White-box Cryptography: The Future of Payment Tokenisation
As a result of hardware implementations being too variable to rely upon hardware-based keys in all situations, white-box cryptography has become one of many elements in the greater mobile payment security model.
White-box cryptography refers to when cryptographic algorithms assume that hostile actors have access to all the aspects of the cryptographic process and have control over the execution platform and software implementation itself. While tokenisation provides ‘over the air’ payment credential security, white-box cryptography is used to for the protection of cryptographic operations and data and is commonly associated with securing contactless payments with NFC.
Security of IoT Payment Devices Still a Concern
This security model includes a combination of white-box cryptography, tokenisation and other hardening techniques such as anti-tampering capabilities. This is representative of the increasing complexity of processing and securing mobile devices from the actions of malicious actors.
However, it must be noted that due to the growing diversity of IoT devices, applying the model of security is unlikely to be applicable for every device, as the presence of these cryptographic chips cannot be guaranteed. That said, continual innovations within the IoT industry mean that suitable alternatives are likely to exist within the next few years which could further heighten security for IoT payment devices.
PCI SPoC
The PCI SPoC standards sets out eight primary requirements any organisation that implements white-box cryptography for mobile payments must comply with. This adds further complexity to the process of adding white-box cryptography for mobile use; meaning that specialist tools will be required to successfully manage the process.
By their very nature of white-box cryptography, the encryption key and algorithm are inextricably interlinked, so that they key cannot be identified while the algorithm is being used. Whilst this provides strong security; altering the encryption key poses a significant challenge, especially as mobile devices are changeable objects.
Our latest research found:
- The total volume of tokenised payment transactions will surpass 1 trillion by 2026, rising from 680 million in 2022; representing absolutel grwoth of 58% over the next 4 years.
- It attributed this growth to the rise of ‘one-click’ solutions, such as Click-to-Pay, that use card-on-file tokenisation to store a customer’s payment credentials, enabling them to auto-fill their checkout details and complete transactions via a single click.
- Tokenisation growth is being driven by increasing adoption of one-click solutions by merchants within eCommerce to reduce friction, and by card networks, who are encouraging mass adoption of tokenisation at the network level to improve payment approval rates.
- The volume of tokenised online and mobile eCommerce transactions is anticipated to grow by 74% by 2026. This growth is driven by the increasing customer expectation of a frictionless checkout experience, which one-click solutions via tokenisation offer.
- IoT payments offer the largest growth amongst the tokenisation market over the next five years, with tokenised IoT transactions expected to reach 19 billion by 2027; growing 400% from just 3.8 billion in 2022. Tokenisation is critical in facilitating IoT payments; enabling transactions to be made via new use cases and form factors, unlocking new revenue opportunities for payment providers.
Latest research, whitepapers & press releases
-
ReportFebruary 2026Telecoms & ConnectivityMobile Messaging Market: 2026-2030Juniper Research’s Mobile Messaging research suite provides mobile messaging vendors, mobile network operators, and enterprises with intelligence on how to capitalise on changing market dynamics within the mobile messaging market.
VIEW -
ReportFebruary 2026Fintech & PaymentsKYC/KYB Systems Market: 2026-2030Our KYC/KYB Systems research suite provides a detailed and insightful analysis of an evolving market; enabling stakeholders such as financial institutions, eCommerce platforms, regulatory agencies and technology vendors to understand future growth, key trends and the competitive environment.
VIEW -
ReportFebruary 2026Telecoms & ConnectivityRCS for Business: 2026-2030Our comprehensive RCS for Business research suite provides an in‑depth evaluation of a market poised for rapid expansion over the next five years. It equips stakeholders with clear insight into the most significant opportunities emerging over the next two years.
VIEW -
ReportFebruary 2026Fintech & PaymentsMobile Money in Emerging Markets: 2026-2030Our Mobile Money in Emerging Markets research report provides detailed evaluation and analysis of the ways in which the mobile financial services space is evolving and developing.
