De-authing clients and capturing traffic perhaps? (Not actual data traffic unless you have a rogue cellphone able to connect to the network, a weak wireless network, or a rogue Wireless AP that the cellphones can be tricked into using by jamming the frequence of the other.) Just an idea

Have you separated the mobile cellphones from the critical infrastructure too?
I guess in a case with a malicious app, it could be possible. Eventually / in time, it's likely that it can happen on any mobile platform

But that's just my thoughts, you're probably as secure as you can be, for now
