Apple’s security vulnerability and Level’s first response
blog.levelmoney.com
blog.levelmoney.com
I haven't done any iOS dev, so perhaps this isn't feasible, but that puts responsibility for and control of the security of your app entirely in your own hands; is there a reason that it wouldn't be desirable to go that route?