VIEW -
ReportJanuary 2026IoT & Emerging TechnologyPost-quantum Cryptography Market: 2026-2035Juniper Research’s Post-quantum Cryptography (PQC) research suite provides a comprehensive and insightful analysis of this market; enabling stakeholders, including PQC-enabled platform providers, specialists, cybersecurity consultancies, and many others, to understand future growth, key trends, and the competitive environment.
VIEW -
ReportJanuary 2026Telecoms & ConnectivityMVNO in a Box Market: 2026-2030Juniper Research’s MVNO in a Box research suite provides Mobile Virtual Network Enablers, Mobile Virtual Network Aggregators, and other players with detailed analysis and strategic recommendations for monetising demand for MVNO in a Box services.
VIEW
-
WhitepaperFebruary 2026Telecoms & ConnectivityHow Social Media Will Disrupt Mobile Messaging Channels in 2026
Our complimentary whitepaper, How Social Media Will Disrupt Mobile Messaging Channels in 2026, explores the challenges and opportunities for operators and enterprises as social media traffic continues to increase.
VIEW -
WhitepaperFebruary 2026Telecoms & ConnectivityProtecting Users from Scam Ads: A Call for Social Media Platform Accountability
In this new whitepaper commissioned by Revolut, Juniper Research examines how scam advertising has become embedded across major social media platforms, quantifies the scale of user exposure and financial harm, and explains why current detection and enforcement measures are failing to keep pace.
VIEW -
WhitepaperFebruary 2026Fintech & PaymentsKnow Your Agents (KYA): The Next Frontier in KYC/KYB Systems
Our complimentary whitepaper, Know Your Agents (KYA): The Next Frontier in KYC/KYB Systems, examines the state of the KYC/KYB systems market; considering the impact of regulatory development, emerging risk factors such as identity enabled fraud, and how identity and business verification is evolving beyond traditional customer and merchant onboarding toward agent-level governance.
VIEW -
WhitepaperFebruary 2026Telecoms & Connectivity3 Key Strategies for Capitalising on RCS Growth in 2026
Our complimentary whitepaper, 3 Key Strategies for Capitalising on RCS Growth in 2026, explores key trends shaping the RCS for Business market and outlines how mobile operators and platforms can accelerate adoption and maximise revenue over the next 12 months.
VIEW -
WhitepaperFebruary 2026Fintech & PaymentsThe Next Steps for Mobile Money – Interoperability and Openness
Our complimentary whitepaper, The Next Steps for Mobile Money – Interoperability and Openness, analyses how interoperability and open platforms can drive new growth opportunities through partnerships with key stakeholders.
VIEW -
WhitepaperJanuary 2026IoT & Emerging TechnologyPreparing for Q-Day: Post-quantum Security Shift
Our complimentary whitepaper, Preparing for Q-Day: Post-quantum Security Shift, assesses the factors which are increasing interest in adopting PQC, and challenges to PQC adoption. Additionally, it includes a forecast summary of the global spend on PQC by 2035.
VIEW
-
Telecoms & Connectivity
MVNO Subscriber Revenue to Exceed $50 Billion Globally in 2030
March 2026 -
Fintech & Payments
QUBE Events is excited to bring back the 24th NextGen Payments & RegTech Forum - Switzerland
February 2026 -
Telecoms & Connectivity
OTT Messaging Apps to Exceed 5 Billion Users Globally by 2028; Driving Shift in Enterprise Communication Strategies
February 2026 -
Fintech & Payments
Calling All Fintech & Payment Innovators: Future Digital Awards Now Open for 2026
February 2026 -
Telecoms & Connectivity
Operator RCS for Business Revenue to Reach $3 Billion Globally by 2027, Growing 150% in Two Years
February 2026 -
Fintech & Payments
KYC & KYB Systems Spend Outside Financial Sector to Grow 105% by 2030 Globally, as KYC Moves Beyond Banking
February 2026