PCI DSS applies to organizations that collect, process, or transmit cardholder data—including through mobile applications.
Mobile apps operate in untrusted environments where attackers can analyze binaries, manipulate execution, or run applications on rooted or jailbroken devices. And, AI-assisted analysis techniques have made it easier than ever.

