White-box Cryptography: The Future of Payment Tokenisation
As a result of hardware implementations being too variable to rely upon hardware-based keys in all situations, white-box cryptography has become one of many elements in the greater mobile payment security model.
White-box cryptography refers to when cryptographic algorithms assume that hostile actors have access to all the aspects of the cryptographic process and have control over the execution platform and software implementation itself. While tokenisation provides ‘over the air’ payment credential security, white-box cryptography is used to for the protection of cryptographic operations and data and is commonly associated with securing contactless payments with NFC.
Security of IoT Payment Devices Still a Concern
This security model includes a combination of white-box cryptography, tokenisation and other hardening techniques such as anti-tampering capabilities. This is representative of the increasing complexity of processing and securing mobile devices from the actions of malicious actors.
However, it must be noted that due to the growing diversity of IoT devices, applying the model of security is unlikely to be applicable for every device, as the presence of these cryptographic chips cannot be guaranteed. That said, continual innovations within the IoT industry mean that suitable alternatives are likely to exist within the next few years which could further heighten security for IoT payment devices.
PCI SPoC
The PCI SPoC standards sets out eight primary requirements any organisation that implements white-box cryptography for mobile payments must comply with. This adds further complexity to the process of adding white-box cryptography for mobile use; meaning that specialist tools will be required to successfully manage the process.
By their very nature of white-box cryptography, the encryption key and algorithm are inextricably interlinked, so that they key cannot be identified while the algorithm is being used. Whilst this provides strong security; altering the encryption key poses a significant challenge, especially as mobile devices are changeable objects.
Our latest research found:
- The total volume of tokenised payment transactions will surpass 1 trillion by 2026, rising from 680 million in 2022; representing absolutel grwoth of 58% over the next 4 years.
- It attributed this growth to the rise of ‘one-click’ solutions, such as Click-to-Pay, that use card-on-file tokenisation to store a customer’s payment credentials, enabling them to auto-fill their checkout details and complete transactions via a single click.
- Tokenisation growth is being driven by increasing adoption of one-click solutions by merchants within eCommerce to reduce friction, and by card networks, who are encouraging mass adoption of tokenisation at the network level to improve payment approval rates.
- The volume of tokenised online and mobile eCommerce transactions is anticipated to grow by 74% by 2026. This growth is driven by the increasing customer expectation of a frictionless checkout experience, which one-click solutions via tokenisation offer.
- IoT payments offer the largest growth amongst the tokenisation market over the next five years, with tokenised IoT transactions expected to reach 19 billion by 2027; growing 400% from just 3.8 billion in 2022. Tokenisation is critical in facilitating IoT payments; enabling transactions to be made via new use cases and form factors, unlocking new revenue opportunities for payment providers.
Latest research, whitepapers & press releases
-
ReportSeptember 2025Telecoms & Connectivity
A2P & Business Messaging Market: 2025-2030
Our extensive A2P & Business Messaging research suite comprises detailed analysis of a market undergoing rapid evolution. It provides guidance to mobile operators on how to navigate this shift and grow revenue from business messaging in the future.
VIEW -
ReportAugust 2025Fintech & Payments
Fraud Detection & Prevention in Banking Market: 2025-2030
Our Fraud Detection and Prevention in Banking research suite provides a comprehensive and in-depth analysis of the types of fraud, and methods that can be used to overcome them. This enables stakeholders such as banks, financial institutions, and fintechs to understand future growth, key trends and the competitive environment.
VIEW -
ReportAugust 2025Sustainability & Smart Cities
Smart Buildings Market: 2025-2030
Our Smart Buildings research suite provides in-depth analysis and evaluation of how hardware and software service providers are reimagining smart building solutions as living ecosystems, using Internet of Things (IoT) and AI.
VIEW -
ReportAugust 2025Telecoms & Connectivity
Network APIs Market: 2025-2030
Our Network API research suite provides operators, CPaaS providers, and other GSMA channel partners with extensive analysis and actionable insights into the rapidly growing network API market. It contains data that allows stakeholders in the market to make informed decisions on their product development and business strategies in the network API market.
VIEW -
ReportJuly 2025Fintech & Payments
B2B Payments Market: 2025-2030
Juniper Research’s B2B Payments research suite provides a comprehensive and insightful analysis of this market; enabling stakeholders from B2B payment platform providers to regulators and banks, to understand future growth, key trends and the competitive environment.
VIEW -
ReportJuly 2025Fintech & Payments
Subscription Economy Market: 2025-2030
Juniper Research’s Subscription Economy research suite provides a comprehensive and insightful analysis of this progressing market, enabling stakeholders, from subscription management providers to regulators and subscription providers, to understand future growth, key trends and the competitive environment.
VIEW
-
WhitepaperAugust 2025Fintech & Payments
Synthetic Identity Fraud: The Lurking Threat to Modern Banking
Our complimentary whitepaper, Synthetic Identity Fraud: The Lurking Threat to Modern Banking, examines the current fraud landscape; explaining the role of key actors in the fraud prevention landscape, and recent developments within the fraud prevention industry.
VIEW -
WhitepaperAugust 2025Sustainability & Smart Cities
Foundations of Smart Buildings: AI, IoT & Energy Efficiency
Our complimentary whitepaper, Foundations of Smart Buildings: AI, IoT & Energy Efficiency, evaluates the main technical components of smart building architecture; being the key objectives and challenges for their acquirement and deployment in the market, as it currently stands.
VIEW -
WhitepaperAugust 2025Telecoms & Connectivity
How Operators Can Unlock the $8 billion Network API Opportunity
Our complimentary whitepaper, How Operators Can Unlock the $8 billion Network API Opportunity, explores how operators can capitalise on the opportunities in the network API market, both now and in the future.
VIEW -
WhitepaperJuly 2025Fintech & Payments
Breaking the Innovation Logjam in B2B Payments
Our complimentary whitepaper, Breaking the Innovation Logjam in B2B Payments, assesses the key areas where B2B payments are being modernised, the key trends driving change, and the main challenges to further development.
VIEW -
WhitepaperJuly 2025Fintech & Payments
Subscribed for Success: Navigating the Future of the Subscription Economy
Our complimentary whitepaper, Subscribed for Success: Navigating the Future of the Subscription Economy, assesses the future of the subscription economy market; examining key drivers such as AI, regulations, and sustainability goals.
VIEW -
WhitepaperJune 2025Telecoms & Connectivity
Roaming Tech Horizon 2025
Download your copy of the Roaming Tech Horizon, and discover which roaming technologies are set to soar; so you can focus on the innovations with staying power, not just hype.
VIEW
-
Telecoms & Connectivity
Cellular IoT Connectivity Revenue to Exceed $30 Billion Globally in 2030
August 2025 -
Sustainability & Smart Cities
eScooter Spend to Surpass $7 Billion Globally by 2030, as Rider Freedom Spurs Growth
August 2025 -
Telecoms & Connectivity
Branded Calling to Verify 90 Billion Calls Globally by 2029, as Unified Verification Frameworks Boost Subscriber Protection
August 2025 -
Fintech & Payments
Fraud to Cost Financial Institutions $58.3 Billion by 2030 Globally, as Synthetic Identities Threaten Fraud Tidal Wave
August 2025 -
Sustainability & Smart Cities
Industrial Smart Buildings: Energy Wastage and Bespoke Vertical Solutions to Drive 525% Surge in Deployments by 2030
August 2025 -
Telecoms & Connectivity
Network API Revenue to Exceed $8 Billion by 2030 Globally, as KYC Identified as the Next Major Opportunity
August 2025