#FactCheck -Doctored Images of Trump–Xi and Biden–Xi Meetings Go Viral; Fact Check Finds No Evidence of Claims
Executive Summary
Following the recent meeting between US President Donald Trump and Chinese President Xi Jinping, two images began circulating widely on social media. One image showed Trump shaking hands with Xi, while another purportedly showed former US President Joe Biden turning his back on the Chinese leader during a previous meeting. The viral posts claimed that Trump showed respect to Xi Jinping, whereas Biden had allegedly insulted him. However, an research found that the image involving Biden was digitally altered and that no such moment appeared in authentic video footage. At the same time, another image showing Trump bowing before Xi Jinping also went viral across multiple social media platforms. This image, too, was found to be manipulated and misleading. Research by the CyberPeace Research Wing confirmed that both viral visuals had been doctored and were being shared with false claims.
Claim
The viral post juxtaposes two images. The first photograph, dated May 14, shows Donald Trump and Xi Jinping shaking hands at the beginning of a landmark summit in Beijing. The second image allegedly depicts Joe Biden turning away from Xi during their 2023 meeting near San Francisco.
- https://web.archive.org/web/20260519173701/https://truthsocial.com/@realDonaldTrump/116585350109647241/embed
- https://truthsocial.com/@realDonaldTrump/116585350109647241/embed

Fact Check
The side-by-side comparison surfaced amid years of criticism by Donald Trump targeting Joe Biden’s age and mental fitness. Trump shared the image after his China visit, which included high-level discussions on trade and the Middle East conflict, along with a temple tour and tea meeting with Xi Jinping. Meanwhile, another manipulated image spread rapidly online, falsely portraying Trump bowing while greeting Xi Jinping. The image circulated widely in several languages, accompanied by captions attacking Trump

However, a review of the The White House livestream on YouTube showed that Joe Biden greeted Xi Jinping immediately after he stepped out of his vehicle and shook hands with him before both leaders walked inside together. At no point in the footage did Biden turn his back or look away from Xi.

Further examination also revealed inconsistencies in the manipulated Trump image. A subtle crease visible near the side pocket of Trump’s suit jacket in authentic footage was missing in the viral version, indicating that the image had been digitally edited.
Conclusion
The research found that both viral images were digitally manipulated and shared with misleading narratives. Neither Joe Biden ignored Xi Jinping during their 2023 meeting, nor did authentic footage show Donald Trump bowing before the Chinese president.
Related Blogs

On March 02, 2023, the Biden-Harris Administration unveiled the National Cybersecurity Plan to ensure that all Americans can enjoy the advantages of a secure digital environment. In this pivotal decade, the United States will reimagine cyberspace as a tool to achieve our goals in a way that is consistent with our values. These values include a commitment to economic security and prosperity, respect for human rights and fundamental freedoms, faith in our democracy and its institutions, and a commitment to creating a fair and diverse society. This goal cannot be achieved without a dramatic reorganisation of the United States’ cyberspace responsibilities, roles, and resources.
VISION- AIM
A more planned, organised, and well-resourced strategy to cyber protection is necessary for today’s rapidly developing world. State and non-state actors alike are launching creative new initiatives to challenge the United States. New avenues for innovation are opening up as next-generation technologies attain maturity and digital interdependencies are expanding. Thus, this Plan lays forth a plan to counter these dangers and protect the digital future. Putting it into effect can safeguard spending on things like infrastructure, clean energy, and the re-shoring of American industry.
The USA will create its digital environment by:
- Defensible if the cyber defence is comparatively easier, more effective, cheaper
- Resilient, where the impacts of cyberattacks and operator mistakes are lasting and little widespread.
- Values-aligned, where our most cherished values shape—and are in turn reinforced by— our digital world.
Already, the National Security Strategy, Executive Order 14028 (Improving the Nation’s Cybersecurity), National Security Memorandum 5 (Improving Cybersecurity for Critical Infrastructure Control Systems), M-22-09 (Moving the U.S. Government Toward Zero-Trust Cybersecurity Principles), and National Security Memorandum 10 (Improving Cybersecurity for Federal Information Systems) have all been issued to help secure cyberspace and our digital ecosystem (Promoting United States Leadership in Quantum Computing While Mitigating Risks to Vulnerable Cryptographic Systems). The Strategy builds upon previous efforts by acknowledging that the Internet serves not as an end in itself but as a means to a goal—the achievement of our highest ideals.
