“A refresh token should be time-bound — before the last login is the attacker's first.”

A refresh token should be time-bound — before the last login is the attacker's first. — Kai London (Professor Kai London), CISO. Principle 2223 of 10000 from the book “The Last Login” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk