I’m Nave Ben Naim - a Founding Engineer at Naboo.ai, writing here as navnav221. My background is in AI engineering and cybersecurity. This site, NavSec Blog, is where I publish what I learn.

What I work on

  • AI and context engineering. At Naboo I work on context-aware AI - giving models the right organizational context, because a smart model doesn’t make up for bad context.
  • Vulnerability research. My first CVE was CVE-2022-34389 in Dell’s remote assistance flow - a rate-limiting flaw that let an attacker impersonate a legitimate Dell customer to a support technician.
  • CTFs and Hack The Box. I play CTFs regularly, including BSides TLV, and write up the machines and challenges I find interesting. Not walkthroughs - the conclusions.
  • Active Directory and Kerberos internals. Understanding the protocol beats memorizing the tool. That’s the ethos here: don’t be a script kiddie.

Elsewhere

You may also find me as nave naim, navnav, or navebennaim - same person.

Get in touch

Questions, corrections, or something you want me to look at? Reach me on LinkedIn or by email.