There are five key points that constitute the National Cybersecurity Strategy:
1. Defend Critical Infrastructure –
Defend critical infrastructure by, among other things: i) enacting cybersecurity regulations to secure essential infrastructure; (ii) boosting public-private sector collaboration; (iii) integrating federal cybersecurity centres; (iv) updating federal incident response plans and processes; and (v) modernising federal systems in accordance with zero trust principles.
2. Disrupt and Dismantle Threat Actors
Disrupt and dismantle threat actors, including by i) integrating military, diplomatic, information, financial, intelligence, and law enforcement competence, (ii) strengthening public-private sector collaborations, (iii) increasing the speed and scale of intelligence sharing and victim information, (iv) preventing the abuse of U.S.-based infrastructure, and (v) increasing disruption campaigns and other endeavours against ransomware operators;
3. Shape Market Forces to Drive Security and Resilience
The federal government can help shape market forces that drive security and resilience by doing the following: i) supporting legislative efforts to limit organisations’ ability to collect, use, transfer, and maintain personal information and providing strong protections for sensitive data (such as geolocation and health data), (ii) boosting IoT device security via federal research, development, sourcing, risk management efforts, and IoT security labelling programs, and (iii) instituting legislation establishing standards for the security of IoT devices. (iv) strengthening cybersecurity contract standards with government suppliers, (v) studying a federal cyber insurance framework, and (vi) using federal grants and other incentives to invest in efforts to secure critical infrastructure.
4. Invest in a Resilient Future
Invest in a resilient future by doing things like i) securing the Internet’s underlying infrastructure, (ii) funding federal cybersecurity R&D in areas like artificial intelligence, cloud computing, telecommunications, and data analytics used in critical infrastructure, (iii) migrating vulnerable public networks and systems to quantum-resistant cryptography-based environments, and (iv) investing hardware and software systems that strengthen the resiliency, safety, and security of these areas, (v) enhancing and expanding the nation’s cyber workforce; and (vi) investing in verifiable, strong digital identity solutions that promote security, interoperability, and accessibility.
5. Forge International Partnerships to Pursue Shared Goals
The United States should work with other countries to advance common interests, such as i) forming international coalitions to counter threats to the digital ecosystem; (ii) increasing the scope of U.S. assistance to allies and partners in strengthening cybersecurity; (iii) forming international coalitions to reinforce global norms of responsible state behaviour; and (v) securing global supply chains for information, communications, and operational technologies.
Conclusion:
The Strategy results from months of work by the Office of the National Cyber Director (“ONCD”), the primary cybersecurity policy and strategy advisor to President Biden and coordinates cybersecurity engagement with business and international partners. The National Security Council will oversee the Strategy’s implementation through ONCD and the Office of Management and Budget.
In conclusion, we can say that the National Cybersecurity Plan of the Biden administration lays out an ambitious goal for American cybersecurity that is to be accomplished by the end of the decade. The administration aims to shift tasks and responsibilities to those organisations in the best position to safeguard systems and software and to encourage incentives for long-term investment in cybersecurity to build a more cyber-secure future.
It is impossible to assess the cyber strategy in a vacuum. It’s critical to consider the previous efforts and acknowledge the ones that still need to be made. The implementation specifics for several aspects of the approach are left up to a yet-to-be-written plan.
Given these difficulties, it would be simple to voice some pessimism at this stage regarding the next effort that will be required. Yet, the Biden administration has established a vision for cybersecurity oriented towards the future, with novel projects that could fundamentally alter how the United States handles and maintains cybersecurity. The Biden administration raised the bar for cybersecurity by outlining this robust plan, which will be challenging for succeeding administrations to let go. Also, it has alerted Congress to areas where it will need to act.
References:
- https://www.whitehouse.gov/briefing-room/statements-releases/2023/03/02/fact-sheet-biden-harris-administration-announces-national-cybersecurity-strategy/
- https://www.huntonprivacyblog.com/2023/03/02/white-house-releases-national-cybersecurity-strategy/
- https://www.lawfareblog.com/biden-harris-administration-releases-new-national-cybersecurity-strategy

Introduction
India is becoming more digital. People are using cards and phones to pay for things. This means there is a risk of people stealing card information and committing fraud. The Payment Card Industry Data Security Standard or PCI DSS is a set of rules that helps companies keep card information safe. It was created by the PCI Security Standards Council, which was started by Visa, Mastercard, American Express, Discover and JCB. The goal of PCI DSS is to reduce the risk of data breaches and card fraud by making sure companies have security controls in place. For India, where digital payments are becoming more popular, PCI DSS is becoming a thing to do.
