#FactCheck- AI-Generated Flyover Video Falsely Shared as Patna Infrastructure
Executive Summary
A video showing a modern highway flyover illuminated at night is being widely shared on social media. The bridge features bright white light poles and illuminated barriers. The video is being falsely claimed to be from Patna, Bihar. A CyberPeace Research Wing research has found the claim to be false. Our verification shows that the viral video is not real but AI-generated and is being circulated with misleading claims.
Claim:
A user on YouTube shared the viral video, claiming it shows a flyover in Patna. The post, along with its archive link and screenshots, can be seen below:
https://www.youtube.com/shorts/j9jU-QVKcrw

Meanwhile, the BJP also shared the same video on its official Facebook page, writing: “Don’t be surprised, this is Patna, the capital of Bihar! Where there is BJP-NDA government, development moves at a fast pace.” The post link, archive link, and screenshots are available below:
https://www.facebook.com/bjp4bihar

Fact Check
A careful review of the viral video raised suspicions that it may be AI-generated. The footage was analysed using the AI detection tool HIVE MODERATION, which indicated that the video is approximately 84% likely to be AI-generated.

We also analysed the video using another AI detection tool, SIGHTENGINE, which produced an even stronger result, indicating a 99% likelihood of AI generation.

Conclusion:
The viral video being circulated as a flyover from Patna is not real. It is AI-generated and is being shared with misleading claims.
Related Blogs

Executive Summary:
A new threat being uncovered in today’s threat landscape is that while threat actors took an average of one hour and seven minutes to leverage Proof-of-Concept(PoC) exploits after they went public, now the time is at a record low of 22 minutes. This incredibly fast exploitation means that there is very limited time for organizations’ IT departments to address these issues and close the leaks before they are exploited. Cloudflare released the Application Security report which shows that the attack percentage is more often higher than the rate at which individuals invent and develop security countermeasures like the WAF rules and software patches. In one case, Cloudflare noted an attacker using a PoC-based attack within a mere 22 minutes from the moment it was released, leaving almost no time for a remediation window.
Despite the constant growth of vulnerabilities in various applications and systems, the share of exploited vulnerabilities, which are accompanied by some level of public exploit or PoC code, has remained relatively stable over the past several years and fluctuates around 50%. These vulnerabilities with publicly known exploit code, 41% was initially attacked in the zero-day mode while of those with no known code, 84% was first attacked in the same mode.
Modus Operandi:
The modus operandi of the attack involving the rapid weaponization of proof-of-concept (PoC) exploits is characterized by the following steps:
- Vulnerability Identification: Threat actors bring together the exploitation of a system vulnerability that may be in the software or hardware of the system; this may be a code error, design failure, or a configuration error. This is normally achieved using vulnerability scanners and test procedures that have to be performed manually.
- Vulnerability Analysis: After the vulnerability is identified, the attackers study how it operates to determine when and how it can be triggered and what consequences that action will have. This means that one needs to analyze the details of the PoC code or system to find out the connection sequence that leads to vulnerability exploitation.
- Exploit Code Development: Being aware of the weakness, the attackers develop a small program or script denoted as the PoC that addresses exclusively the identified vulnerability and manipulates it in a moderated manner. This particular code is meant to be utilized in showing a particular penalty, which could be unauthorized access or alteration of data.
- Public Disclosure and Weaponization: The PoC exploit is released which is frequently done shortly after the vulnerability has been announced to the public. This makes it easier for the attackers to exploit it while waiting for the software developer to release the patch. To illustrate, Cloudflare has spotted an attacker using the PoC-based exploit 22 minutes after the publication only.
- Attack Execution: The attackers then use the weaponized PoC exploit to attack systems which are known to be vulnerable to it. Some of the actions that are tried in this context are attempts at running remote code, unauthorized access and so on. The pace at which it happens is often much faster than the pace at which humans put in place proper security defense mechanisms, such as the WAF rules or software application fixes.
- Targeted Operations: Sometimes, they act as if it’s a planned operation, where the attackers are selective in the system or organization to attack. For example, exploitation of CVE-2022-47966 in ManageEngine software was used during the espionage subprocess, where to perform such activity, the attackers used the mentioned vulnerability to install tools and malware connected with espionage.
Precautions: Mitigation
Following are the mitigating measures against the PoC Exploits:
1. Fast Patching and New Vulnerability Handling
- Introduce proper patching procedures to address quickly the security released updates and disclosed vulnerabilities.
- Focus should be made on the patching of those vulnerabilities that are observed to be having available PoC exploits, which often risks being exploited almost immediately.
- It is necessary to frequently check for the new vulnerability disclosures and PoC releases and have a prepared incident response plan for this purpose.
2. Leverage AI-Powered Security Tools
- Employ intelligent security applications which can easily generate desirable protection rules and signatures as attackers ramp up the weaponization of PoC exploits.
- Step up use of artificial intelligence (AI) - fueled endpoint detection and response (EDR) applications to quickly detect and mitigate the attempts.
- Integrate Artificial Intelligence based SIEM tools to Detect & analyze Indicators of compromise to form faster reaction.
3. Network Segmentation and Hardening
- Use strong networking segregation to prevent the attacker’s movement across the network and also restrict the effects of successful attacks.
- Secure any that are accessible from the internet, and service or protocols such as RDP, CIFS, or Active directory.
- Limit the usage of native scripting applications as much as possible because cyber attackers may exploit them.
4. Vulnerability Disclosure and PoC Management
- Inform the vendors of the bugs and PoC exploits and make sure there is a common understanding of when they are reported, to ensure fast response and mitigation.
- It is suggested to incorporate mechanisms like digital signing and encryption for managing and distributing PoC exploits to prevent them from being accessed by unauthorized persons.
- Exploits used in PoC should be simple and independent with clear and meaningful variable and function names that help reduce time spent on triage and remediation.
5. Risk Assessment and Response to Incidents
- Maintain constant supervision of the environment with an intention of identifying signs of a compromise, as well as, attempts of exploitation.
- Support a frequent detection, analysis and fighting of threats, which use PoC exploits into the system and its components.
- Regularly communicate with security researchers and vendors to understand the existing threats and how to prevent them.
Conclusion:
The rapid process of monetization of Proof of Concept (POC) exploits is one of the most innovative and constantly expanding global threats to cybersecurity at the present moment. Cyber security experts must react quickly while applying a patch, incorporate AI to their security tools, efficiently subdivide their networks and always heed their vulnerability announcements. Stronger incident response plan would aid in handling these kinds of menaces. Hence, applying measures mentioned above, the organizations will be able to prevent the acceleration of turning PoC exploits into weapons and the probability of neutral affecting cyber attacks.
Reference:
https://www.mayrhofer.eu.org/post/vulnerability-disclosure-is-positive/
https://www.uptycs.com/blog/new-poc-exploit-backdoor-malware
https://www.balbix.com/insights/attack-vectors-and-breach-methods/
https://blog.cloudflare.com/application-security-report-2024-update

