Skip to content
The ColumnInvestigation· No. 3433

Mash Claims It Hacked Ukrainian Loss Data, With No Proof

The Russian outletMash, known for its closeness to Russian security circles, claimed in early July that hackers had infiltrated Ukrainian databases to

Premium reading
MadMax
Key takeaways
  1. The Russian outletMash, known for its closeness to Russian security circles, claimed in early July that hackers had infiltrated Ukrainian databases to
  2. Introduction: a Russian claim resting on nothing verifiable
  3. A Kremlin-friendly outlet reignites the numbers war
Transparency

Facts, quotes, and cited links remain in the body. Interpretations are framed as analysis or opinion according to the format.

Introduction: a Russian claim resting on nothing verifiable

A Kremlin-friendly outlet reignites the numbers war

The Russian outletMash, known for its closeness to Russian security circles, claimed in early July that hackers had infiltrated Ukrainian databases to extract precise figures on Ukrainian armed forces losses. No independent technical proof accompanies this claim — no verifiable screenshot, no intrusion log, no confirmation from any independent third party.

This total absence of independent verification immediately places this allegation in the category of unverified information operations, a category the Russo-Ukrainian war has made all too familiar since 2022, with each side regularly producing loss figures disputed by the other.

Why this investigation chooses caution

This piece will not repeat a single figure put forward by Mash, precisely because no independent source can corroborate them. The goal here is to examine the mechanism behind this claim, its context, and what it reveals about the broader information war waged by Moscow.

Spreading unverified military loss figures is a classic psychological weapon, one that must be handled with the utmost journalistic care, especially when the sole source belongs to a belligerent's own media ecosystem.

I'll say it upfront: I am not going to repeat a single figure from this Russian claim. That would be doing the Kremlin'spropaganda work for it. An assertion without proof remains an assertion, never a fact.

Who is Mash, this outlet close to Russian security circles

A Telegram channel turned unavoidable Russian media force

Mash has established itself in recent years as one of the leading information channels close to Russian services, regularly breaking news about security operations, arrests or military incidents ahead of official Russian media themselves. This proximity has long fueled suspicions that it serves as a controlled relay for messages the Kremlin wants circulated without formally attributing them to a government source.

This relay function makes every Mash announcement on sensitive topics, such as Ukrainian military losses, particularly suspect in the eyes of Westernanalysts who have tracked Russianinformation warfare since the invasion began.

A history of unverified publications

Several fact-checking organizations have already documented cases where information spread by this type of Russianchannel turned out to be exaggerated, taken out of context, or simply fabricated to serve a specific propagandagoal, with no correction ever published afterward.

This track record makes systematic critical reading of any numerical claim from this type of source all the more necessary, particularly on a subject as sensitive as the human losses of an army at war.

An outlet that breaks sensitive security news first, without ever revealing its sources, is not an independent whistleblower. It is a mouthpiece, and it should be treated as one.

Why military loss figures are a psychological weapon

A numbers war since February 2022

Since the full-scale invasion began, Russia and Ukraine have each published wildly divergent estimates of the losses inflicted on the other, with no neutral source able to definitively settle this debate in real time. This divergence is not accidental: it serves well-identified goals of national morale and diplomatic pressure on both sides.

A figure for massive losses, even unverified, can affect the morale of a population, fuel doubts among Ukraine'sWesternallies, or justify calls for negotiation presented as pragmatic by those spreading them.

The alleged hack as a credibility dressing

Presenting a claim as originating from a computer hack, rather than a simple estimate, is meant to give it an air of irrefutable technical proof, even though no evidence of this hack has been made publicly verifiable. This is a classic technique of modern disinformation: dressing up a claim with a technological veneer to make it more credible to a non-specialist public.

This technique works all the better because real cyberattacks do exist in this conflict, which blurs the line between documented incidents and allegations fabricated from whole cloth.

This is exactly the trap I want to avoid here: because real cyberattacks exist in this war, every hacking claim gains an instant credibility it doesn't always deserve. Journalisticvigilance has to stay constant.

