I watched the video this guy is half full of shit.
He talks about IOCs indicators of compromises. He saying a new user name and password that DOGE created was used by a Russian IP within 15 minutes of creation. It may be link to Starlink.
#1 Starlink doesn't operate in Russia
#2 If he got IP's and saw geo tagging(which can be spoofed or inaccurate), associating the IP to Russia who if it was hackers would use a VPN and definitely utilize another countries IP space. If it was legit while linking the IP to Russia he would see the ASN (Autonomous System Number) which would belong to Starlink. This is in information like WHOIS but it would be RIPE NCC for Russia. This is public information.
#3 I am pretty certain there would a MFA login for a public facing databases for any department of the government.
#4 If someone actually logged in from Russia with a Russian IP this would be a major investigation by a 3 letter agency and he wouldn't be able to talk openly about these details.
#5 The data transfer for that large amount makes sense as they going through data and auditing. It's better to get a copy and work with it on local storage so you can keep the integrity of the DB. This is done incase people try to delete records and what not.
I think his Russia thing is full of shit, the whole family being threaten and all that who knows that could be truthful.