Applicability in India
PCI DSS applies to all companies in India that store, process or transmit card information. This includes banks, payment companies like Razorpay, PayU and CCAvenue and online sellers. Even companies that use a hosted payment page are responsible for following the rules. Companies that have their payment forms and handle card information have to follow more rules.
Why PCI DSS Matters
Payment security is very important for customers to trust a company. If a company has a security breach it can expose a lot of card information. Damage the company's reputation. In India, where cybercrime's a big problem, PCI DSS helps companies keep card information safe. It has rules for firewalls, encryption, access controls and regular testing to prevent fraud.
Regulatory Landscape: The RBIs Role
PCI DSS is not a law in India. The Reserve Bank of India or RBI has made it a requirement. The RBI has rules that require companies to follow PCI DSS and have security audits. Non-bank companies have to get permission from the RBI and follow rules to store payment information in India. This makes PCI DSS a standard for keeping card information safe in India.
Key Requirements and the Compliance Process
The current version of PCI DSS has twelve requirements that companies have to follow. These requirements include building a network protecting card information and regular testing. Companies have to start by identifying what parts of their system handle card information. Then do a gap analysis to see what they need to do to comply. Smaller companies can usually do this in a week but bigger companies may take several months.
Common Challenges and Practical Solutions
Some problems companies face when trying to comply with PCI DSS include old computer systems that cannot handle modern encryption and unclear rules that make it hard to know what to do. Some solutions include separating the card information system from the rest of the network using tokens and encryption to keep card information safe and regularly checking for vulnerabilities.
Business and Regulatory Benefits
Following PCI DSS rules can help companies avoid penalties and have security breaches. It can also make it easier for companies to work with banks and card networks and build trust with customers. Regulators also look favorably on companies that follow the rules.
Recent Developments and Trends
The RBI has been making rules and requiring companies to follow PCI DSS more closely. As digital payments become more popular it is likely that the RBI will keep making rules to keep card information safe.
As India's digital economy grows, keeping payment information safe is becoming more important. PCI DSS is a set of rules that helps companies keep card information safe. The RBI has made it a requirement for companies to follow these rules. Companies that follow the rules can build trust with customers. Avoid security breaches.
Conclusion
As India's digital economy deepens, protecting payment data is no longer optional; it is the price of participating in the card ecosystem. PCI DSS gives banks, fintechs, gateways and merchants a common, internationally recognised language for security, while RBI's guidelines add local regulatory teeth. Organisations that treat compliance as a continuous discipline, rather than a once-a-year audit exercise, will find it easier to earn customer trust, avoid costly breaches, and scale with confidence. For every business touching cardholder data in India, the message is clear: PCI DSS compliance is now foundational to running a secure, trustworthy digital payments operation.
References
- https://www.pcisecuritystandards.org/document_library/
- https://www.rbi.org.in/Scripts/BS_ViewMasDirections.aspx
- https://www.rbi.org.in/Scripts/NotificationUser.aspx
- https://www.rbi.org.in/Scripts/NotificationUser.aspx?Id=11822
- https://www.incorpx.io/blog/pci-dss-compliance-ecommerce-fintech-india
- https://cyraacs.com/pci-dss-compliance-checklist
- https://www.skydo.com/blog/pci-dss-compliance-guide
- https://www.cybercrime.gov.in/
.webp)
Introduction
In the sprawling and ever-evolving landscape of cybercrime, phishing links, phoney emails, and dubious investment offers are no longer the only tools used by scammers. Cybercriminals are becoming skilled at taking advantage of commonplace digital behaviours, undermining confidence, and turning popular features of our most essential apps into weapons. A fast expanding international threat has been revealed by the National Cybercrime Threat Analytics Unit (NCTAU) of the Indian Cybercrime Coordination Centre(I4C)’s most recent advisory on “WhatsApp account renting”. This scam uses QR codes to trick users into connecting their WhatsApp accounts to fraudulent sites under the guise of a “quick income” opportunity. What initially appears innocuous turns into a tool for thieves to take control of accounts and use them for illicit purposes.