The context of the real, documented cyberattacks in this conflict

Real operations on both sides

There are, in fact, perfectly documented cyberattacks in this conflict: the campaigns by Russia's GRU Unit 29155 against the Ukrainian presidential office, or the operations claimed by Ukrainianmilitaryintelligence against Russian energy infrastructure. These cases rest on official confirmations, Western judicial investigations, or technical advisories published by recognized cybersecurity agencies.

The difference is fundamental: these documented cases rest on technical evidence and institutional confirmations, whereas Mash's claim about Ukrainian loss databases rests, to date, on no element of that kind.

What Ukraine's defense ministry has not confirmed

To this investigation's knowledge, no official confirmation from the Ukrainian Ministry of Defense nor from any Western cybersecurity agency has corroborated Mash's claim regarding a successful hack of Ukrainian military loss databases.

This lack of confirmation, weeks after the initial publication, is itself a strong indicator of how baseless this specific claim is.

Ukrainian authorities' silence is not absolute proof of innocence, but in this specific case, it carries real weight. Had a hack of this scale actually occurred, it would have left traces that other services would eventually have confirmed.

How Western media should handle this kind of claim

The rule of the unverifiable single source

The most basic journalistic principle when facing this type of claim is simple: a single source, belonging to a belligerent's own media ecosystem, with no independent technical proof, is never enough to establish a fact. That is a rule this piece applies strictly by refusing to repeat the figures put forward by Mash.

This caution is not naivety about the real losses suffered by both sides in this war. It is, on the contrary, a demand for rigor that protects the credibility of any future coverage of this conflict.

The risk of cascading repetition

The main danger of this type of claim is not its initial publication, but its cascadingrepetition across other channels, each adding a layer of apparent credibility without ever verifying the original source. This is how fabricated figures can, within days, circulate as established facts in certain segments of public opinion.

Breaking this cascade of unverified repetition is precisely one of the roles rigorous journalism must play on this kind of sensitive file.

I refuse to take part, even indirectly, in this cascade of unverified repetition. Naming the mechanism of disinformation, without repeating its content, is sometimes the most useful service a piece like this one can offer its readers.

What this claim reveals about Russian strategy

An information war targeting Western morale as much as Ukrainian

This type of claim does not only target internal Ukrainian morale. It also seeks to feed, among Western public opinions, the idea that the conflict is costing Ukraine more than official communications from Kyiv suggest, hoping to gradually erode Western political and financial support for the Ukrainian war effort.

This dual target — internal and external — is a classic feature of Russianinformation warfare documented since the invasion began, and it explains why such claims often find a disproportionate echo relative to their actual level of proof.

Continuity with other documented disinformation campaigns

Western disinformation researchers have already documented several earlier Russian campaigns using unverified hacking claims to spread narratives favorable to the Kremlin, none of which were ever subsequently confirmed by an independent investigation.

This methodological continuity strengthens the likelihood that Mash's claim belongs to this same family of operations, rather than to a genuinely verified cybersecurity incident.

This war is not fought only in trenches or in servers. It is also fought inside the minds of Western public opinion, and that is precisely where this kind of unverified claim hopes to score points.

What Ukraine can do against this type of campaign

Transparency as the best defense

Against this type of claim, the best Ukrainiandefense remains selective, controlled transparency about its own losses, without ever compromising sensitive operational information. The Ukrainian Ministry of Defense has, in the past, chosen to publish certain aggregated tallies to counter Russian narratives deemed too far removed from ground reality.

This measured approach helps preserve the trust of Westernallies while avoiding handing the adversary precise tactical information about the actual state of Ukrainian forces.

The role of Western allies in verification

Westernintelligence services, which have analytical capabilities independent of both belligerents' statements, play a discreet but important role in assessing the plausibility of this type of Russian claim, even when their conclusions are not always made public immediately.

This independent assessment, even when not published in detail, helps limit the diplomaticimpact of these disinformation campaigns on the concrete decisions of Ukraine's allied governments.

