#FactCheck -AI-Generated Image Misused to Spread False Claim of Assault on Seema Haider by Sachin Meena
Executive Summary
A photo allegedly showing injuries to Seema Haider has been widely circulated on social media. Users are claiming that her husband Sachin Meena assaulted her. However, a fact-check by CyberPeace Research Wing has found the claim to be false. The research reveals that the viral image is AI-generated and is being shared with a misleading narrative.
Claim
On X (formerly Twitter), a user shared the image on May 14, 2026, claiming that Sachin Meena assaulted Seema Haider.

Fact Check
A keyword-based search on Google did not return any credible media reports supporting the viral claim.
A closer visual examination of the image raised suspicions of AI generation. The image was first analysed using the AI detection tool Hive Moderation, which indicated a 99% probability that the image is AI-generated.

Further analysis using another AI detection tool, Sightengine, also produced similar results, confirming a 99% likelihood that the image was generated using AI tools.

Conclusion
The viral image is AI-generated and misleading. The claim that Sachin Meena assaulted Seema Haider is false and has no factual basis.
Related Blogs
.webp)
Overview:
WazirX is the platform for cryptocurrencies, based in India that has been hacked, and it made a loss of more than $230 million in cryptocurrency. This case concerned an unauthorized transaction with a multisignature or multisig, wallet controlled through Liminal’a digital asset management platform. These attacking incidents have thereafter raised more questions on the security of the Cryptocurrency exchanges and efficiency of the existing policies and laws.
Wallet Configuration and Security Measures
This wallet was breached and had a multisig setting meaning that more than one signature was needed to authorize a transaction. Specifically, it had six signatories: five are funded by WazirX and one is funded by Liminal. Every transaction needed the approval of at least three signatories of WazirX, all of whom had addressed security concerns by using Ledger’s hardware wallets; while the Liminal, too, had a signatory, for approval.
To further increase the level of security of the transactions, a whitelisting policy was introduced, only limited addresses were authorized to receive funds. This system was rather vulnerable, and the attackers managed to grasp the discrepancy between the information available through Liminal’s interface and the content of the transaction to seize unauthorized control over the wallet and implement the theft.
Modus Operandi: Attack Mechanics
The cyber attack appears to have been carefully carried out, with preliminary investigations suggesting the following tactics:
- Payload Manipulation: The attackers apparently substituted the transaction’s payload during signing; hence, they can reroute the collected funds into an unrelated wallet.
- Chain Hopping: To make it much harder to track their movements, the attackers split large amounts of money across multiple blockchains and broke tens of thousands of dollars into thousands of transactions involving different cryptocurrencies. This technique makes it difficult to trace people and things.
- Zero Balance Transactions: There were also some instances where it ended up with no Ethereum (ETH) in the balance and such wallets also in use for the purpose of further anonymization of the transactions.
- Analysis of the blockchain data suggested the enemy might have been making the preparations for this attack for several days prior to their attack and involved a high amount of planning.
Actions taken by WazirX:
Following the attack, WazirX implemented a series of immediate actions:
- User Notifications: The users were immediately notified of the occurrence of the breach and the possible risk it posed to them.
- Law Enforcement Engagement: The matters were reported to the National Cyber Crime Reporting Portal and specific authorities of which the Financial Intelligence Unit (FIU) and the Computer Emergency Response Team (CERT-In).
- Service Suspension: WazirX had suspended all its trading operations and user deposits’ and withdrawals’ to minimize further cases and investigate.
- Global Outreach: The exchange contacted more than 500 cryptocurrency exchanges and requested to blacklist the wallet’s addresses linked to the theft.
- Bounty Program: A bounty program was announced to encourage people to share information that can enable the authorities to retrieve the stolen money. A maximum of 23 million dollars was placed on the bounty.
Further Investigations
WazirX stated that it has contracted the services of cybersecurity professionals to help in the prosecution process of identifying and compensating for the losses. The exchange is still investigating the forensic data and working with the police for tracking the stolen assets. Nevertheless, the prospects of full recovery may be quite questionable primarily because of complexity of the attack and the methods used by the attackers.
Precautionary measures:
The WazirX cyber attack clearly implies that there is the necessity to improve the security and the regulation of the cryptocurrency industry. As exchanges become increasingly targeted by hackers, there is a pressing need for:
- Stricter Security Protocols: The commitment to technical innovations, such as integration of MFA, as well as constant monitoring of the users’ wallets’ activities.
- Regulatory Oversight: Formalization of the laws that require proper security for the cryptocurrency exchange platforms to safeguard their users as well as their investments.
- Community Awareness: To bypass such predicaments, there is a need to study on emergent techniques in spreading awareness, particularly in cases of scams or phishing attempts that are likely to follow such breaches.
Conclusion:
The cyber attack on WazirX in the field of cryptocurrency market, shows weaknesses and provides valuable lessons for enhancing the security. This attack highlights critical vulnerabilities in cryptocurrency exchanges, even though employing advanced security measures like multisignature wallets and whitelisting policies. The attack's complexity, involving payload manipulation, chain hopping, and zero balance transactions, underscores the attackers' meticulous planning and the challenges in tracing stolen assets. This case brings a strong message regarding the necessity of solid security measures, and constant attention to security in the rapidly growing world of digital assets. Furthermore, the incident highlights the importance of community awareness and education on emerging threats like scams and phishing attempts, which usually follow such breaches. By fostering a culture of vigilance and knowledge, the cryptocurrency community can better defend against future attacks.
Reference:
https://wazirx.com/blog/important-update-cyber-attack-incident-and-measures-to-protect-your-assets/
https://www.linkedin.com/pulse/wazirx-cyberattack-in-depth-analysis-jyqxf

