Cybersecurity Challenges in Mobile Payment Apps: Threats and Solutions

Authors

  • Salman ul-Haq Author

DOI:

https://doi.org/10.67265/jsrd.v1.i2.05

Keywords:

Mobile Payment Security, Cybersecurity Threats , Fraud detection, User behaviour , Regulatory Compliance

Abstract

The study examines the evolving threat landscape, critically evaluates the effectiveness of existing security measures, and explores the complex influence of regulatory frameworks and user behaviour. Using systematic literature review methodology guided by PRISMA standards and Quality Assessment Criteria (QAS), the research synthesizes insights from a wide range of academic and industry sources. Results show that the cybersecurity landscape is changing faster than ever, with threats becoming more advanced through the use of artificial intelligence and the growing potential risks posed by quantum computing. Although technologies like encryption, tokenization, biometrics, and multi-factor authentication are available, they are often applied inconsistently, which reduces their overall effectiveness. At the same time, regulations, which are crucial, are unevenly applied across different geographies and produce inconsistencies and gaps in security measures around the globe. Human behaviours remain one of the most significant vulnerabilities, reflecting the continuing disparity between cyber safety awareness and the resultant behaviours that are truly safe and secure. The report proposes a whole systems approach that includes a range of defensive layers to provide better mobile payment security, while also developing technology, proposing a shared regulated environment globally, and recommending clear education and user-friendly design. Lastly, the report offers practical considerations for action going forward to facilitate better collaboration and partnership among developers, financial institutions, and regulators, to create a more secure, resilient and trusted digital financial system.

References

Adil, K. (2025). Leveraging advanced data techniques in HR analytics: Revolutionizing workforce management. Journal of Social Research Dynamics, 1(1).

Arli, D. (2023). Exploring the role of innovation attributes on mobile payment adoption. Journal of Consumer Marketing, 40(7), 826–841. https://doi.org/10.1108/JCM-04-2021-4630

Basit, A., Zafar, M., Liu, X., Javed, A. R., Jalil, Z., & Kifayat, K. (2023). Mitigation strategies against phishing attacks: A systematic literature review. Computers & Security, 132, 103387. https://doi.org/10.1016/j.cose.2023.103387

Behera, C. K., & Kumra, R. (2024). Two decades of mobile payment research: A systematic review using the TCCM approach. International Journal of Consumer Studies, 48(1), e13003. https://doi.org/10.1111/ijcs.13003

Btoush, E. A. L. M., Zhou, X., Gururajan, R., Chan, K. C., Genrich, R., & Sankaran, P. (2023). A systematic review of credit card cyber fraud detection using machine and deep learning. PeerJ Computer Science, 9, e1278. https://doi.org/10.7717/peerj-cs.1278

Casino, F., Dasaklis, T. K., & Patsakis, C. (2019). A systematic literature review of blockchain-based applications. Telematics and Informatics, 36, 55–81. https://doi.org/10.1016/j.tele.2018.11.006

Dwivedi, Y. K., et al. (2023). So what if ChatGPT wrote it? International Journal of Information Management, 71, 102642. https://doi.org/10.1016/j.ijinfomgt.2023.102642

European Union Agency for Cybersecurity. (2024). Data protection and cybersecurity in digital financial services. https://www.enisa.europa.eu/

Federal Bureau of Investigation. (2023). Internet Crime Report 2022. https://www.ic3.gov/Media/PDF/AnnualReport/2022_IC3Report.pdf

Frank, M.-L., & Kohn, V. (2023). Understanding extra-role security behaviors. Computers & Security, 132, 103386. https://doi.org/10.1016/j.cose.2023.103386

Hafez, I. Y., Hafez, A. Y., Saleh, A., Abd El-Mageed, A. A., & Abohany, A. A. (2025). AI-enhanced credit card fraud detection: Systematic review. Journal of Big Data, 12(1), Article 6. https://doi.org/10.1186/s40537-024-01048-8

ISACA. (2024). Artificial intelligence and cybersecurity: Opportunities and threats. https://www.isaca.org/

Javaheri, D., Fahmideh, M., Chizari, H., Lalbakhsh, P., & Hur, J. (2024). Cybersecurity threats in FinTech: A systematic review. Expert Systems with Applications, 241, 122697. https://doi.org/10.1016/j.eswa.2023.122697

Kong, Z., Xue, R., Wang, G., Zhai, Q., Huang, S., & Wang, C. (2021). A survey on adversarial attack in AI systems. Wireless Communications and Mobile Computing, 2021, 4907754. https://doi.org/10.1155/2021/4907754

Marasco, E., Albanese, M., Patibandla, V. V. R., Vurity, A., & Sriram, S. S. (2023). Biometric multi-factor authentication usability study. Security and Privacy, 6(1), e261. https://doi.org/10.1002/spy2.261

Motie, S., & Raahemi, B. (2024). Financial fraud detection using graph neural networks: Systematic review. Expert Systems with Applications, 240, 122156. https://doi.org/10.1016/j.eswa.2023.122156

National Institute of Standards and Technology. (2024). The NIST Cybersecurity Framework (CSF) 2.0. https://www.nist.gov/cyberframework

Oliveira, T., Thomas, M., Baptista, G., & Campos, F. (2016). Mobile payment adoption and trust. Computers in Human Behavior, 61, 404–414. https://doi.org/10.1016/j.chb.2016.03.030

OWASP Foundation. (2024). OWASP Mobile Top 10 Risks. https://owasp.org/www-project-mobile-top-10/

Pratama, M. H. A., Rizal, A., & Irawati, I. D. (2025). Secure face recognition payment systems: Systematic review. Information, 16(7), 581. https://doi.org/10.3390/info16070581

PCI Security Standards Council. (2022). Payment Card Industry Data Security Standard (PCI DSS) 4.0. https://www.pcisecuritystandards.org/

Romānova, I., Grima, S., & Spiteri, J. (2018). PSD2 and open banking regulation. Journal of Risk and Financial Management, 11(3), 47. https://doi.org/10.3390/jrfm11030047

Thomopoulos, G. A., Lyras, D. P., & Fidas, C. A. (2024). Phishing attacks and EEG/gaze-based analysis. Personal and Ubiquitous Computing, 28, 449–470. https://doi.org/10.1007/s00779-024-01794-9

Vijayanand, D., & Smrithy, G. S. (2025). Explainable AI for financial fraud detection. Intelligent Decision Technologies, 19(1), 52–67. https://doi.org/10.1177/18724981241289751

Weber, P., Carl, K. V., & Hinz, O. (2024). Explainable AI in finance: Systematic review. Management Review Quarterly, 74, 867–907. https://doi.org/10.1007/s11301-023-00320-0

Yang, C.-C., Yang, S.-Y., & Chang, Y.-C. (2023). Mobile payment adoption in older adults. International Journal of Environmental Research and Public Health, 20(2), 1391. https://doi.org/10.3390/ijerph20021391

Zimperium. (2024). Global Mobile Threat Report 2024. https://www.zimperium.com/global-mobile-threat-report/

Downloads

Published

2025-12-10