I trust this discreet Western verification far more than any spectacular claim from an outlet like Mash. Discretion, in this specific area, is often a sign of seriousness rather than concealment.

The precedent of fake leaked military documents

A tactic already used in the past

Western disinformation researchers have documented several earlier cases where falsified military documents or fabricated leaks were attributed to Ukrainian or Western services solely to sow confusion, none of which withstood serious technical scrutiny by independent organizations fact-checking such claims.

This recurring tactic fits within a broader Russian doctrine of cognitive warfare, where the sheer quantity of dubious content spread sometimes matters more than its evidentiary quality, in hopes of saturating the information space before rigorous verification can catch up with the speed of initial spread.

Why repetition does not create proof

The simple fact that an allegation is picked up by several secondary channels, often without cross-verification, never turns an unverified assertion into an established fact. Yet this is a well-known psychological mechanism: repetition creates an illusion of truth for part of the public, regardless of how solid the underlying evidence actually is.

This investigation explicitly refuses to take part in that repetition dynamic, clearly distinguishing, at every step, what qualifies as an unproven allegation from what qualifies as a verified fact.

Repetition has never made proof. That may be the most important lesson to draw from this affair: ten repetitions of the same unverified claim are worth no more than one, if none of them provides real technical evidence.

Conclusion: refusing to hand a megaphone to the unverifiable

What this investigation establishes and what it refuses to affirm

This investigation establishes one clear fact: Mash published a claim of hacking Ukrainian databases on military losses, with no verifiable technical proof and no confirmation from any independent source to date. It refuses, however, to affirm or repeat a single figure put forward by this source, for lack of any element allowing it to be corroborated.

Vigilance that must be sustained over time

This affair illustrates a broader reality of this war: the battle over numbers and narratives is every bit as fierce as the one being fought on the ground, and it demands constant vigilance from readers and journalists alike against unverified single sources.

Nothing guarantees this type of claim won't recur in the coming weeks; the best response remains, invariably, the same demand for independent proof before any repetition.

I'll close this investigation with a simple rule I hold myself to for every new claim of this kind: no verifiable technical proof, no repetition. Journalistic silence in the face of the unverifiable is sometimes the most responsible response.

By Maxime Marquette, columnist

Columnist's transparency note

My acknowledged biases

I sign this investigation as an engaged observer of the Western camp, not as a neutral journalist. I support the sovereignty of Ukraine and I remain structurally wary of Russian media channels close to the Kremlin's security circles, whose history of disinformation has been documented for years.

What I do not claim to know

I do not know whether a real technical incident, on a smaller scale than the one alleged, occurred against Ukrainiansystems. I have no evidence that would confirm or fully refute Mash's claim; that is precisely why I refuse to repeat its figures as established facts.

Sources

Primary sources

Ministry of Defense of Ukraine — official statements, July 2026

EADaily — repeating Mash's claim of a hack of Ukrainian databases, July 4, 2026

Army Inform — Ukrainian defense news, July 2026

Secondary sources

Foreign Policy — analysis of Russo-Ukrainian information warfare

The Guardian International — coverage of Russian disinformation

Al Jazeera — context on the war of narratives in Ukraine

Get the geopolitics analyses

Conflicts, powers, alliances: the MadMax thread without the noise.

Cite this article

Maxime Marquette (2026). Mash Claims It Hacked Ukrainian Loss Data, With No Proof. MadMax. https://mad-max.co/en/article/mash-affirme-avoir-pirate-les-pertes-ukrainiennes-sans-aucune-preuve-verifiable

How does this piece make you feel?
MM
Maxime Marquette
Independent columnist

Maxime Marquette writes most of the analyses and columns published on MadMax — geopolitics, technology, and current events, no filler.

The Newsletter

Enjoyed this piece? Get the next one.

One chronicle a week, straight to your inbox. No noise.

Comments

0 / 2000

Be the first to weigh in.

This article was generated with AI assistance, under human supervision.

Investigation3 reads2073 words11 min read