Loxada Secure

Control the network your team connects through.

The networks your people work from, brought back under your control.

Your staff connect to corporate systems from home networks, hotels, coworking spaces and client sites, through routers you cannot see, patch or trust.

Loxada Secure replaces that unmanaged connection with a managed router running Loxada’s secure firmware, so the network edge is known and controlled wherever your people are.

The problem

The connection you cannot verify is the one attackers are using

Every time someone works outside the office, they connect through infrastructure your IT team has never seen. You cannot confirm the router’s firmware is current, whether its settings have been altered, who else is on the network, or whether it has already been compromised. That gap is not theoretical.

The router became the attack, and endpoint security never saw it

Since 2024, a Russian GRU unit tracked as APT28 has been changing the DNS settings on compromised consumer routers. It has attacked thousands of devices, including unpatched TP-Link models, so that people typing the correct web address for a service they use every day were quietly redirected to credential-stealing fakes. The redirection happened at the router, below the level endpoint security can see.

US and UK authorities disrupted the network in April 2026. Source: US FBI and UK NCSC advisories, April 2026 (APT28).

Agencies including the NSA, CISA, GCHQ and the FBI have increasingly named network edge devices and unmanaged infrastructure as priority attack surfaces. The router is part of your security posture now, whether or not you control it.

How it works

A trusted network environment, wherever work happens

Loxada Secure works in three steps.

  1. We ship fully pre-configured, tested routers running Loxada’s secure firmware to your users. No software to install, and no complicated setup.

  2. Each device creates a secure, encrypted connection to the Loxada Remote Private Network, physically separate from the surrounding local network. The user connects to a consistent, trusted network environment from the moment they plug in.

  3. Your IT team manages the entire device estate centrally through the Loxada administration portal. Monitor status, manage assignments, push revocations and receive monthly assurance reports, without needing direct access to individual routers.

What you get

What Loxada Secure gives you

  • Complete firmware control. Loxada’s secure firmware replaces the manufacturer firmware on every device we supply, so no vendor firmware code remains and you are not dependent on the manufacturer’s code. If a device is tampered with or factory reset, it returns to a known secure state.
  • Always-on encrypted connectivity. All traffic routes through an always-on encrypted connection to the Loxada RPN, with no split tunneling.
  • Security by default. Loxada-operated DNS blocks known malicious domains, from a blocklist of over 900,000 domains, alongside an encrypted management channel.
  • Automated updates. Firmware updates and security patches are managed centrally by Loxada, securely delivered and applied automatically, with no user action required and no dependency on manufacturer update practices.
  • Purpose-built secure hardware. Loxada supplies its own secure routers, and can source and secure devices to meet specific client requirements such as a particular form factor or country of manufacture.
  • Network isolation. Each Loxada router gives the user a physically separate, private network, so unknown devices on shared Wi-Fi cannot interact with a Loxada-connected device.
  • Full audit and reporting. Monthly assurance summaries delivered automatically, covering device status, firmware version, last-seen timestamps and user association, all centrally visible.

Where Loxada Secure fits

Use cases where Loxada Secure makes the most difference

  • Staff accessing data and systems from home networks, serviced offices or shared spaces outside your IT team’s control.
  • Organizations with compliance obligations under HIPAA, DORA, NIS2, PCI DSS or GDPR that extend to network environment controls.
  • Boards and senior executives requiring an elevated, consistent security posture regardless of location.
  • Contract and temporary staff on unmanaged networks who need secure access without installing additional software.
  • Organizations deploying BYOD policies that need network-layer security without device-management overhead.
  • MSP partners managing distributed client estates that require centrally managed, low-touch network security.

Loxada Secure is available now

Let’s discuss how Loxada helps your team protect systems and data, wherever they connect from.