Executive Summary
A video showing a military convoy moving along a road is being widely circulated on social media with the claim that the entry of CRPF forces into West Bengal has changed the situation on the ground, suggesting strict action is underway during the ongoing elections. However, research by CyberPeace found the claim to be misleading. The video is not recent and has been available online since February 2025.
Claim
The 12-second viral clip shows multiple heavy vehicles moving in a convoy on a road. It has been shared on X (formerly Twitter) with a caption claiming that CRPF’s entry into West Bengal has led to a shift from dialogue to strong action, along with communal assertions.

Fact Check
During the verification process, we found that the same video had been posted by several X users around February 17, 2025. In those earlier posts, the video was described as being from Manipur, not West Bengal.

Further analysis revealed that the video contains background audio in the Manipuri language. To confirm this, we contacted a Manipuri journalist, who stated that the audio includes announcements asking people to stay indoors and avoid gathering on the streets. Notably, this audio is missing in the currently viral version of the clip.Although we could not independently verify the exact date and precise location of the footage, visual elements such as road dividers and streetlight patterns closely resemble those found in Imphal, the capital city of Manipur.

Additionally, reports confirm that central armed police forces have indeed been deployed in West Bengal for election duties in multiple phases. However, there is no evidence linking this specific video to those deployments.

Conclusion
The viral claim is misleading. The video does not show CRPF deployment in West Bengal during the ongoing elections. Instead, it appears to be an older clip from Manipur, likely recorded in early 2025, and has been shared with a false and communal narrative. There is no credible evidence to support the claim made alongside the video. Users are advised to verify content before sharing, especially during sensitive events like elections.

Executive Summary
A video showing flames and thick smoke rising over a densely populated city at night is being widely circulated on social media. The video is being shared with the claim that it shows the actual visuals of explosions and destruction caused by an attack on Iran. CyberPeace Research Wing ’s research found the viral claim to be false. Our research revealed that the video is not real footage but an AI-generated video, which is being circulated with a false claim.
Claim
A user on social media platform Instagram shared the viral video on July 17, 2026, claiming that it shows the real visuals of an attack on Iran and the massive explosions caused by it.
https://www.instagram.com/reel/Da1_gaXyyoP/?utm_source=ig_web_copy_link&igsh=NTc4MTIwNjQ2YQ==

Fact Check
To verify the authenticity of the viral claim, we extracted multiple keyframes from the video and conducted a reverse image search using Google Lens. During the research, we did not find any credible news report, verified video, or authentic source confirming that the footage was related to any attack on Iran. To further examine the authenticity of the video, we analysed it using multiple AI detection tools. First, we scanned the video using Hive Moderation. The tool’s analysis indicated that the video had a 94.9% probability of being AI-generated, suggesting that the footage may have been created using Artificial Intelligence.

For additional verification, we analysed the video using DetectVideo AI. The tool also indicated that the video was likely AI-generated, with an estimated 80% probability.

We further checked the video using another AI detection tool, AI or Not, which suggested that the footage had a 64% probability of being AI-generated.

At the final stage of verification, we used WasIt.AI, which also indicated that the video was likely AI-generated, with an 88% probability.

Conclusion
CyberPeace Research Wing ’s research found that the viral video does not show real footage of an attack on Iran.The video was created using Artificial Intelligence (AI) and is being falsely shared as authentic visuals of explosions and destruction caused by an attack on Iran. Users are advised to verify such sensational claims before sharing them online.