff of Western Command Lieutenant General Mohit Wadhwa left along with senior officers after reading a statement on the Patiala Colonel case without answering any questions. The DGP also read his statement and left, but at least he answered media questions.”
https://x.com/manaman_chhina/status/1904492655720988850?s=20

Further research revealed that the Government of Punjab’s official YouTube channel had uploaded the video of the same press conference on March 25, 2025. At the end of the press conference, when the Army and police officials leave the venue, the same question from journalists that appears in the viral clip can be heard.
https://www.youtube.com/live/7i3Nxc6vTpU

According to a report published by Amar Ujala on July 16, 2025, the Punjab and Haryana High Court, dissatisfied with the research conducted by the Chandigarh Police SIT, transferred the case to the Central Bureau of research (CBI).

Conclusion
Our research found that an old and unrelated video from March 2025 is being falsely circulated with the claim that an Army officer left a meeting after the government refused funding for security preparations related to Pakistan and China. The viral video actually relates to a press conference regarding the attack on Colonel Pushpinder Singh Bath in Patiala and has no connection with any defence funding issue. The viral claim is therefore false and misleading.

Executive Summary:
This report discloses a new cyber threat contributing to the list of threats targeting internet users in the name of "Aarong Ramadan Gifts". The fraudsters are imitating the popular Bangladeshi brand Aarong, which is known for its Bengali ethnic wear and handicrafts, and allure the victims with the offer of exclusive gifts for Ramadan. The moment when users click on the link, they are taken through a fictitious path of quizzes, gift boxes, and social proof, that simply could damage their personal information and system devices. Through knowing how this is done we can educate users to take caution and stop themselves from falling into cyber threats.
False Claim:
The false message accompanied by a link on social media, claims that Aarong, one of the most respected brands in Bangladesh for their exquisite ethnic wear and handicrafts, is providing Ramadan gifts exclusively through online promotion. And while that may be the facade of the scam, its real aim is to lead users to click on harmful links that may end up in their personal data and devices being compromised.

The Deceptive Journey:
- The Landing page starts with a salutation and a catchy photo of Aarong store, and later moves ahead encouraging the visitors to take a part of a short quiz to claim the gift. This is designed for the purpose of creating a false image of authenticity and trustworthiness.
- A certain area at the end of the page looks like a social media comment section, and users are posting the positive impacts the claim has on them. This is one of the techniques to build the image of a solid base of support and many partakers.
- The quiz starts with a few easy questions on how much the user knows about Aarong and their demographics. This data is vital in the development of more complex threats and can be used to address specific targets in the future.
- After the user hits the OK button, the screen displays a matrix of the Gift boxes, and the user then needs to make at least 3 attempts to attain the reward. This is a commonly used approach which allows the scammer to keep users engaged longer and increases the chances of making them comply with the fraudulent scheme.
- The user is instructed to share the campaign on WhatsApp from this point of the campaign, and the user must keep clicking the WhatsApp button until the progress bar is complete. This is a way to both expand and perpetuate the scam, affecting many more users.
- After completing the steps, the user is shown instructions on how to claim the prize.
The Analysis:
- The home page and quiz are structured to maintain a false impression of genuineness and proficiency, thus allowing the victims to partake in the fraudulent design. The compulsion to forward the message in WhatsApp is the way they inspire more and more users and eventually get into the scam.
- The final purpose of the scam could be to obtain personal data from the user and eventually enter their devices, which could lead to a higher risk of cyber threats, such as identity theft, financial theft, or malware installation.
- We have also cross-checked and as of now there is no well established and credible source or any official notification that has confirmed such an offer advertised by Aarong.
- The campaign is hosted on a third party domain instead of the official Website, this raised suspicion. Also the domain has been registered recently.
- The intercepted request revealed a connection to a China-linked analytical service, Baidu in the backend.

- Domain Name: apronicon.top
- Registry Domain ID: D20231130G10001G_13716168-top
- Registrar WHOIS Server: whois.west263[.]com
- Registrar URL: www.west263[.]com
- Updated Date: 2024-02-28T07:21:18Z
- Creation Date: 2023-11-30T03:27:17Z (Recently created)
- Registry Expiry Date: 2024-11-30T03:27:17Z
- Registrar: Chengdu west dimension digital
- Registrant State/Province: Hei Long Jiang
- Registrant Country: CN (China)
- Name Server: amos.ns.cloudflare[.]com
- Name Server: zara.ns.cloudflare[.]com
Note: Cybercriminal used Cloudflare technology to mask the actual IP address of the fraudulent website.
CyberPeace Advisory:
- Do not open those messages received from social platforms in which you think that such messages are suspicious or unsolicited. In the beginning, your own discretion can become your best weapon.
- Falling prey to such scams could compromise your entire system, potentially granting unauthorized access to your microphone, camera, text messages, contacts, pictures, videos, banking applications, and more. Keep your cyber world safe against any attacks.
- Never, in any case, reveal such sensitive data as your login credentials and banking details to entities you haven't validated as reliable ones.
- Before sharing any content or clicking on links within messages, always verify the legitimacy of the source. Protect not only yourself but also those in your digital circle.
- For the sake of the truthfulness of offers and messages, find the official sources and companies directly. Verify the authenticity of alluring offers before taking any action.
Conclusion:
Aarong Ramadan Gift scam is a fraudulent act that takes advantage of the victims' loyalty to a reputable brand. The realization of the mechanism used to make the campaign look real, can actually help us become more conscious and take measures to our community not to be inattentive against cyberthreats. Be aware, check the credibility, and spread awareness to others wherever you can, to contribute in building a security conscious digital space.