The Global Rise of Cyber Mule Networks
Initially the word “mule” in cybercrime networks referred to a bank account used, knowingly often unknowingly, to transfer or “launder” money obtained from fraud and illegal activities. In light of the evolving nature of this cybercrime, Cyber mules in the present scenario can be referred to as, individuals who knowingly or unknowingly allow their digital identities, devices, or bank accounts to be used for illegal activity.
Various cybersecurity companies as well as Europol and Interpol, have frequently cautioned that hackers are increasingly using digital mule recruiting, which frequently takes the form of the following:
- Work-from-home Offers
- Streams of passive income
- Monetisation of social media
- Roles for verification assistants
- Apps that earn commissions
Earlier versions involved money transfers through personal bank accounts . Criminals now want your digital identity rather than just your money, as the trend has been reported to be changing.
Scammers frequently “rent” victims’ Facebook, LINE, Telegram, and WeChat accounts in parts of Southeast Asia and Africa in order to conduct impersonation frauds or assist with criminal operations. The WhatsApp variant that is making its way to India is a logical progression, although it comes only with the widely used WhatsApp Web linked-device capability.
How the WhatsApp Account Renting Scam Works
I4C’s advisory dated 15th October, 2025, highlights a sophisticated yet psychologically simple scheme that exploits trust, curiosity, and the illusion of easy income.The scam’s lifetime is as follows:
1. The Hook: “Automatically Earn Passive Income”
Threat actors claim users can earn daily rewards by connecting their WhatsApp accounts to a new “partner platform” in their polished and professional Instagram and Facebook ads.
This strategy imitates international scam factories in Cambodia and Myanmar, where victims are lured into investment schemes or bogus tasks by social media advertisements.
2.The Redirect: Rogue APKs & Fake Websites
When victims click on the advertisement, they are sent to
- Fake dashboards for earnings
- Untrustworthy websites that imitate authentic financial interfaces
- Instructions for installing Android APKs from sources other than the Play Store
- These APKs often carry spyware or remote-access malware.
3.The Trap: Scanning a QR Code
The user is asked to scan a QR code through WhatsApp’s “Linked Devices” feature, which is normally used for WhatsApp Web.
Without ever touching the victim’s phone, the con artist obtains complete session access to their WhatsApp account as soon as the QR is scanned.
Threat actors are able to:
- Transmit and receive messages
- Get access to contact lists
- Participate in or start groups
- Assume the victim’s identity
- Conduct frauds using their identities
4.The Illusion: A Multi-Level Commission Structure
A pyramid-style earnings model is displayed to maintain credibility:
- 10% off direct invites
- 5% of secondary invites
- 2% of tertiary invitations
These figures are designed to encourage victims to recruit more users, increasing the number of compromised WhatsApp accounts.
5.The Misuse: “Mule WhatsApp accounts”
The victim’s account becomes a digital mule once it is connected, allowing fraudsters to:
- Start UPI fraud and phishing
- Distribute harmful links
- Impersonate the victim to scam their contacts
- Participate in bulk messaging campaigns
- Get additional mule accounts
Precautions Issued by I4C
I4C has advised citizens to take the following precautions:
- You could face criminal charges or similar consequences if you carelessly rent or link your WhatsApp account for money
- Installing APKs from non-official app shops should be avoided
- Advertisements that promise automatic revenue, referral bonuses, or passive income should be avoided.
- Regularly check linked devices on WhatsApp: Settings → Linked Devices
- Use WhatsApp’s Official support page to report hacked accounts or impersonation: https://www.whatsapp.com/contact/forms/1534459096974129
- Report financial fraud immediately by calling 1930 or visiting cybercrime.gov.in
CyberPeace Outlook
The WhatsApp account rental fraud is not an isolated phenomenon; rather, it is the latest mutation of a global cybercrime apparatus that feeds on social engineering, digital identity theft, and international mule networks. Its simplicity, all it takes to take over your digital life is a QR code scan, makes it especially hazardous. I4C’s timely warning serves as an important reminder that easy money is nearly always a trap in the digital world and that, if we let our guard down, our most reliable platforms can become attack surfaces. Stay informed, and stay safe. In order to protect our identities, data, and communities, cyber hygiene is now a must.
References
- https://www.cnbctv18.com/personal-finance/mule-account-fraud-on-the-rise-what-it-is-and-how-to-shttps://i4c.mha.gov.in/theme/resources/advisories/Mule%20Whatsapp%20V1.4.pdftay-safe-19662507.htm
- https://i4c.mha.gov.in/theme/resources/advisories/Mule%20Whatsapp%20V1.4.pdf