#FactCheck- Viral Zipline Accident Video from Karnaprayag is AI-Generated, Claim is False
Executive Summary
A video is being shared on social media claiming that a female tourist from Delhi fell into a deep gorge during ziplining in Karnaprayag. In the viral video, a woman dressed in bright pink and yellow clothes is seen ziplining amidst high mountains, when suddenly the zipline wire breaks and she falls from a significant height into a deep gorge. Social media users are sharing this video, presenting it as a real incident. Research by the CyberPeace Research Wing revealed that the claim of a Delhi woman tourist's death during a zipline accident in Karnaprayag is baseless. The viral video is AI-generated.
Claim
According to the claim, this accident took place in Karnaprayag, Uttarakhand, where a female tourist from Delhi became a victim of this horrific mishap. Several social media users are claiming that the woman died in this accident.
https://www.facebook.com/reel/26108544868822432

Fact Check
To investigate the video viral as a zipline accident in Karnaprayag, we conducted a reverse search of its keyframes. During this, we found the video uploaded as a Short on a Pakistani YouTube channel, @Zoyaqueen-w2t, on June 2, 2026. Hashtags like '#funnyshorts' were used in the caption of this video. Scanning this account revealed that several other fictional videos related to similar zipline accidents have also been uploaded here. Apart from this, the video was also shared with funny hashtags in some social media posts from May 2026.
https://www.youtube.com/shorts/Gzha_J7Fqv0

Following this, searching with relevant keywords yielded no credible media reports regarding any such zipline accident in Karnaprayag, Uttarakhand, in recent times. Subsequently, we scanned the viral video of the alleged zipline accident using the AI detection tool 'Hive Moderation'. During the analysis, the tool classified the video as highly likely to be AI-generated, with a score of 99.2%.

