Search
AI-powered search, human-powered content.
scroll to top arrow or icon

The threat of CEO fraud and one NGO's resilient response

In January 2020, Heidi Kühn, founder and CEO of Roots of Peace, returned from an overseas trip to devastating news: her finance department had unwittingly transferred over $1 million to an unfamiliar bank account. Kühn and her team quickly realized they’d become victims of a CEO fraud cyber attack—cybercriminals had infiltrated the company’s email accounts via spear phishing and impersonated Kühn to trick the finance team into sending funds abroad.

The theft had an enormous impact on Roots of Peace, a nonprofit dedicated to converting minefields into arable farmland in former war zones. Following the attack, Roots of Peace reached out to the CyberPeace Insitute, an organization that provides free cybersecurity assistance, threat detection and analysis to NGOs and other critical sectors. Roots of Peace was able to recover some of the funds, but to date, only $175,000 of the $1.34 million total stolen has been returned.

Roots of Peace is an international humanitarian organization, but their story isn’t unusual: In 2021, CEO fraud caused $2.4 billion in losses to US businesses alone, according to the FBI Internet Crime Report. Kühn’s story is featured in the second episode of “Caught in the Digital Crosshairs: The Human Impact of Cyberattacks,” a new video series on cyber security produced by GZERO in partnership with Microsoft and the CyberPeace Institute. GZERO spoke with Kühn and Derek Pillar, a cyber security expert from Mastercard, to learn more about the threat of CEO fraud, the real-life impact of cyberattacks against the humanitarian sector, and how you can prevent similar attacks from happening to you and your organization.

More from Global Stage

Can we use AI to secure the world's digital future?

How do we ensure AI is safe, available to everyone, and enhancing productivity? It’s a big topic at this year’s UN General Assembly. That’s why GZERO’s Global Stage livestream brought together leading experts at the heart of the action for “Live from the United Nations: Securing our Digital Future,” an event produced in partnership between the Complex Risk Analytics Fund, or CRAF’d, and GZERO Media’s Global Stage series, sponsored by Microsoft.

Is the Europe-US rift leaving us all vulnerable?

As the tense and politically charged 2025 Munich Security Conference draws to a close, GZERO’s Global Stage series presents a conversation about strained relationships between the US and Europe, Ukraine's path ahead, and rising threats in cyberspace.

The rise of global impunity in a G-Zero world

“If the G-Zero world is winning, one of the things that's also winning is impunity,” says Ian Bremmer, president and founder of Eurasia Group and GZERO Media. Speaking at the 2025 Munich Security Conference, Bremmer highlights the rise of global impunity and the challenges of deterrence in today’s volatile geopolitical climate.

Is free speech under attack in Europe? Roberta Metsola weighs in

“There is a sort of doubt about freedom of expression here or protection of free speech in Europe,” says Roberta Metsola, president of the European Parliament.

Afghanistan’s crisis deepens: Fawzia Koofi on Taliban rule and global response

“The Taliban’s war is against women,” Fawzia Koofi, former Afghan parliamentarian, and women’s rights activist, told GZERO’s Tony Maciulis on the sidelines of the 2025 Munich Security Conference.

The growing cyber threat: Ransomware, China, and state-sponsored attacks

"Ransomware attacks surged 252% last year—hospitals, schools, and local governments are paying the price," said Brad Smith, Microsoft vice chair and president, during a Global Stage discussion at the 2025 Munich Security Conference.