Search
AI-powered search, human-powered content.
scroll to top arrow or icon

The threat of CEO fraud and one NGO's resilient response

In January 2020, Heidi Kühn, founder and CEO of Roots of Peace, returned from an overseas trip to devastating news: her finance department had unwittingly transferred over $1 million to an unfamiliar bank account. Kühn and her team quickly realized they’d become victims of a CEO fraud cyber attack—cybercriminals had infiltrated the company’s email accounts via spear phishing and impersonated Kühn to trick the finance team into sending funds abroad.

The theft had an enormous impact on Roots of Peace, a nonprofit dedicated to converting minefields into arable farmland in former war zones. Following the attack, Roots of Peace reached out to the CyberPeace Insitute, an organization that provides free cybersecurity assistance, threat detection and analysis to NGOs and other critical sectors. Roots of Peace was able to recover some of the funds, but to date, only $175,000 of the $1.34 million total stolen has been returned.

Roots of Peace is an international humanitarian organization, but their story isn’t unusual: In 2021, CEO fraud caused $2.4 billion in losses to US businesses alone, according to the FBI Internet Crime Report. Kühn’s story is featured in the second episode of “Caught in the Digital Crosshairs: The Human Impact of Cyberattacks,” a new video series on cyber security produced by GZERO in partnership with Microsoft and the CyberPeace Institute. GZERO spoke with Kühn and Derek Pillar, a cyber security expert from Mastercard, to learn more about the threat of CEO fraud, the real-life impact of cyberattacks against the humanitarian sector, and how you can prevent similar attacks from happening to you and your organization.

More from Global Stage

Can we use AI to secure the world's digital future?

How do we ensure AI is safe, available to everyone, and enhancing productivity? It’s a big topic at this year’s UN General Assembly. That’s why GZERO’s Global Stage livestream brought together leading experts at the heart of the action for “Live from the United Nations: Securing our Digital Future,” an event produced in partnership between the Complex Risk Analytics Fund, or CRAF’d, and GZERO Media’s Global Stage series, sponsored by Microsoft.

Is the Europe-US rift leaving us all vulnerable?

As the tense and politically charged 2025 Munich Security Conference draws to a close, GZERO’s Global Stage series presents a conversation about strained relationships between the US and Europe, Ukraine's path ahead, and rising threats in cyberspace.

Can we rebuild the Internet for democracy?

At the 2026 Munich Security Conference, entrepreneur and Project Liberty founder Frank McCourt makes the case that the internet, and the AI systems rapidly reshaping it, must be redesigned to serve people, not platforms.

Ian Bremmer: The US–China AI space has “Zero Trust”

China was largely absent from the core conversations at the 2026 Munich Security Conference. That, says Ian Bremmer, is telling.

Why countries are picking their own alliances

At the 62nd Munich Security Conference, Parag Khanna, founder and CEO of AlphaGeo, says globalization isn't dead, it's evolving. Speaking with GZERO’s Tony Maciulis, he explains that countries are forming flexible alliances that expand and shrink based on their interests. “You’d rather be in the tent...if it suits your interest than not in it,” Khanna notes, highlighting how the US, Europe, and Asia are adapting to shifting global priorities.

What does “sovereign cloud” really mean?

Sovereignty has become one of the most powerful, and least defined, words in tech policy. At the 2026 Munich Security Conference, SAP global head of government affairs, Wolfgang Dierker, explains why governments and enterprise customers are demanding more control over their data, cloud infrastructure, and AI systems amid rising geopolitical uncertainty.