Conclusion
From the evidence gathered in our research , it is clear that the claim regarding the death of a female tourist from Delhi during a zipline accident in Karnaprayag is baseless. The viral video is not of a real incident, but is AI-generated.
Related Blogs
.webp)
Introduction
The advent of frontier AI has significantly widened the range of actors who can launch cyberattacks, extending beyond state actors with immense capabilities or organized professional cybercriminal rings. In its most critical advisory, CIAD-2026-0020, titled "Defending against frontier AI-driven cyber risks," which was released on April 26, 2026, the Indian Computer Emergency Response Team (CERT-In) officially stated that AI can now carry out autonomous cyber activities of unprecedented scale and speed. The advisory highlights that these frontier AI models can perform automated reconnaissance, phishing, malware creation, vulnerability identification, and social engineering with minimal human involvement, thus "lowering the barrier to orchestrating complex cyber attacks." The risks that such AI models pose are not restricted to state actors and corporate entities anymore and also extend to MSMEs, public organizations, and individuals.
India’s Escalating Cybercrisis
The Indian digital economy has been developing at a very fast pace, but the same cannot be said about its cybersecurity. Having a base of over 850 million internet users and a digital payment sector that records a massive 22,495 crore in monthly transaction volumes, coupled with the fastest-growing cloud sector in the world, India continues to remain a lucrative prey for cybercriminals. There were over 265 million attempts reported in the last year, 2025, alone, where close to 46% of all incidents detected were in enterprises with fewer than 1,000 employees, a very grave reality for MSMEs. MHA confirmed there were 28.15 lakh reported cybercrime complaints in 2025 as compared to 2024, with a jump of 24%. In this worsening environment the advisory is a breakthrough in Indian cyber governance. Where previously advisories covered only conventional threats like phishing and malware, the new warning names frontier agentic AI systems as autonomous multipliers of threats, capable of conducting operations at scale and speed with significantly reduced human oversight.
What is “Frontier AI” and why does it matter?
CERT-In’s decision to adopt the term "Frontier AI" is deliberate and meaningful. The advisory’s scope is a new category of agentic AI, which moves well beyond traditional chatbot-style AI, having the capacity to reason, plan, perform multiple actions in a single task autonomously, and carry out complicated tasks with minimal or no human guidance. CERT-In highlights that these tools now possess the capabilities that were "previously carried out by a coordinated team of skilled cybersecurity professionals." The advisory clearly flags the risk that these advanced models have the capability to generate malicious code, conduct network scans, probe systems for vulnerabilities, and even orchestrate intricate multi-stage cyberattacks in a single session. Their capacity to analyse a vast number of source code libraries to identify vulnerabilities, even unknown zero-day ones, and then develop proof-of-concept exploits at high speed. This means that the historical lead time to turn a vulnerability discovery into an exploit tool has reduced from weeks to just hours.
Six Core Threat Vectors identified by CERT-In
- AI-driven Automatic Zero-Day Discovery: AI-based solutions discover zero-day vulnerabilities and automatically create exploits in minutes, reducing the time taken by defenders.
- AI-driven Autonomous Reconnaissance: AI-driven agents scan cloud infra, APIs, and enterprise networks and outline attack vectors.
- AI-driven phishing & deepfakes: Multilingual, highly targeted phishing emails, deepfake audio, and deepfake voice/video calls bring sophistication to social engineering.
- Deepfake Financial Fraud: AI creates deepfake executives for high-value money transfers. For example, reports have indicated crore-level fund loss cases in India.
- AI-powered Autonomous Attack Chains: Advanced AI models are able to automatically perform multiple malicious stages like privilege escalation, lateral movement, data exfiltration, and data extraction.
- Cascading failures of interconnected systems: A single AI-supported security breach can have catastrophic domino effects on connected digital systems and critical infrastructures.
Why are MSMEs a target?
CERT-In’s warning is specifically targeted toward the weakness of the Indian MSMEs. Contributing almost 30% to India's GDP and employing over 110 million individuals, most MSMEs have failed to adequately prepare themselves against contemporary cyber threats. While a large corporation would have a full-time cybersecurity team, a security operation centre, and frequent vulnerability assessments, the majority of MSMEs lack such infrastructure due to budget constraints, out-of-date software, etc. This lack of security has proved to be quite disadvantageous for smaller businesses, as India was identified as one of the top global targets for cyberattacks, where approximately 46% of the total breaches worldwide targeted organizations having fewer than 1000 employees. The advisory claims that frontier AI systems have significantly increased the threats, for the skills necessary to carry out advanced cyberattacks have dramatically decreased. Ransomware, phishing and data exfiltration can be executed by even unsophisticated attackers. The aftermath could result in critical financial, operational, and compliance impact on these MSMEs.
The Global Context
These developments seem to validate CERT-In's warning about threats posed by frontier AI. In its 2026 State of Cybersecurity Report, ISACA listed AI-related threats as the top concern of cybersecurity professionals; 61% of those surveyed reported generative AI/large language models as the top technology trend impacting cyber risk. Worryingly, in 2026 only 7% were confident in their organizations' defenses against ransomware. Check Point Software's Cyber Security Report 2026 corroborates this; in 2025 the report stated that in a single year, the trend of combined social engineering-based campaigns with automated operational execution has risen considerably. In all phases of the lifecycle of a cyberattack reconnaissance, social engineering, and tactical decision-making AI is being applied. KPMG is warning of deepfake-enabled fraud now "spreading at a faster rate than that experienced at the beginning of the phishing era, which is currently still the leading type of attack in the world."
CERT-In Recommendations
For Large Organisations:
- The use of security monitoring, threat detection, and log analysis should be increased.
- DDoS protection systems and multi-factor authentication (MFA) should be implemented on all internet-facing devices and assets.
- Critical security patches should be installed within 24 hours of release.
- Old VPN and remote-access infrastructure should be updated or replaced.
- AI-driven cyber drills and incident response simulations should be regularly performed.
For MSMEs:
- Software and security updates should be automatically enabled on all devices and systems.
- MFA should be enabled on organisational accounts and sensitive platforms.
- MSMEs should utilize MSSPs for specialized support and monitoring.
- Detailed inventories of IT assets and system logs should be kept for fast incident response.
- Staff should be educated about identifying AI-generated phishing, deepfakes, and scams.
For Individuals:
- Independent communication channels should be used to verify any dubious message or money request.
- Software from unverified sources or unauthorised channels should not be downloaded.
- The use of strong and unique passwords along with MFA wherever possible should be enforced.
From Advisory to Action
The May 2026 cybersecurity road map released by CERT-In signals a departure from identification of threats to enabling operations against frontier AI-led cyber threat landscapes. This initiative builds on their April advice and delineates a clearly articulated three-phase roadmap comprising immediate cyber readiness, AI governance controls, and deep integration of AI-driven defenses. It also provides for the establishment of a focused AI Cyber Defense Center and various multisector governance provisions. A prominent area is the increased threat of impersonation via deepfakes, and companies are encouraged to institute executive verification procedures prior to approving high-value transactions. The framework also emphasizes the establishment of an AI asset register requiring formal accounting and governance of all AI systems utilized in an enterprise. Meanwhile, CERT-In also recognizes the twin-use nature of frontier AI: for every threat, the same technology can bolster security with automated threat detection, phishing, and log analysis in real time. However, the deployment of state-of-the-art defenses is uneven, especially with MSMEs, where there isn’t the requisite domain expertise and funding for this infrastructure. Accordingly, the road map puts the emphasis on immediate and stronger cyber hygiene, compulsory incident reporting, enhancing AI literacy, and proper implementation of the Digital Personal Data Protection Act for long-term security investment and resilience.
Conclusion
The CERT-In advisory CIAD-2026-0020 signifies a vital acknowledgment of AI's transformational impact on the cybersecurity ecosystem. Capabilities formerly exclusive to elite state actors are being deployed by low-skilled users, leveraging state-of-the-art frontier AI tools. India’s MSMEs, enterprises, and digital citizens are experiencing a rapidly accelerating threat milieu. In this context, the CERT-In advisory and the ensuing blueprint can no longer be dismissed as ordinary government pronouncements but as critical operational imperatives. It is the country’s ability over the next few years to shore up its collective cyber resilience to the ever-increasing scale and sophistication of AI-powered attacks that will prove crucial.
References:
- https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES02&VLCODE=CIAD-2026-0020
- https://www.zeebiz.com/technology/news-cert-in-flags-high-severity-ai-cyber-risks-amid-claude-mythos-concerns-394448
- https://www.business-standard.com/technology/tech-news/cert-in-warning-ai-scams-frontier-models-mythos-gpt-5-5-what-it-means-126042800988_1.html
- https://www.businesswire.com/news/home/20251020612551/en/
- https://corporate.indiamart.com/2025/07/29/staying-ahead-of-cyber-threats/
- https://kpmg.com/kpmg-us/content/dam/kpmg/pdf/2025/deepfakes-real-threat.pdf