Executive Summary
The ongoing conflict between the US-Israel and Iran has entered its third week. During this period, Iran reportedly targeted the US military base at Al Udeid in Qatar. Amid this, a video is going viral on social media showing people, vehicles, and chaos following an alleged attack. Some users are sharing it as footage of an Iranian missile strike on the Al Udeid Air Base. However, an research by the CyberPeacefound that the viral video is not real but AI-generated.
Claim:
An Instagram user “thenewscartel” shared the video on March 17, 2026, with the caption: “Al Udeid Air Base, Qatar (March 16, 2026): Iran launched ballistic missiles and drones at the US military’s largest Middle East base near Doha as retaliation for US-Israel strikes in Tehran. Qatar’s Defense Ministry confirmed multiple launches. Most were intercepted by Qatari air defense. One missile landed near the base or in an uninhabited area. No casualties or major damage reported. Explosions were heard in Doha, and smoke was seen in the sky.”

Fact Check:
To verify the claim, we closely examined the viral video. We observed multiple visual inconsistencies—one person appears to be walking in reverse, another disappears and reappears, and the body shapes of people distort as they begin to run. These anomalies strongly indicate AI manipulation. We then analyzed the video using the AI detection tool Zhuque AI, which indicated an approximately 80 percent likelihood that the video is AI-generated.

Further analysis using Hive Moderation showed around a 57 percent probability of the video being AI-generated.

Conclusion:
Our research found that the viral video being shared as footage of an Iranian attack on the US military base at Al Udeid in Qatar is AI-generated and not related to any real incident.

Executive Summary:
A video is widely circulating on social media in which Israel’s Prime Minister Benjamin Netanyahu appears to praise India’s Prime Minister Narendra Modi. The viral clip is being shared with the claim that during a speech delivered on February 25, 2026, Netanyahu announced a special aid package for Afghanistan at the request of PM Modi. However, research by CyberPeace found the claim to be false. The research revealed that the circulating video was generated using artificial intelligence. The probe also confirmed that Netanyahu did not make any announcement related to Afghanistan or the Taliban during the speech.
Claim
On March 1, 2026, a social media user shared the viral video on Facebook claiming that Netanyahu praised PM Modi and announced a special assistance package for Afghanistan following India’s request. The links to the post and its archive are provided below, along with a screenshot.

Fact Check:
To verify the claim, we first searched Google using relevant keywords. However, we did not find any credible media reports supporting the claim that Israel had announced such an aid package for Afghanistan. Next, we extracted key frames from the viral video and performed a reverse image search using Google Lens. During this process, we found the original video on the YouTube channel of VERTEX, which had been uploaded on February 25, 2026.

A detailed review of the original video revealed that the viral clip circulating on social media is not part of the original footage. This indicates that the circulating clip has been manipulated and shared with a misleading claim. In the original video, Netanyahu was addressing a special parliamentary session in Jerusalem, where he spoke about the growing trade, strategic cooperation, and strengthening diplomatic relations between India and Israel. He described the partnership between the two democracies as a significant and historic milestone in bilateral relations. Upon carefully listening to the viral clip, we noticed irregularities in the voice and tone, which raised suspicions that it might be AI-generated. We then analyzed the video using the AI detection tool TruthScan. The results indicated that the viral video has approximately a 75% probability of being AI-generated.

Conclusion
Our research found that the viral video was created using artificial intelligence. Moreover, Israel’s Prime Minister Benjamin Netanyahu did not make any announcement regarding Afghanistan or the Taliban during the speech being referenced. The claim circulating on social media is therefore false.