Executive Summary
A digitally manipulated image of World Bank President Ajay Banga has been circulating on social media, falsely portraying him as holding a Khalistani flag. The image was shared by a Pakistan-based X (formerly Twitter) user, who also incorrectly identified Banga as the President of the International Monetary Fund (IMF), thereby fuelling misleading speculation that he supports the Khalistani movement against India.
The Claim
On February 5, an X user with the handle @syedAnas0101010 posted an image allegedly showing Ajay Banga holding a Khalistani flag. The user misidentified him as the IMF President and captioned the post, “IMF president sending signals to INDIA.” The post quickly gained traction, amplifying false narratives and political speculation. Here is the link and archive link to the post, along with a screenshot:
Fact Check:
To verify the authenticity of the image, the CyberPeace Fact Check Desk conducted a detailed research . The image was first subjected to a reverse image search using Google Lens, which led to a Reuters news report published on June 13, 2023. The original photograph, captured by Reuters photojournalist Jonathan Ernst, showed Ajay Banga arriving at the World Bank headquarters in Washington, D.C., on June 2, 2023, marking his first day in office. In the authentic image, Banga is seen holding a coffee cup, not a flag.
Further analysis confirmed that the viral image had been digitally altered to replace the coffee cup with a Khalistani flag, thereby misrepresenting the context and intent of the original photograph. Here is the link to the report, along with a screenshot.

To strengthen the findings, the altered image was also analysed using the Hive Moderation AI detection tool. The tool’s assessment indicated a high likelihood that the image contained AI-generated or manipulated elements, reinforcing the conclusion that the image was not genuine. Below is a screenshot of the result.

Conclusion
The viral image claiming to show World Bank President Ajay Banga holding a Khalistani flag is fake. The photograph was digitally manipulated to spread misinformation and provoke political speculation. In reality, the original Reuters image from June 2023 shows Banga holding a coffee cup during his arrival at the World Bank headquarters. The claim that he supports the Khalistani movement is false and misleading.

Executive Summary
A collage of two images circulating on social media is falsely claiming that the street vendor who served jhalmuri to Prime Minister Narendra Modi during an election campaign in Jhargram was actually a personnel from the Special Protection Group (SPG). Research by the CyberPeace Research Wing found the claim to be false and misleading, indicating that it is being shared as part of election-related misinformation. The vendor and the SPG personnel seen in the viral collage are two different individuals.
Claim
An X (formerly Twitter) user, “@Jeetuburdak,” shared the viral collage on April 21, 2026, with the caption: “Another scam! The jhalmuri seller turned out to be an SPG commando.” The post quickly gained traction online.

Fact Check
A close examination of the two images used in the collage shows clear visual differences between the individuals. The person seen in SPG uniform does not match the street vendor who served food to the prime minister. Reverse image searches were conducted using multiple tools to trace the origin of the images. While no verifiable source was found linking the SPG personnel’s image to the vendor, several credible reports and videos featured the actual jhalmuri seller from the campaign event.
- https://x.com/ANI/status/2045859146508177911?s=20
- https://news24online.com/cities/kolkata/who-is-the-man-that-served-jhalmuri-to-pm-modi-know-his-daily-income-and-what-he-talked-about-with-pm/811123/


According to media reports, the prime minister briefly stopped at a roadside stall during the campaign in Jhargram and interacted with the vendor while enjoying jhalmuri. The vendor was later interviewed by multiple outlets, further confirming his identity as a local seller. Additionally, technical facial comparison analysis using online tools also indicated that the two individuals in the viral collage are not the same person.

Conclusion
The claim that the jhalmuri vendor was an SPG commando is false and misleading. The viral collage shows two different individuals, and there is no evidence to support the allegation.